Suppose that Bob’s first, cheaply built online business webserver allowed cyber attackers to attempt 1000 passwords per second, but its authentication system makes the user wait 2 seconds after each 5 attempts. Calculate the amount of time required for the attacker to guarantee revealing a password of four digits. Each digit can be 0 through 9
Since the range of 4 digit password is from 0000 to 9999. So there are 10000 possible passwords.
So to guarantee revealing the correct password, total 10000 attempts are required in worst case.
Now as per question, although webserver allowed cyber attackers to attempt 1000 password per second, so to attempt 10000 password, just 10000/1000 = 10 seconds is required.
But after every 5 attempt there is delay of 2 seconds.
So, out of 10000 attempts, total number of chunks of 5 attempts = 10000/5 = 2000 chunks.
Since one chunk of 5 attempts cause delay of 2 seconds, so 2000 chunks of 5 attempts will cause delay = 2000*5 = 10000 seconds
So, total amount of time required = time to attempt 10000 passwords + delay associated with 2000 chunks of 5 attempts each = 10000 + 10 = 10010 seconds.
Please comment for any clarification.
Suppose that Bob’s first, cheaply built online business webserver allowed cyber attackers to attempt 1000 passwords...
TRUE/FALSE QUESTIONS: Foundations of Information Security and Assurance 1. There is a problem anticipating and testing for all potential types of non-standard inputs that might be exploited by an attacker to subvert a program. 2. Without suitable synchronization of accesses it is possible that values may be corrupted, or changes lost, due to over-lapping access, use, and replacement of shared values. 3. The biggest change of the nature in Windows XP SP2 was to change all anonymous remote procedure call (RPC)...
CASE 8 Unlocking the Secrets of the Apple iPhone in the Name of access the male San Bernardino suspect's iPhone 5c. Cook stated: Antiterrorism We are challenging the FBI's demands with the deepes respect for American democracy and a love of our country. We believe it would be in the best interest of everyone to step back and consider the implications While we believe the FBI's intentions are good, if would be wrong for the w e nt to force...