Hello,
This is the full breakdown of the Cryptography and Information Assurance (COMP30029) assignment requirements.
I want the work to be highly professional, academic, and detailed enough to achieve a very high grade (First Class).
GENERAL REQUIREMENTS
Use APA 7 referencing style
Include many in-text citations (preferably 1525 citations)
Use diagrams, tables, and illustrative figures
Provide analysis and critical evaluation, not only explanation
Include comparisons, recommendations, and critical analysis
Use professional academic language
Avoid direct copy-paste from websites
Add figure captions and table captions
Add page numbers
Use Times New Roman, size 12
Headings should be size 14, bold, uppercase, and underlined
FULL ASSIGNMENT STRUCTURE
- Title Page
Must include:
- Assignment Name
- Module Name
- Module Code
- Student Name
- Student ID
- Faculty Name
- Semester
- Submission Date
- Table of Contents
- Introduction
- Task 1
4.1 HTTPS Protocol Analysis
4.2 Digital Signatures Analysis - Task 2
5.1 AES Research Paper Summary
5.2 Symmetric Encryption Limitations - Conclusion
- References
INTRODUCTION
Focus on:
Definition of Information Security
Importance of Cryptography in banking
Importance of HTTPS, AES, and Digital Signatures
Cyber threats targeting banks
Relation to banking sector in Oman
Include:
CIA Triad Diagram
Table explaining:
- Confidentiality
- Integrity
- Authentication
- Non-repudiation
TASK 1(a)
Critically Examine HTTPS Protocol for XYZ Bank
This section must include explanation + analysis + criticism + recommendations.
Required points:
- Introduction to HTTPS
Definition of HTTPS
Difference between HTTP and HTTPS
Importance of HTTPS in banking
Add a comparison table between HTTP and HTTPS.
- HTTPS Architecture
Explain HTTPS architecture
Include a diagram showing:
Client TLS Certificate Session Key Secure Communication - TLS/SSL Handshake Process
Explain all steps:
Client Hello
Server Hello
Certificate Exchange
Key Exchange
Session Key
Encrypted Communication
Add a professional flowchart.
- Encryption Used in HTTPS
Explain:
Symmetric Encryption
Asymmetric Encryption
Hash Functions
Add a table:
AES / RSA / SHA-256
- Security Services Provided by HTTPS
Confidentiality
Integrity
Authentication
Non-repudiation
Include banking examples.
- Critical Analysis of HTTPS
Strong analysis is required.
Advantages:
Encryption
Secure communication
Prevent packet sniffing
Protection against MITM attacks
Disadvantages:
SSL stripping
Fake certificates
Expired certificates
Phishing attacks
Human errors
Add a threat analysis table.
- HTTPS Attacks
Explain:
MITM attacks
SSL stripping
Downgrade attacks
Fake certificates
Include attack diagrams.
- Recommendations for XYZ Bank
Suggest:
TLS 1.3
HSTS
MFA
Certificate Pinning
WAF
Security Monitoring
Add a recommendations table.
- Conclusion
TASK 1(b)
Critical Analysis of Digital Signatures in XYZ Online Banking
- Introduction to Digital Signatures
Definition of Digital Signature
Importance in banking - How Digital Signatures Work
Explain:
Hashing
Private Key signing
Public Key verification
Include a complete diagram.
- Algorithms Used
Explain:
RSA
DSA
ECC
Add a comparison table.
- Applications in Banking
Transaction verification
Secure login
Document authentication
Mobile banking - Benefits
Authentication
Integrity
Non-repudiation - Critical Analysis
Advantages:
Prevent fraud
Legal validity
Strong authentication
Disadvantages:
Key theft
PKI complexity
Certificate compromise
Computational overhead
- Comparison with Traditional Signatures
Add a comparison table. - Threat Scenarios
Stolen private keys
Insider attacks
Weak key management - Recommendations
HSM
PKI
Key rotation
MFA - Conclusion
TASK 2(a)
AES Research Paper Summary
Select a paper from:
IEEE
or
ACM
Preferably:
Recent paper
Related to AES Security / Performance / Architecture
Required sections:
- Paper Information
Title
Authors
Year
Publisher - Introduction of the Paper
Research problem
Importance of AES - Main Concepts
Explain:
Key Sizes
Rounds
SubBytes
ShiftRows
MixColumns
AddRoundKey
Key Expansion
Add AES Architecture Diagram.
- Research Methodology
Explain how the research was conducted. - Results and Findings
Performance
Security
Speed
Efficiency - Critical Evaluation
Strengths
Weaknesses
Limitations
Future improvements - Personal Reflection
What was learned
Why AES is important
Personal opinion
TASK 2(b)
Analyze Limitations of Symmetric Encryption and Suggest Solutions
- Introduction
Definition of Symmetric Encryption
Use of AES in banking - Scenario Analysis
Analyze:
Global expansion
Millions of users
Key management problems
Key interception - Limitations of Symmetric Encryption
Explain:
Key distribution problem
Scalability issues
Key management complexity
Single key risk
Lack of non-repudiation - Attack Analysis
Key interception
Insider attacks
Replay attacks - Proposed Solutions
Professional solutions required:
RSA/ECC
PKI
Diffie-Hellman
HSM
Key rotation
Zero Trust
Most important:
Add a Hybrid Encryption Architecture Diagram.
- Comparison Table
Compare:
Symmetric vs Asymmetric Encryption - Recommended Banking Security Architecture
Add a diagram:
User HTTPS/TLS Firewall HSM Banking Server Encrypted Database - Conclusion
IMPORTANT DIAGRAMS REQUIRED
Professional diagrams must include:
CIA Triad
TLS Handshake
HTTPS Architecture
Digital Signature Process
AES Architecture
Hybrid Encryption Architecture
Banking Security Architecture
MITM Attack Diagram
IMPORTANT TABLES REQUIRED
RSA vs ECC vs DSA
Symmetric vs Asymmetric
Threat Analysis
Recommendations Table
Security Services Table
IMPORTANT REFERENCES
Preferred sources:
IEEE Papers
ACM Papers
NIST
IBM Security
Microsoft Security
Cloudflare Learning
Books:
William Stallings Cryptography and Network Security
Charlie Kaufman Network Security
IMPORTANT NOTES
Include comparisons, recommendations, and evaluations
Use many figures and tables
Every image must have a figure caption
Every table must have a title
APA 7 is mandatory
Preferably use 1525 references
Every task should end with a short conclusion
Academic formatting is very important
The report should look like a professional cybersecurity consultancy report
Also, an important requirement:
The assignment must be written professionally in a natural academic style with NO plagiarism and NO detectable AI-generated writing as much as possible, especially when checked using Turnitin or AI detection tools.
Please make sure:
The final report should look like genuine university-level student work written manually and professionally, not AI-generated content.
