0% found this document useful (0 votes)
5 views16 pages

Cs Module 2 Notes

The document provides an overview of cybercrime and cyber law, defining cybercrime as illegal activities using communication devices and categorizing it into four types: against individuals, property, organizations, and society. It details various forms of cybercrime, including cyberstalking, hacking, and financial fraud, and highlights specific threats to women and children. Additionally, it discusses preventive measures and legal actions taken by law enforcement agencies against cyber offenders.

Uploaded by

Prathyusha Rao
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
5 views16 pages

Cs Module 2 Notes

The document provides an overview of cybercrime and cyber law, defining cybercrime as illegal activities using communication devices and categorizing it into four types: against individuals, property, organizations, and society. It details various forms of cybercrime, including cyberstalking, hacking, and financial fraud, and highlights specific threats to women and children. Additionally, it discusses preventive measures and legal actions taken by law enforcement agencies against cyber offenders.

Uploaded by

Prathyusha Rao
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

Cyber Security Module-II

Cybercrime and Cyber law


Cyber crime
Cybercrime can be defined as “The illegal usage of any communication device to commit or facilitate in
committing any illegal act”.
 A cybercrime is explained as a type of crime that targets or uses a computer or a group of computers under
one network for the purpose of harm.
 Cybercrimes are committed using computers and computer networks. They can be targeting individuals,
business groups, or even governments.
 Investigators tend to use various ways to investigate devices suspected to be used or to be a target of a
cybercrime.
 Examples: phishing, hacking, grooming, Cyber Terrorism …etc.

Classification Of Cyber Crimes


Cybercrimes can be classified in to 4 major categories as the following:
1. Cybercrime against Individual
2. Cybercrime Against Property
3. Cybercrime Against Organization
4. Cybercrime Against Society

1. Cybercrime against Individual: Cybercrime against individuals primarily involves activities that involve
the use of the internet and computers as a tool to extract private information from an individual, either directly
or indirectly, and disclose it on online platforms without the person’s consent or illegally in order to degrade
the person’s reputation or cause mental or physical harm.
 Cybercrime against an individual is a type of cybercrime that occurs in or through the use of the internet.
Sexual, ethnic, religious, or other forms of harassment exist.
 Cybercrime against an individual’s property includes computer wreckage, the destruction of other people’s
property, the delivery of destructive programs, trespassing, and unlawful possession of computer
information.
 Examples of Cybercrime against Individual includes e-mail spoofing, spamming, cyber defamation, cyber
harassments and cyber stalking.

1
Cyber Security Module-II

(i) Email spoofing: A spoofed email is one in which the e-mail header is forged so that the mail
appears to originate from one source but actually has been sent from another source.
(ii) Spamming: Spamming means sending multiple copies of unsolicited mails or mass e-mails such
as chain letters.
(iii)Cyber Defamation: This occurs when defamation takes place with the help of computers and/or
the Internet. E.g. someone publishes defamatory matter about someone on a website or sends e-
mails containing defamatory information.
(iv) Harassment & Cyber stalking: Cyber Stalking Means following an individual's activity over
internet. It can be done with the help of many protocols available such as e- mail, chat rooms, user
net groups.

2. Cybercrime Against Property: This type of cybercrime against property employs cyber vandalism, in which
hackers utilize software to access sensitive data and company websites in order to steal the information of
other firms or bank details. Crimes involving intellectual property, such as copyright, patents, and trademarks,
are a form of property crime.
 Examples of Cybercrime against Property includes credit card frauds, internet time theft and intellectual
property crimes.
(i) Credit Card Fraud: As the name suggests, this is a fraud that happens by the use of a credit
card. This generally happens if someone gets to know the card number or the card gets stolen.
(ii) Intellectual Property crimes: These include Software piracy: Illegal copying of programs,
distribution of copies of software. Copyright infringement: Using copyrighted material without
proper permission. Trademarks violations: Using trademarks and associated rights without
permission of the actual holder. Theft of computer source code: Stealing, destroying or
misusing the source code of a computer.
(iii)Internet time theft: This happens by the usage of the Internet hours by an unauthorized person
which is actually paid by another person.

