New game
Download
Get Academic Plan
Share game
Fill in the Blanks
Fill in the Blanks

Session 05- MitM Attacks II

Integrate it into your platform

You can integrate the game into an LMS compatible with LTI 1.1 or LTI 1.3 such as Canvas, Moodle, or Blackboard. This way, the scores will be automatically saved into the platform’s gradebook.
Download
You have exceeded the maximum number of games you can integrate into Google Classroom with your current Plan.

To integrate as many games as you want in Google Classroom, you need an Academic Plan or a Commercial Plan.

You have exceeded the maximum number of games you can integrate into Microsoft Teams with your current Plan.

To integrate as many games as you want in Microsoft Teams, you need an Academic Plan or a Commercial Plan.

Downloading games is an exclusive feature for users with an Academic Plan or a Commercial Plan.

Get your Academic Plan or your Commercial Plan now and start integrating your games into your LMS, website or blog.

If you wish, you can download a demo game here and test its integration:

Session 05- MitM Attacks II

Fill in the Blanks

Played 0

About this activity

Subject : Security and Privacy Risks in Computer & Internet Applications
Lecturer: Assoc. Prof. Dr. James Joshi
Faculty: Graduate School of Information Technology
Siam University, Bangkok, Thailand

Created by

Thailand

Download the paper version to play

Make your own free game from our game creator
Compete against your friends to see who gets the best score in this game

Top Games

%
Anonymous
Anonymous
%
%
%
You have exceeded the maximum number of games you can print with your current Plan.

To print as many games as you want, you need an Academic Plan or a Commercial Plan.

Print your game
Session 05- MitM Attacks II
 

Fill in the Blanks

Session 05- MitM Attacks IIOnline version

Subject : Security and Privacy Risks in Computer & Internet Applications Lecturer: Assoc. Prof. Dr. James Joshi Faculty: Graduate School of Information Technology Siam University, Bangkok, Thailand

by Prince Parham
1

intercept keys cryptographic Public eavesdropping authentication JavaScript relays

1 . Based on the " Mitigating a Fallacy " rules :
Executing on victim = = executing an attack

2 . The man - in - the - middle attack ( often abbreviated MitM , also known as a bucket brigade attack , or sometimes Janus attack ) in cryptography and computer security is a form of active in which the attacker makes independent connections with the victims and messages between them , making them believe that they are talking directly to each other over a private connection , when in fact the entire conversation is controlled by the attacker .

3 . The attacker must be able to all messages going between the two victims and inject new ones , which is straightforward in many circumstances ( for example , an attacker within reception range of an unencrypted Wi - Fi wireless access point , can insert himself as a man - in - the - middle ) .

4 . A man - in - the - middle attack can succeed only when the attacker can impersonate each endpoint to the satisfaction of the other ? it is an attack on mutual ( or lack thereof ) . Most protocols include some form of endpoint authentication specifically to prevent MITM attacks . For example , SSL can authenticate one or both parties using a mutually trusted certification authority .

5 . Various defenses against MITM attacks use authentication techniques that are based on the key infrastructures .

6 . Stronger mutual authentication , such as :
Secret ( which are usually high information entropy secrets , and thus more secure ) , or
Passwords ( which are usually low information entropy secrets , and thus less secure ) .

Are you sure you want to leave the page?

If you leave the page, you will lose your game progress.