Please use this identifier to cite or link to this item: https://www.um.edu.mt/library/oar/handle/123456789/91935
Title: An investigation of common security vulnerabilities and secure coding practices to mitigate them
Authors: Azzopardi, Antonio (2013)
Keywords: Credit cards
Mobile commerce
Computer software -- Security measures
Internet fraud
Issue Date: 2013
Citation: Azzopardi, A. (2013). An investigation of common security vulnerabilities and secure coding practices to mitigate them (Bachelor's dissertation).
Abstract: The main aim of this dissertation is to study various common security vulnerabilities as well as the countermeasures available to mitigate them and then propose a solution which reduces the weakness to a number of the security vulnerabilities investigated. As a matter of fact, it was decided to deal with the issue of online credit card fraud with respect to man-in-the-browser, keylogging and phishing attacks. The student opted to tackle this problem via a secure mobile payment system. For this reason, numerous secure mobile payment systems were investigated and their strengths and weaknesses were analyzed. In addition, an artefact which addresses the weaknesses of the existing systems is proposed. Unfortunately, at least one of the secure mobile payment systems which were studied was vulnerable to man-in-the-browser attacks since the mobile application component operated through the web browser. On the other hand, some of them were susceptible to phishing attacks primarily because they did not bind the mobile user's log-in credentials to his mobile phone's identity. Moreover, the majority of the systems did not specify a mechanism to disable the accounts created from the mobile user's device in case this was stolen or lost. Consequently, this dissertation builds upon the work of various researchers in the field of information security in order to present a more secure approach for conducting online transactions through the use of smartphones.
Description: B.Sc. IT (Hons)(Melit.)
URI: https://www.um.edu.mt/library/oar/handle/123456789/91935
Appears in Collections:Dissertations - FacICT - 2013
Dissertations - FacICTCIS - 2010-2015

Files in This Item:
File Description SizeFormat 
BSC(HONS)ICT_Azzopardi Antonio_2013.pdf
  Restricted Access
17.7 MBAdobe PDFView/Open Request a copy
Azzopardi_Antonio_acc.material.pdf
  Restricted Access
64.46 kBAdobe PDFView/Open Request a copy


Items in OAR@UM are protected by copyright, with all rights reserved, unless otherwise indicated.