Preferred Language
Articles
/
ijs-12444
A Secure Session Management Based on Threat Modeling
...Show More Authors

A session is a period of time linked to a user, which is initiated when he/she arrives at a web application and it ends when his/her browser is closed or after a certain time of inactivity. Attackers can hijack a user's session by exploiting session management vulnerabilities by means of session fixation and cross-site request forgery attacks.
Very often, session IDs are not only identification tokens, but also authenticators. This means that upon login, users are authenticated based on their credentials (e.g., usernames/passwords or digital certificates) and issued session IDs that will effectively serve as temporary static passwords for accessing their sessions. This makes session IDs a very appealing target for attackers. In many cases, an attacker who manages to obtain a valid ID of user’s session can use it to directly enter that session – often without arising user’s suspicion. A secure session management must be implemented in the development phase of web applications because it is the responsibility of the web application, and not the underlying web server.
Threat modeling is a systematic process that is used to identify threats and vulnerabilities in software and has become popular technique to help system designers think about the security threats that their system might face.
In this paper we design the threat modeling for session’s ID threat by using SeaMonster security modeling software, and then propose a secure session management that avoids the vulnerabilities. The proposed secure session management is designed to give trust authentication between the client and the server to avoid session hijacing attack by using both: server session’s ID and MAC address of the client.Visual Studio. Net 2008 is used in implementing the proposed system

View Publication Preview PDF
Quick Preview PDF
Publication Date
Sat May 01 2021
Journal Name
Journal Of Physics: Conference Series
The Prediction of COVID 19 Disease Using Feature Selection Techniques
...Show More Authors
Abstract<p>COVID 19 has spread rapidly around the world due to the lack of a suitable vaccine; therefore the early prediction of those infected with this virus is extremely important attempting to control it by quarantining the infected people and giving them possible medical attention to limit its spread. This work suggests a model for predicting the COVID 19 virus using feature selection techniques. The proposed model consists of three stages which include the preprocessing stage, the features selection stage, and the classification stage. This work uses a data set consists of 8571 records, with forty features for patients from different countries. Two feature selection techniques are used in </p> ... Show More
View Publication Preview PDF
Scopus (19)
Crossref (14)
Scopus Crossref
Publication Date
Fri Apr 02 2021
Journal Name
Review Of International Geographical Education
Energy Security and Energy Transition in Germany
...Show More Authors

Energy is one of the components of the national security of countries and is of particular importance to the industrialized countries, including Germany. Energy policy includes many areas and has an impact on various sectors such as the environment, climate, agriculture and others. During the past few years, Germany has witnessed many transformations, the most important of which is the energy transition towards renewable energy, and it was strengthened in the strategy that was It was developed in 2010, which aims to achieve a long-term energy transformation, and sales of the German energy technology sector have evolved from 2010 to 2020, and this issue is related on the other hand to the concept of energy security and because of its strateg

... Show More
Publication Date
Wed Jan 06 2021
Journal Name
Journal Of Planner And Development
Environmental dimensions and administrative mechanisms for the territory planning in Algeria, between theory and reality.
...Show More Authors

     In front of the serious deterioration of the elements of the environment, new convictions arose the need to integrate into the global environmental concerns as being one and the issue of shared responsibility and the impact of this conviction, the evolution of the environment protection law in many countries, including Algeria. Due to the multiplicity of perceptions about the environmental result of multiple scientific disciplines, the legislative concept emerged to protect the environment, which includes prevention and rational management and conservation and restoration and repair.

    Environmental planning for the various governments and countries aims to avert disasters and achieve the

... Show More
View Publication Preview PDF
Publication Date
Sun Jun 05 2011
Journal Name
Baghdad Science Journal
Evaluating Windows Vista user account security
...Show More Authors

In the current Windows version (Vista), as in all previous versions, creating a user account without setting a password is possible. For a personal PC this might be without too much risk, although it is not recommended, even by Microsoft itself. However, for business computers it is necessary to restrict access to the computers, starting with defining a different password for every user account. For the earlier versions of Windows, a lot of resources can be found giving advice how to construct passwords of user accounts. In some extent they contain remarks concerning the suitability of their solution for Windows Vista. But all these resources are not very precise about what kind of passwords the user must use. To assess the protection of pa

... Show More
View Publication Preview PDF
Crossref
Publication Date
Fri Sep 15 2023
Journal Name
Journal Of Water Resources And Geosciences
Evaluation of Water and Wheat Productivity under Center Pivot Sprinkler Irrigation in Desert Soils/Holly Karbala Governorate
...Show More Authors

