100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Other

CSIS 486:CAPSTONE PROJECT ASSIGNMENT INSTRUCTIONS

Rating
-
Sold
-
Pages
3
Uploaded on
17-05-2025
Written in
2024/2025

CSIS 486:CAPSTONE PROJECT ASSIGNMENT INSTRUCTIONS

Institution
CSIS 486:CAPSTONE PROJECT
Course
CSIS 486:CAPSTONE PROJECT








Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CSIS 486:CAPSTONE PROJECT
Course
CSIS 486:CAPSTONE PROJECT

Document information

Uploaded on
May 17, 2025
Number of pages
3
Written in
2024/2025
Type
Other
Person
Unknown

Subjects

Content preview

CSIS 486


CSIS 486:CAPSTONE PROJECT ASSIGNMENT INSTRUCTIONS
OVERVIEW
This capstone is a continuation of CSIS 485. In the following phases of the capstone, you are to
pretend you have been hired by a client that just developed an ecommerce web application,
called Hackazon, and they have not had any security help to this point. The application is full of
vulnerabilities, you are to play with the application and then perform security testing to find and
fix vulnerabilities. This is a capstone course, so you will not be taught each step. A much needed
skill in Cybersecurity is the ability to figure things out on your own. You may soon be hired to
figure things out, so demonstrate you have that skill set by spending time on the Internet and
figure the task at hand out.
Note: The instructor may give you a new configuration file to use in your application, to keep
things fresh and prevent cheating with old reports by others. Also, this is both a group and
individual effort project, communication between students in the same group is permitted for this
project. However, the written assignments are individual effort and the vulnerability findings and
evaluations should be different for each student. Remember, academic honesty is a hallmark of
Liberty and any violations will be punished in accordance with the academic dishonesty policy.
Remember, we are training ethical hackers, play within the rules.

INSTRUCTIONS
Download Virtualbox from Oracle.
Download Hackazon from Github.
Configure Hackazon to run on host only mode, with local IP.
Play with Hackazon and attempt to find vulnerabilities, manually, by reviewing the OWASP top
10 List.

Capstone Project Phase: Initial Dynamic Security Scan Assignment
Perform a Dynamic Security Scan of Hackazon Application using the free Burp scanner.
Launch Burp security scanner against Hackazon site.
Upload: A single report that contains the following sections:
1. Evidence of configuration screenshots of burp.
2. The detailed vulnerability report. Ensure you include evidence of a vulnerability scan
of both the public (non-authenticated) and back end (authenticated) portions of the site.
3. Provide at least 200 words describing how you would ethically disclose this information
to the company who hired you, what precautions you would take and what you would
and would not do with that sensitive information. Support this paragraph with a biblical
citation in APA format that demonstrates the application of a biblical world view to the
cybersecurity and ethical hacking field. The submission should be at least 3 pages of
content and not more than 10. Be sure to add a title page, including your name, the title,
course name, school, date.

Capstone Project Phase: Initial Static Security Scan Assignment
Launch RIPS (Github) security scanner against code for Hackazon.
Upload: A single report with the following sections:
1. Evidence of installation and configuration screenshots of RIPS.
2. The detailed vulnerability report with all vulnerable code blocks expanded.


Page 1 of 3

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
STUVIAMAESTRO254 Florida State University
View profile
Follow You need to be logged in order to follow users or courses
Sold
157
Member since
2 year
Number of followers
98
Documents
9325
Last sold
1 week ago
Academic Excellence Hub

At Academic Excellence Hub, we specialize in providing premium academic exam solutions for university students and institutions. Our carefully curated collection of assessments ensures academic excellence, preparation mastery, and success in competitive environments. We pride ourselves on delivering reliable, confidential, and high-quality exam resources tailored to meet the highest academic standards. Empower your academic journey with trusted expertise and unparalleled service.

Read more Read less
2.5

41 reviews

5
4
4
10
3
7
2
2
1
18

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions