CS338 Computer Security Friday, 27 October 2023 + Coming up - 3-4 realistic attack scenarios ARP cache poisoning Cross-site scripting (and maybe some SQL injection) Using Metasploit - 3 short-ish assignments - 1 takehome final, out by 11/13, due 11/20 + Password debrief - Why I canceled Part 4 - In real life: using the hardware available - Other? + Prep for AITM attack assignment (due 10/31) - MAC addresses - ARP - routing tables - the plan ----- + Browser cache - Save old pages, images, CSS files, etc. so I don't have to grab them again. - Saving is done at the discretion of the browser + Cookies - Name,value pairs; saved by the browser at the request of the web server