1.4 – Network security Flashcards
What’re the different threats posed for networks?
- Malware
- Phishing
- Brute Force
- Denial of Service
- Data interception & theft
- SQL Injection
- People/Social Engineering
What is Malware?
Software written to cause loss of data, encryption of data, fraud and identity theft , eg viruses, spyware
What happens during a Malware attack?
- Files are deleted, corrupted or encrypted
- Computers crash, reboot randomly and slow down
- Internet slows down
- Keyboard inputs sent to hackers
What is a Phishing attack?
Sending fraud emails (pretending to be companies/people) to get personal information
What happens during a Phishing attack?
- Accessing accounts to get money
- Open bank accounts, credit cards & cash false cheques
- Access high value corporate data
- Cause companies to be blacklisted
What is a Brute Force attack?
A trial and error method of getting passwords/pin numbers
What happens during a Brute Force attack?
- Hackers steal data
- Gains access to corporate systems
What is a Denial of Service attack?
Flooding a server with useless traffic, overloading it
What happens during a DOS attack?
- Block customers accessing services
- Loose revenue
- Decrease productivity
- Damage reputation
What is a Data Interception & Theft attack?
Stealing computer-based info from someone, compromising privacy/getting personal info
What happens during a Data Interception & Theft attack?
- Usernames & passwords compromised
- Leaking & stealing data
What is an SQL Injection?
A technique to view/change data by adding extra code into an input box
What happens during an SQL Injection?
- Contents of databases leaked
- Data in databases amended/deleted
- New fake records added to databases
What is Social Engineering?
The use of deception to manipulate individuals into divulging confidential or personal information
How can people pose a threat to networks?
by NOT doing the following:
- Installing updates
- Locking doors to computer rooms
- Keeping anti-malware updated
//
- Writing passwords on sticky notes, weak passwords
- Not encrypting data