3. Cybercrime Against Organization: The main target here is organizations. Usually, this type of crime is done
by teams of criminals including malware attacks and denial of service attacks. These include unauthorized
accessing of computer, denial of service, computer contamination / virus attack, e-mail bombing, salami
attack, logic bomb, trojan horse and data diddling.
(i) Unauthorized Accessing of Computer: Accessing the computer/network without permission
from the owner. It can be of 2 forms:
a) Changing/deleting data: Unauthorized changing of data.
b) Computer voyeur: The criminal reads or copies confidential or proprietary information, but the
data is neither deleted nor changed.
(ii) Denial Of Service: A denial-of-service (DoS) attack is a cyberattack on devices, information
systems, or other network resources that prevents legitimate users from accessing expected
services and resources. This is usually accomplished by flooding the targeted host or network with
traffic until the target can't respond or crashes, the DoS attack deprives legitimate users (i.e.,
employees, members, or account holders) of the service or resource they expected.
When Internet server is flooded with continuous bogus requests so as to denying legitimate users
to use the server or to crash the server.
(iii)Computer contamination / Virus attack: A computer virus is a computer program that can
infect other computer programs by modifying them in such a way as to include a (possibly

2
Cyber Security Module-II

evolved) copy of it. Viruses can be file infecting or affecting boot sector of the computer. Worms,
unlike viruses do not need the host to attach themselves to.
(iv) Email Bombing: Sending large numbers of mails to the individual or company or mail servers
thereby ultimately resulting into crashing.
(v) Salami Attack: When negligible amounts are removed & accumulated in to something larger.
These attacks are used for the commission of financial crimes.
(vi) Logic Bomb: It is an event dependent program. As soon as the designated event occurs, it crashes
the computer, release a virus or any other harmful possibilities.
(vii) Trojan Horse: This is an unauthorized program which functions from inside what seems to be
an authorized program, thereby concealing what it is actually doing.

(viii) Data diddling: This kind of an attack involves altering raw data just before it is processed by a
computer and then changing it back after the processing is completed.

4. Cybercrime Against Society: This is the most dangerous form of cybercrime. These include Forgery, Cyber
Terrorism, Web Jacking.
(i) Forgery: Currency notes, revenue stamps, mark sheets etc. can be forged using computers and
high-quality scanners and printers.
(ii) Cyber Terrorism: Cyber terrorism (also known as digital terrorism) is defined as disruptive
attacks by recognised terrorist organisations against computer systems with the intent of
generating alarm, panic, or the physical disruption of the information system. Use of computer
resources to intimidate or coerce people and carry out the activities of terrorism.
 Examples are hacking into computer systems, introducing viruses to vulnerable networks,
web site defacing, Denial-of-service attacks, or terroristic threats made via electronic
communication.[
(iii) Web Jacking: Hackers gain access and control over the website of another, even they change
the content of website for fulfilling political objective or for money.

Common cyber crimes

cybercrime targeting computers and mobiles


Cybercrime encloses a wide range of activities, but these can generally be divided into two categories:
a) Crimes that aim computer networks or devices. These types of crimes involve different threats (like
virus, bugs etc.) and denial-of-service attacks.
b) Crimes that use computer networks to commit other criminal activities. These types of crimes include
cyber stalking, financial fraud or identity theft.
 Cybercriminals that target computers may infect them with malware to damage devices or stop them
working. They may also use malware to delete or steal data. Or cybercriminals may stop users from using a
website or network or prevent a business providing a software service to its customers, which is called a
Denial-of-Service (DoS) attack.
 Cybercrime that uses computers to commit other crimes may involve using computers or networks to
spread malware, illegal information or illegal images.
 Cybercriminals are often doing both at once. They may target computers with viruses first and then use
them to spread malware to other machines or throughout a network.

