99爱在线视频这里只有精品_窝窝午夜看片成人精品_日韩精品久久久毛片一区二区_亚洲一区二区久久

合肥生活安徽新聞合肥交通合肥房產生活服務合肥教育合肥招聘合肥旅游文化藝術合肥美食合肥地圖合肥社保合肥醫院企業服務合肥法律

代寫G6077程序、代做Python編程設計
代寫G6077程序、代做Python編程設計

時間:2024-10-31  來源:合肥網hfw.cc  作者:hfw.cc 我要糾錯



Introduction to Computer Security – G6077

Weighting:   50% of marks for the module 
Version Information: Oct 2024
Submission deadline: Check deadline on Sussex direct. e-submission to Canvas 

You must work on this assignment on your own. The standard Informatics rules for collusion, plagiarism and lateness apply. Any cases of potential misconduct discovered will be reported and investigated.

Part A – Virtual Private Cloud (10 marks)
Use the AWS services to implement the infrastructure given below. Once you implement this, you will need to take screen shots of your settings to provide it in the report.  


Part B (** marks)

Lovejoy’s Antique Evaluation Web Application

In this part of the coursework, you will develop a secure web application for a local antique dealer named Lovejoy.  Lovejoy wants a minimum viable product allowing customers to register and then request evaluations of potential antique objects.   Lovejoy has many rivals in the antique business who may sometimes resort to underhand tactics and so is very concerned about the security of the application.  
Your secure web application will need to have these features for the minimum viable product (MVP) release: user registration and login, a password policy, “request evaluation” page and then an extension of the “request evaluation” page file upload to allow upload of photos. Finally, Lovejoy needs a request listing page.
You should build Lovejoy’s MVP focusing on the following features in each task.  Mark allocation for each task are as described below and in the security analysis grid.  You should reflect upon your work and provide estimates of how much you’ve achieved by filling out the marking grid. An example of self-reflection is provided in the Canvas. There are thus 30 marks for completing the application reasonably, 50 marks for the security features identified and implemented, and 10 marks for self-reflection and video quality.
You have a choice of technologies from which to build the application:
PHP 
Java 
Python 
No other approach is allowed. If you are using Java and Python, you should research it yourself to find out where you want to host it.  

Task 1 - Develop a secure web form that allows customers to register in the application. They must register an email address, password, name and contact telephone number. The users’ details should be stored in a database.  
    Code Quality 5 marks
    Database Design 5 marks

Task 2 - Develop a secure login feature. 
    Code Quality 5 marks

Task 3 – Extend the password management feature to provide password strength recommendations and password recovery.
    Code Quality 5 marks

Task 4 - Implement a “Request Evaluation” web page only accessible to logged in users. This web page should have a comment box to type in the details of the object and their request, and a dropdown box for preferred method of contact between phone or email. The evaluation page should allow for file upload of a photo of the object.  
    Code Quality 5 marks

Task 5 – Implement a page that displays a list of evaluation requests.  This page should only be visible to an administrator role.    Code Quality 5 marks

Submission guidance 
You are only submitting the report to the Canvas. You must follow the report template.
Report -- You must use the report template provided at the end of this coursework description. In your report, you will provide screenshots of all the marking criteria elements and annotate where necessary. In screen shots for the code, please don’t give a big chunk of code, provide only the related lines. Use bullet points to give any explanation, please don’t write big paragraphs. 

Recording -- You will use Sussex Panopto to record a video to show the working of your application and its security features. Useful links provided at the end about Panopto. It is a very straightforward tool to use. You log in using University credential, select the right screen, and record the application to show different features. Show us the aspects that cover marking criteria. Consider the following when recording. 
1) Recording must not be more than 10 minutes. 
2) Must show the testing of all tasks in sequence (features) and its security features
3) Provide voice over or textual application on the video to explain the recording.  
4) Record screen and yourself in the video.
5) Use the self-reflection grid in the task 0 to show the order of recording features.
When you record the video, from the settings, there is a share link button, click on it and select the option that anyone at our organisation who has the link can access the video. Copy that link and put it in your report. 
How to use Panopto?
Recording presentation using Panopto

More guidance about recording the video will be provided in the Canvas. 

