Question

Assume you neglected to manage permissions and access control to GitHub, and a hacker has obtained...

Assume you neglected to manage permissions and access control to GitHub, and a hacker has obtained access to your code repository. What Git feature can you use to discern which code commits were authorized by you and your team, and which ones were uploaded by the hacker?

Group of answer choices

If you know what time the hacker obtained access to your repository, you can assume that all commits made after that time must have been made by the hacker.

If you signed and tagged your commits with a PGP key, you can check which commits were signed by a trusted key, indicating that they were made by an authorized user.

GitHub will show you what IP address made a commit. You can check what your current IP address is against the IP address the commits were made from, and assume that any mismatches were commits that you did not authorize.

GitHub tells you which user made a commit. If the commit says it was made by your username, it must have been made by you.

Homework Answers

Answer #1

Ans: b)If you signed and tagged your commits with a PGP key, you can check which commits were signed by a trusted key, indicating that they were made by an authorized user.

Explanation :

We can use PGP to sign commits with a PGP key that we generate ourselves.

GitHub uses OpenPGP libraries to confirm that our locally signed commits and tags are cryptographically verifiable against a public key we have added to our GitHub account.

If we see other options, it is easy to see that these methods can be faked or could be bypassed. For eg : If we can track IP address, the hacker might use some VPN or maybe the time the hacker has the access to repository, someone else from the team make a commit(legit person). So it is hard to tell in these cases.

Know the answer?
Your Answer:

Post as a guest

Your Name:

What's your source?

Earn Coins

Coins can be redeemed for fabulous gifts.

Not the answer you're looking for?
Ask your own homework help question
Similar Questions
Penco is excited by the results of your previous work and has asked you to review...
Penco is excited by the results of your previous work and has asked you to review operations at Exciteco where it is an institutional investor. Exciteco manufactures electronic components for export worldwide, from factories in Finland, for use in smartphones and hand-held gaming devices. These two markets are supplied with similar components by two divisions, Phones Division (P) and Gaming Division (G). Each division has its own selling, purchasing, IT and research and development functions, but separate IT systems. Some...
You are an Audit Senior currently planning the 30 June 20X8 audit of Forest Limited, an...
You are an Audit Senior currently planning the 30 June 20X8 audit of Forest Limited, an Australian-owned company that produces and exports woodchips to Japan. Forest’s operations are located in Eden, on the far south coast of NSW. Timber is purchased from forests nearby, processed into woodchips and immediately stockpiled for export at the company’s shipyards at Twofold Bay. Forest contracts timber cutters to deliver set tonnages of logs to its mill throughout the year. Woodchips are transported to Japan...
You are an Audit Senior currently planning the 30 June 20X8 audit of Forest Limited, an...
You are an Audit Senior currently planning the 30 June 20X8 audit of Forest Limited, an Australian-owned company that produces and exports woodchips to Japan. Forest’s operations are located in Eden, on the far south coast of NSW. Timber is purchased from forests nearby, processed into woodchips and immediately stockpiled for export at the company’s shipyards at Twofold Bay. Forest contracts timber cutters to deliver set tonnages of logs to its mill throughout the year. Woodchips are transported to Japan...
Please read the article and answear about questions. Determining the Value of the Business After you...
Please read the article and answear about questions. Determining the Value of the Business After you have completed a thorough and exacting investigation, you need to analyze all the infor- mation you have gathered. This is the time to consult with your business, financial, and legal advis- ers to arrive at an estimate of the value of the business. Outside advisers are impartial and are more likely to see the bad things about the business than are you. You should...
Background You are a manager in the audit division at Miller Yates Howarth (MYH), an accounting...
Background You are a manager in the audit division at Miller Yates Howarth (MYH), an accounting firm with offices throughout the major regional centres of NSW and Queensland. Although a medium sized firm by national standards, MYH is the second largest regional accounting firm in Australia. Most of MYH’s audit clients are in the agriculture, mining, manufacturing and property industries. All of those industries are currently under pressure, either from a downturn in commodity prices or fierce competition from overseas...
You are a manager in the audit division at Miller Yates Howarth (MYH), an accounting firm...
You are a manager in the audit division at Miller Yates Howarth (MYH), an accounting firm with offices throughout the major regional centres of NSW and Queensland. Although a medium sized firm by national standards, MYH is the second largest regional accounting firm in Australia. Most of MYH’s audit clients are in the agriculture, mining, manufacturing and property industries. All of those industries are currently under pressure, either from a downturn in commodity prices or fierce competition from overseas competitors....
After reading the following article, how would you summarize it? What conclusions can be made about...
After reading the following article, how would you summarize it? What conclusions can be made about Amazon? Case 12: Amazon.com Inc.: Retailing Giant to High-Tech Player? (Internet Companies) Overview Founded by Jeff Bezos, online giant Amazon.com, Inc. (Amazon), was incorporated in the state of Washington in July 1994, and sold its first book in July 1995. In May 1997, Amazon (AMZN) completed its initial public offering and its common stock was listed on the NASDAQ Global Select Market. Amazon quickly...
Compile and execute the application. You will discover that is has a bug in it -...
Compile and execute the application. You will discover that is has a bug in it - the filled checkbox has no effect - filled shapes are not drawn. Your first task is to debug the starter application so that it correctly draws filled shapes. The bug can be corrected with three characters at one location in the code. Java 2D introduces many new capabilities for creating unique and impressive graphics. We’ll add a small subset of these features to the...
Asia’s e-commerce landscape has been booming in recent years. The swift adoption of smartphones and greater...
Asia’s e-commerce landscape has been booming in recent years. The swift adoption of smartphones and greater access to the internet has allowed consumers in the region to be a major force in the global digital economy. The expansion looks set to continue at a rapid pace. According to a November 2018 report by Fitch Solutions, e-commerce sales in the region are forecast to increase by 14.2% this year, with an estimated average annual increase of 14% over the medium term...
The Business Case for Agility “The battle is not always to the strongest, nor the race...
The Business Case for Agility “The battle is not always to the strongest, nor the race to the swiftest, but that’s the way to bet ’em!”  —C. Morgan Cofer In This Chapter This chapter discusses the business case for Agility, presenting six benefits for teams and the enterprise. It also describes a financial model that shows why incremental development works. Takeaways Agility is not just about the team. There are product-management, project-management, and technical issues beyond the team’s control. Lean-Agile provides...