1.4: NETWORK SECURITY Flashcards

1
Q

what is malware?

how does it work?

what can it affect?

A

Malicious software designed to cause harm to a network or computer system.

Attaches itself to programs or files on a computer or server​

Can affect all components of an operating system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

how to prevent malware: (2)

A

Anti-Malware - searches for, detects, and removes viruses, and other malicious software.​

Firewall - prevents unauthorised access / hacking into the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what is Phishing / Social Engineering​?

A

Commonly involves tricking users into breaking normal security procedures (over phone, email or in person)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

how could phishing/ social engineering be prevented? (2)

A

Firewalls - Filters web content or downloading files.​

Limit user access levels/privileges – prevent users from downloading files.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

what is a brute force attack?

A

An attack that attempts to decode passwords/encryption keys/encrypted data.​
-by trying out all possible combinations until the correct one is achieved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

how could a brute force attack be prevented? (2)

A

Strong Passwords / Captcha​

Preventing number of login attempts or using captcha form for brute force.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

what is a DDOS attack?

A

an attempt to flood a website server with an overwhelming number of data requests to crash or disrupt network sites. ​

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

how could a DDOS attack be prevented? (2)

A

Limit the number of login attempts or requests using captcha form.​

Adding filters to router to drop packets from obvious sources of attack.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

what is data theft/ interception?

A

Data travels across networks in packets​

Packets can be intercepted (packet sniffers).​

Data can also be intercepted physically, for example portable hard drives and other external hardware can be stolen

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

how to prevent data theft/ interception? (2)

A

Encryption - jumble/scramble/mix up the data // turns it into cypher text eg; Caesar Cipher, If it is accessed it cannot be understood​

Physical Security – Locks on doors, CCTV, Security Guards etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

what is an SQL injection?

A

Malicious code entered into a website form to gain unauthorized access to data by modifying websites security forms.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

how could SQL injections be prevented? (2)

A

Penetration testing should be undertaken/vulnerabilities should be found.​

Limit user access levels/privileges

How well did you know this?
1
Not at all
2
3
4
5
Perfectly