You are on page 1of 1

NAME

REGISTRATION NO MARKS
DATE
CLASS
CODE/SUBJECT DFS3133/ INFORMATION
SECURITY
LABORATORY TASK 2
LECTURER
80
ANSWER ALL QUESTIONS

Question 1

Serving login forms over HTTP is especially dangerous because of the wide variety of attacks
that can be used against them to extract a user’s password. Network eavesdroppers could steal
a user's password by sniffing the network, or by modifying the served page in transit.
https://developer.mozilla.org/en-US/docs/Web/Security/Insecure_passwords

a) Show the differentiate between authentication and authorization when using web
application/ system. Print screen the output and explain it.

b) Open your web browser, type url http://portal.cidos.edu.my/. By using wireshark,


answer the questions below:
i. Define the filter that used to capture ‘http’ traffic.

ii. List and print screen the step to obtain your CIDOS password.

iii. Briefly explain TWO (2) techniques to secure your password from network
eavesdroppers.

NOTE:
1. No marks will be given for plagiarism work. 


2. Submission date on 27 September 2017.

You might also like