Code file location (OneDrive)-- Upload your code to the OneDrive and provide the code link in the report for our inspection. 
Select the folder where you have all the code, then click on the share option. In the settings, click on the pencil drop down menu and select the option can edit. Copy the link and put it in your report. 
See the recording on the Canvas how to setup this in a correct way. 





Excellent (10-9 marks)    Good (8-6 marks)    Average (5-3 marks)    Poor (2-0 marks)
     10 marks    
 Criteria (50 marks)

Excellent (15-13)    Good (12-10)    Average (9-5)    Poor (4-0)     15 marks    
Policy has no flaw, and its implementation is excellent. Various mechanisms implemented to ensure password policy is secure.      Policy has no flaws, but implementation of policy is simple.    Password policy has very few flaws. However, different sections of policy are implemented and working.      Policy has many flaws for example password is not encrypted, and no salt applied. Password forgot policy has security flaws.     Password policy          15marks
Password entropy, encrypted storage, security questions and recovery of password

Several countermeasures are implemented, and the quality of countermeasures are excellent.    Countermeasures are implemented in all the pages however quality of implementation is simple.      Implemented countermeasures only in some parts of the application. 
    Very little effort to implement countermeasures to avoid these vulnerabilities. 
    Vulnerabilities              15 marks
SQL injection, XSS, CSRF, File Upload and any other obvious vulnerability.
All the requirements are implemented to authenticate users. Implementation quality is excellent.      All requirements are implemented to authenticate the user. However, quality of implementation is simple.      Only some obvious requirements are not implemented.     Lots of obvious authentication’s requirements are not implemented.     Authentication and Encryption              10 marks 
User identity management (registration and login etc), Email verification for registration, 2 factor authentications (PIN and or email)
Encryption applied reasonably to secure assets
Excellent implementation of countermeasures against these attacks.     No flaws in countermeasures however quality of implementation is simple.      Some flaws in countermeasures     Very little effort against these attacks.     Obfuscation/Common attacks      10 marks
Brute force attack – Number of attempts
Botnet attack – Captcha 
Dictionary attack/Rainbow table attack
5 marks    5 marks    5 marks    5 marks    10 marks    30 marks
List evaluation-Task5    Request evaluation – task 4    Forgot password-Task3    Login-Task2    User registration/Database-Task1    Features of webs application

Up to 4/6 marks    0 marks    10 marks
Fairly fully completed    Marking not completed    Self-reflection – 4 marks
Covered everything in order    Missing aspects    Video quality – 6 marks

Excellent (9 to 10)    Good (6 to 8)    Average (3 to 5)    Poor (0-2)    10 marks
Everything is implemented as in the infrastructure    Very little mistakes in the implementation     Few mistakes in implementation     Very little attempt.     Virtual Private Cloud & Security groups 

Report 
You will be submitting this report to the Canvas. The report has 6 tasks. From 1 to 5, it covers the secure application part and the last task 6 covers the AWS. You will provide the three required links below.
1)Code file Location: --------------------------------------
Upload your code to OneDrive and provide a link here. Set up correct permission so that anyone with a link can view it. 
2)Panopto recording:------------------------------------------
 If you don’t provide this, we will not be able to test your work fully. 

If any of the above evidence is not provided, you will lose marks as I will not be able to test your application. 
Task 0 – Self-reflection 
Marking grid filled up by you. Fill it up and past it here. We expect you to self-assess yourself fairly. 
Marking criteria    Sub criteria    Tick/cross    Marks
 (from the main marking grid, assign fair marks to yourself)
Password policy    Password entropy                

    Security questions        
    Password recovery        
Vulnerabilites    SQL injection,         


    XSS,         
    CSRF,         
    File Upload and         
    any other obvious vulnerability.        
Authentication/Encrypted storage    User registration, User login         
    Email verification for registration,        
    2 factor authentications (PIN and or email)        
    Encrypted storage        
Obfuscation/Common attacks     Brute force attack – Number of attempts        
    Botnet attack – Captcha         
    Dictionary attack/Rainbow table attack        
Features of web application    Database design        
    User registration        
    User login        
    Forgot password        
    Evaluation        
    List evaluation        
VPC    Evidence provided        
Video    All the marking criteria covered        
Self-reflection    This marking grid fill out properly        
            Total marks = 

Task 1 – User registration 
Registration feature code screenshots

Database Table

Why do you think it is secure?  Use bullet points to provide your reasons and back it up with code snippet from your application. Don’t paste the big junks of code in the report, show us those specific lines, highlight, and annotate if you need to.

