1.6 System Security Flashcards
What is a Passive attack?
Network traffic is monitored and then data is intercepeted
How can you prevent a passive attack?
Encryption can encrypt the intercepted data and the unauthorised user cannot access it
What is an Active attack?
Someone deliberately attacks a network with malware
How can you prevent an Active attack?
Use an firewall and an antivirus software
What is an Insider attack?
Someone with network access abuses this to steal information
How can you prevent an Insider attack?
User access levels to control how much data people can access
What is a Brute force attack?
When an user cracks a password using trial and error
How can you prevent a Brute Force attack?
Locking accounts after failed attempts after a certain number of times
What is DDOS attack?
When a network is flooded with useless data so it crashes
How can you prevent a DDOS attack?
A firewall can prevent it
What is SQL injection?
SQL commands are typed on a website database
How can you prevent a SQL injection?
Having strong validation on all input boxes?
What is Phishing?
Emails with links that trick people
How can you prevent Phishing?
Looking for signs that an email is not from a real company
What is Social engineering?
When a person manipulates someone into handing information?