Two field experimسents were conducted in one of the fields of the Agriculture Division of Ain Al-Tamr /Holy Karbala Governorate at two sites of different textures during the agricultural season 2020/2021. The first site has sandy loam texture (gypsum soils). The second site has loamy sand texture (calcareous soils). The factors of the study included: The first factor included two types of soil, gypsum and calcareous soil. The second factor is the tillage systems (no-tillage, spring spike harrows, disc harrows, and mold board plow). The experiment was designed in the two study sites according to the RCBD with three replications. The Valley type center pivot irrigation system was evaluated before planting, three speeds, 30, 50 and 100% of th

... Show More
View Publication Preview PDF
Publication Date
Sun May 22 2022
Journal Name
Webology
Change and Strategic Planning for Quality in Universities: An Analytical Study
...Show More Authors

This research aims to analyse the problem of organizations in general and universities in particular, in dealing with �quality subjects� in a world where these organizations face the risks of becoming side lined and possibly vanished without looking for solutions that allow them to move in an open arena where change becomes the key to those solutions. Change here must be strategic and planning must adopts a way for organizations to develop mechanisms to manage change itself. Management leaders play a central role in achieving the principle required to chart new trends for universities in dealing with quality as a strategy that allows excellence and competition in light of the success of the processes of change. Change through reengineer

... Show More
View Publication Preview PDF
Publication Date
Fri Feb 07 2025
Journal Name
Technical University Of Munich
Conditions for Applying Public Private Partnership PPP in Iraq Infrastructure Projects Successfully
...Show More Authors

Public private partnership PPP is a method to procure public projects in order to achieve additional value for money in terms of efficiency and quality of services. This thesis studies the concepts of PPP, advantages and disadvantages of PPP. In addition, current Iraq infrastructure projects situations and needs, as well as, some aspects relating to the Iraq’s construction market, legal and contract systems were discussed. A financial model was carried out and applied to a real-life case study project. Finally, a survey targeted researchers; public and private- sectors were applied.

View Publication
Publication Date
Thu Dec 28 2023
Journal Name
Al–bahith Al–a'alami
Digital Public Relations Strategies in Managing the Crisis of Iraqi Refugees in Turkey: An Analytical Study of the Website of the UNHCR Turkey
...Show More Authors

The research aims to identify and diagnose the public relations strategies in its digital online communications by the United Nations High Commissioner for Refugees (UNHCR) in managing the crisis of Iraqi refugees in Turkey. A content analysis form was designed for the digital content of the UNHCR's website dedicated to topics and issues concerning Iraqi refugees that were covered by the site, adopting a comprehensive enumeration approach. The study covered the period from 01/03/2022, to 30/06/2022. The research yielded several key findings, including the predominant use of media, advertising, and education strategies in managing the crisis of Iraqi refugees in Turkey. News and reports ranked first among the media

... Show More
View Publication Preview PDF
Crossref
Publication Date
Thu Dec 28 2023
Journal Name
Journal Of Physical Education
Proactive leadership and its relationship to managing the organizational error of the Iraqi Handball Federation from the point of view of the clubs participating in the Iraqi Elite League for the season 2023-2024
...Show More Authors

This research seeks to study the role of proactive leadership as an essential element that helps all federations that lead the wheel of sports, including the Iraqi Handball Federation, so that it builds a correct environment that helps manage the organizational errors that the Handball Federation may fall into, and this in turn helps in early detection of errors and obstacles that may occur. It is likely that the Federation will fall into the process of managing and organizing the Iraqi Handball League, in addition to increasing the clubs’ ability to assist the Iraqi Handball Federation by being proactive so as not to make mistakes. The research community included the administrative bodies of the clubs participating in the Iraqi E

... Show More
View Publication
Crossref
Publication Date
Sat Jul 01 2023
Journal Name
Journal Of Accounting And Financial Studies ( Jafs )
The Role of Participatory Budgeting in Improving Performance in light of Covid 19
...Show More Authors

The current research aims to analyze the role of participatory budgeting in improving performance, especially during crises such as the Covid-19 crisis. The research used the descriptive analytical method to reach the results by distributing 100 questionnaires to a number of employees in Iraqi joint stock companies and at multiple administrative levels. The research came to several important conclusions, the most important of which is that the bottom-up approach to budgeting produces more achievable budgets than the top-down approach, which is imposed on the company by senior management with much less employee participation. Additionally, there is a better information flow from the lower levels of the organization to the upper management

... Show More
View Publication Preview PDF