Task 2 - Develop a secure login feature. 
Login feature code screenshots

Why do you think it is secure?  Use bullet points to provide your reasons and back it up code snippet from your application.

Task 3 - Implement password strength and password recovery

List each password policy element that you implemented and back it up with code snippets from your application. 

Task 4 - Implement a “Evaluation Request” web page. 

Request Evaluation feature screenshot

Why do you think it is secure? 

Task 5 – Request Listing Page

Code of the feature

Why do you think it is secure?

Task 6 –AWS Virtual Private Cloud settings screen shots. 

請加QQ:99515681  郵箱:99515681@qq.com   WX:codinghelp



 

掃一掃在手機打開當前頁
  • 上一篇:RBE104TC代做、C/C++設計編程代寫
  • 下一篇:代寫CSE x25、C++/Java程序設計代做
  • 無相關信息
    合肥生活資訊

    合肥圖文信息
    急尋熱仿真分析?代做熱仿真服務+熱設計優化
    急尋熱仿真分析?代做熱仿真服務+熱設計優化
    出評 開團工具
    出評 開團工具
    挖掘機濾芯提升發動機性能
    挖掘機濾芯提升發動機性能
    海信羅馬假日洗衣機亮相AWE  復古美學與現代科技完美結合
    海信羅馬假日洗衣機亮相AWE 復古美學與現代
    合肥機場巴士4號線
    合肥機場巴士4號線
    合肥機場巴士3號線
    合肥機場巴士3號線
    合肥機場巴士2號線
    合肥機場巴士2號線
    合肥機場巴士1號線
    合肥機場巴士1號線
  • 短信驗證碼 豆包 幣安下載 AI生圖 目錄網

    關于我們 | 打賞支持 | 廣告服務 | 聯系我們 | 網站地圖 | 免責聲明 | 幫助中心 | 友情鏈接 |

    Copyright © 2025 hfw.cc Inc. All Rights Reserved. 合肥網 版權所有
    ICP備06013414號-3 公安備 42010502001045

