Question: Consider a scenario where Alice accesses a website using an http session to buy shoes. The payment page says Please click here to access the
- Consider a scenario where Alice accesses a website using an http session to buy shoes. The payment page says “Please click here to access the PayMe service. Please transfer $242.50 via PayMe to Spend Less Shoes and we will then ship your order to you.” If Trudy can intercept this http session, what attack could she execute? Would this attack be successful even after your modification to the PayMe scheme
- Describe how you could modify the payment process on the website to avoid such an attack. Make sure that you clearly explain how you have removed the vulnerability.
Step by Step Solution
3.42 Rating (155 Votes )
There are 3 Steps involved in it
Maninthemiddle Attack Scenario Alice accesses the payment page Alice opens a web browser and navigates to the payment page of the online shoe store Th... View full answer
Get step-by-step solutions from verified subject matter experts
