Description
Learning Objectives
Research the Heartbleed vulnerability, exploit, business risk, business impact, and possible defensive controls to counter the attack. Discuss how Heartbleed became a very public security event in 2014. Provide at least two cited references that support your conclusion.
Assignment Requirements
Research the Heartbleed attack including the vulnerability information and CVSS rating. Include the mechanics of an attack using the OpenSSL vulnerability, exploit and impact to the business. Show business risk that companies evaluated and what defensive controls were put in place to protect the business against the attack. Finally, provide examples of business impact to real companies affected by the attack.
Include the following sections in your Report:
Introduction
Vulnerability
Exploit
Business Risk
Business Impact
Defensive Controls
Conclusion
The report must be professional in format with an introduction, each finding, conclusion and references.
Possible Points
Refer to syllabus for points possible for the assignment.
Required Resources
Websites referencing the mechanics of the attack and businesses affected by the attack including impact or loss from the attack.
Do not copy and paste directly from websites, synthesize the information in your own words. Any information found to be directly copied from any public source without proper citation and reference will be considered plagiarism.