    99爱在线视频这里只有精品_窝窝午夜看片成人精品_日韩精品久久久毛片一区二区_亚洲一区二区久久

          国产日韩欧美不卡在线| 亚洲国产精品一区二区第一页| 国产精品捆绑调教| 国产精品免费看片| 国产精品中文字幕欧美| 国产一区亚洲一区| 最新成人在线| 亚洲特级毛片| 久久精品一区二区三区四区 | 国产精品一香蕉国产线看观看| 国产人久久人人人人爽| 亚洲国产成人精品久久| 亚洲免费在线| 免费国产一区二区| 国产精品久久福利| 亚洲第一区中文99精品| 亚洲视频综合| 美女精品视频一区| 国产精品激情电影| 亚洲高清免费视频| 午夜日韩电影| 欧美成人综合网站| 国产一区二区三区久久精品| 亚洲日本视频| 久久久久久999| 欧美亚州韩日在线看免费版国语版| 国模一区二区三区| 日韩视频在线免费| 欧美制服第一页| 欧美日韩精品福利| 精品成人久久| 午夜欧美大片免费观看| 欧美日韩免费看| 伊人精品久久久久7777| 欧美一区二区三区精品电影| 欧美日韩福利| 亚洲人体大胆视频| 麻豆精品视频在线观看| 国产欧美视频一区二区| 制服丝袜激情欧洲亚洲| 欧美日韩999| 亚洲人成在线观看网站高清| 久久人体大胆视频| 国产一区二区三区在线观看视频| 亚洲资源av| 国产精品高清网站| 中日韩高清电影网| 欧美日韩免费观看一区| 91久久黄色| 欧美高清视频在线| 亚洲国产欧美一区二区三区久久| 久久激情综合网| 韩国视频理论视频久久| 久久九九精品99国产精品| 国产日韩欧美综合一区| 欧美一区二区三区视频在线| 国产麻豆成人精品| 欧美一区在线直播| 国产一区二区三区视频在线观看| 久久精品国产亚洲高清剧情介绍| 国产日韩精品在线播放| 久久久国产亚洲精品| 在线精品视频在线观看高清| 噜噜噜91成人网| 亚洲人成高清| 欧美午夜精品久久久久免费视| 亚洲性视频h| 国产日韩一区在线| 久久人人爽人人爽爽久久| 亚洲国产片色| 欧美午夜一区二区| 香蕉成人伊视频在线观看| 国产视频在线一区二区| 久久综合久久综合九色| 亚洲日本理论电影| 国产精品久久国产愉拍| 久久精品一区蜜桃臀影院| 1204国产成人精品视频| 欧美日韩不卡合集视频| 午夜视频一区| 亚洲电影成人| 欧美调教vk| 久久日韩粉嫩一区二区三区| 亚洲伦理在线观看| 国产午夜亚洲精品羞羞网站| 免费一区二区三区| 中文国产成人精品| 一区二区在线视频| 欧美午夜一区二区福利视频| 久久成人av少妇免费| 亚洲日本免费| 国产一区二区三区观看| 欧美欧美午夜aⅴ在线观看| 欧美一区二区视频在线观看2020 | 欧美不卡视频一区发布| 亚洲网站在线观看| 尤物yw午夜国产精品视频明星| 欧美午夜宅男影院在线观看| 猫咪成人在线观看| 亚洲欧美影音先锋| 亚洲精品视频在线播放| 国产在线观看一区| 国产精品久久91| 欧美高清影院| 久久久精品性| 午夜欧美理论片| 日韩午夜免费视频| 国产亚洲欧美另类中文| 欧美三级电影精品| 欧美激情免费观看| 久久久久综合| 欧美亚洲视频在线观看| 亚洲视屏一区| 一本色道婷婷久久欧美| 亚洲人www| 91久久国产综合久久91精品网站| 国产一区二区日韩精品| 国产精品一区久久久| 国产精品大片wwwwww| 欧美精品一区二区三| 美女视频黄免费的久久| 久久久久久久久久久久久久一区| 欧美一区二区在线视频| 亚洲已满18点击进入久久| 99精品欧美一区| 一本久久a久久免费精品不卡| 亚洲国产美女| 亚洲精品一区二区在线| 日韩系列欧美系列| 亚洲免费激情| 国产精品99久久久久久久久| aⅴ色国产欧美| 在线亚洲精品| 亚洲一区二区在线播放| 亚洲视频1区2区| 亚洲专区一区| 欧美一级大片在线观看| 欧美中文字幕视频| 久久久久久电影| 久久综合中文字幕| 欧美大成色www永久网站婷| 欧美成人精品在线视频| 欧美全黄视频| 国产精品久久网站| 国产一区二区欧美| 1024成人网色www| 99精品欧美一区二区蜜桃免费| 一本大道久久a久久精品综合| 亚洲少妇最新在线视频| 午夜欧美精品久久久久久久| 久久一区二区视频| 欧美激情四色 | 欧美一区二粉嫩精品国产一线天| 亚洲欧洲99久久| 久久精品理论片| 欧美金8天国| 国产精品一区二区久激情瑜伽| 国产在线视频欧美一区二区三区| 亚洲精品久久久久久下一站| 亚洲视频狠狠| 久久综合九色综合欧美狠狠| 欧美日韩一区二区精品| 国产免费成人av| 亚洲国产精品成人| 亚洲午夜日本在线观看| 久久国产精品亚洲77777| 美国十次成人| 国产精品网站在线| 亚洲国产另类精品专区| 亚洲欧美日本日韩| 欧美成人tv| 国产精品综合久久久| 1000部国产精品成人观看| 一区二区三区四区在线| 麻豆国产精品一区二区三区| 国产精品高潮呻吟久久av黑人| 一色屋精品视频在线观看网站| avtt综合网| 另类图片国产| 国产一区成人| 亚洲在线播放电影| 欧美成人免费观看| 国产最新精品精品你懂的| 9l国产精品久久久久麻豆| 老巨人导航500精品| 国产日韩综合| 亚洲一区二区在线免费观看视频 | 性8sex亚洲区入口| 欧美金8天国| 亚洲福利精品| 久久精品最新地址| 国产嫩草一区二区三区在线观看| 日韩视频免费观看高清完整版| 久久婷婷色综合| 国产日韩免费| 亚洲欧美国产高清| 国产精品国产成人国产三级| 在线综合+亚洲+欧美中文字幕| 欧美国产日韩精品| 一色屋精品视频在线观看网站|