1. Cybersecurity Flashcards
What is cybersecurity?
Cybersecurity is a wide-ranging term that embraces all aspects of ensuring the protection of citizens, businesses and critical infrastructures from threats that arise from their use of computers and the internet.
What is the scope of cybersecurity?
- Techniques of threat and attack mitigation and analysis.
- Protection and recovery technologies, processes and procedures for individuals, businesses and government.
- Policies, laws and regulations relevant to the use of computers and the Internet.
Why is cybersecurity a socio-technical systems problem?
Cybersecurity is a socio-technical systems problem because problems almost always stem from a mix of technical, human and organisational causes.
What is a cyber attack?
A cyber attack is a malicious attempt to cause loss or damage to an individual, business or public body.
What is a cyber accident?
A cyber accident is an accidental event that causes loss or damage to an individual, business or public body.
Sometimes, protecting against cyber attacks can increase the chance of a cyber accident.
What is an insider attack?
An insider attack is an attack to an organisation that is carried out by someone who is inside that organisation.
They are difficult to counter using technical methods as the insider may have valid credentials to access the system attacked.
What is an external attack?
An external attack is an attack to an organisation, carried out by an external agent. These attacks typically require either valid credentials or the exploitation of some vulnerability to gain access to systems.
What are the 5 classes of cyber attack?
- Cyber-fraud
- Cyber-spying
- Cyber-stalking, cyber-bullying etc
- Cyber-assault
- Cyber-warfare
What is cyber fraud?
Cyber fraud is a type of cyber attack where the main aim is to gain monetary or related gains for the perpetrator.
What is cyber spying?
Cyber spying is a type of cyber attack where the main aim is to gain information for the perpetrator. Cyber spying can be related to cyber fraud as one aim might be to sell the information gained.
What is cyber stalking?
Cyber stalking is a type of cyber attack which is designed to intimidate individuals rather than businesses or governments.
What is cyber assault?
Cyber assault is a type of cyber attack where the main aim is to cause damage to information or equipment that is being attacked. Damage caused may be physical damage to equipment, reputational damage, psychological damage to individuals (cyber bullying or cyber stalking) or damage to information.
What is cyber warfare?
Cyber warfare is an extreme form of cyber assault where at least one of the parties involved is a nation state.
Why has the cybersecurity problem risen?
Businesses have focused on connectivity rather than security as the Internet has been able to cut costs, improve productivity and open new opportunities. Security is inconvient and slows down transactions. Businesses have prioritied convenience over security.
Give 3 internet vulnerability examples.
- Unencrypted traffic - packets can be intercepted and examined by an attacker.
- DNS System - Possible to divert traffic from legitimate to malicious addresses.
- Mail protocol - No charging mechanism therefore spam is possible.