Question: 2. The need for database security is due to the fact that organisational databases concentrate sensitive information in a single logical system. a) Explain
2. The need for database security is due to the fact that organisational databases concentrate sensitive information in a single logical system. a) Explain how Attribute Based Access Control can be used to enforce Database Security. Justify your answer with an example. [15 marks] b) Explain how malicious code could be injected into a cookie to perform SQLi attacks. [10 marks] c) Are SQLi attacks covered by the Computer Misuse Act 1990? Justify your answer. [10 marks] d) Explain how the Plan-Do-Check-Act process model can be used to manage database security risk. [15 marks]
Step by Step Solution
3.46 Rating (153 Votes )
There are 3 Steps involved in it
a AttributeBased Access Control ABAC is a security model that uses attributes as building blocks in a structured language to evaluate and enforce acce... View full answer
Get step-by-step solutions from verified subject matter experts
