Week 1 - Introduction & Application and Networking-based Attacks Flashcards
What is network security?
Network security (aka cybersecurity or internet security) is the practice of defending computers, servers, mobile devices, electronic systems, networks, and data from malicious attacks.
What are the three computer security objectives (e.g. CIA Triad)?
- Confidentiality
- Data confidentiality
- Privacy - Integrity
- Data integrity
- System integrity - Availability
What is the concept of authenticity in network security?
Authenticity is verifying that users are who they say they are and that each input arriving at the system came from a trusted source.
What is the concept of accountability in network security?
Accountability is the security goal that generates the requirement for actions of an entity to be traced uniquely to that entity.
What are the 3 levels of impact on organisations (security breach)
- High - Severe or catastrophic adverse effect on organisational operations, organisational assets, or individuals
- Moderate - Serious adverse effect on organisational operations, organisational assets, or individuals
- Low - Limited adverse effect on organisational operations, organisational assets, or individuals
What is a security attack?
A security attack is any action that compromises the security of information owned by an organisation.
What is a security mechanism?
A security mechanism is a process (or a device incorporating such a process) that is designed to detect, prevent, or recover from a security attack.
What is a security service?
A security service is a processing or communication service that enhances the security of the data processing systems and the information transfers of an organisation
Intended to counter security attacks, and they make use of one or more security mechanisms to provide the service
What are the two types of security attacks?
Passive attacks - attempts to learn or make use of information from the system but does affect the system resources (eavesdropping, monitoring)
Active attacks - attempts to alter system resources or affect their operation (modification of message)
What is a DDoS attack?
A distributed denial of service is a type of active attack where the attacker attempts to disrupt the normal traffic of a targeted server, service or network by overwhelming the target or its surrounding infrastructure with a flood of Internet traffic. DDoS attacks achieve effectiveness by utilizing multiple compromised computer systems as sources of attack traffic
What are the 5 major service categories in X.800?
- Authentication
- Access control
- Data confidentiality
- Data integrity
- Nonrepudiaition