Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Consider the following website defense against phishing schemes. The first time users come to a website, they enter their username and password and are given

Consider the following website defense against phishing schemes. The first time users come to a website, they enter their username and password and are given a choice between several pictures. The association between the username and the chosen picture is stored in the server database. In all subsequent sessions, the user types in her username and expects to be shown a picture. Unless the users see the picture they chose during their first session, they do not enter the password. This helps users avoid giving their passwords to fake websites.
In your report, describe how the proposed scheme can be compromised to allow a fake website to show users their chosen picture. (Hint: Assume that this is not the users first session, i.e., she has already chosen the picture.)

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Computer Aided Database Design

Authors: Antonio Albano, Valeria De Antonellis, A. Di Leva

1st Edition

0444877355, 978-0444877352

More Books

Students also viewed these Databases questions