3
Cyber Security Module-II

 Types of Mobile Security Threats:


1. Web-Based Threats – These types of threats happen when people visit sites that appear to be fine on
the front-end but in reality, automatically download malicious content onto the mobile devices. Also,
many mobile applications continue to sync their data in the background which poses a threat. These
threats usually go unnoticed by the users.
 Phishing Through Links: Some legitimate-looking links are sent through messages, emails,
or social media platforms. They extract personal information by tricking with several schemes.
It is not possible to categorize them as real or fake as they copy the original website.
 Forced Downloads: When you visit a page through anonymous links, it automatically directs
you to the download page. This method is called drive-by downloads.
2. Physical Threats – These threats happen when someone physically tries to access your device. When
you lose your mobile, or it is stolen there is a possibility for physical threats. Mobile devices carry
your transactional data as well as has connected applications to your bank accounts, which is a threat
to your privacy breach.
 No Password Protection : With keeping all measures to secure your data, it is surprising to
know that some people find it difficult to use a password on their devices, or they rather use a
password that is easy to crack by hackers. This leads to physical threats.
 Encryption: Encryption is the process through which data is encoded so that it remains hidden
from or inaccessible to unauthorized users. It helps protect private information, sensitive data,
and can enhance the security of communication between client apps and servers.
 It helps protect private information, sensitive data, and can enhance the security of
communication between client apps and servers. In essence, when your data is encrypted,
even if an unauthorized person or entity gains access to it, they will not be able to read it.
 While using carrier networks they generally provide good encryption while accessing
servers. But while accessing some client and enterprise servers they are explicitly
managed. They are not end-to-end encrypted which can lead to physical threats.
3. Network-Based Threats – Mobile network includes both Cellular and Local network support such as
Bluetooth and Wi-Fi. These are used to host network threats. These threats are especially dangerous as
the cyber-criminals can steal unencrypted data while people use public WiFi networks.
 Public Wi-Fi : While we are using our devices for every task, at public places we are provided
with public open WiFi which tends to be legitimate while they are controlled by hackers which
results in data leakage.
 Network Exploits: Network exploits are due to the vulnerabilities in the operating system in
your mobile devices. Once this software is connected to the network, they are capable of
installing malware onto the device without being known.
4. Application-Based Threats – Websites available for software downloads are home to these threats.
They tend to be genuine software but in fact are specially designed to carry malicious activities.
 Malware: Malware is designed to send unwanted messages to recipients and further use your
personal and business information by hacking your devices.
 Spyware: They are the software that are used to collect specific information about an
organization or person which later can be used for fraud and identity threats.

4
Cyber Security Module-II

Cybercrime against women


Cyber violence uses Computer Technology to access women’s personal information and use the
internet for harassment and exploitation. Women are becoming soft targets as they often trust other people and
are unaware of the consequences. Cybercrime affects women the most by subjecting them to mental and
emotional harassment. Most women become distressed, humiliated, and depressed under this type of crime
which is challenging to address and resolve.

Types of Cyber Crime

1. Cyber Stalking: Cyberstalking is a crime committed when someone uses the internet and other
technologies to harass or stalk another person online. It includes attempting to contact the women via
social networking sites without any legitimate purpose, putting threatening messages on the chat page,
and constantly disturbing the victims with objectionable emails and messages to create mental distress.
Some of the common examples of cyberstalking are:

 Making rude, offensive, or suggestive online comments


 Joining the same groups and forums to follow the target online
 Sending the target threatening, controlling, or lewd messages or emails
 Making a fake social media profile to follow the victim

2. Cyber Defamation: This activity involves defaming the victim through blackmailing and disclosing
their details or modified pictures. It often involves extorting and seeking sexual favors from the victim.
3. Cyber Hacking: When asked to click on unauthorised URLs or download apps that leak all their
personal information on their phones, the women became victims of cyber hacking. The criminals
utilise these details for unauthorised monetary transactions and other unlawful activities.
4. Cyber Bullying: It is an act of regular harassment and bullying of the victim through the digital
communication device by posting abusive and misleading content, pictures, or videos and sending rape
and death threats. When something abusive is shared about anyone on online platforms which humiliates,
embarrasses or degrades the reputation of the person is called cyberbullying.

Prevent Cyberbullying: Manage privacy settings online, protect your passwords, keep clear
records,Block cyberbullies via user settings, Report cyberbullying to site admins, Stay safe online.

5. Cyber Grooming: In this case, a person builds a relationship with a woman through an online platform
and pressurizes her for undue favors.

Cybercrime against children


It is a place where children will grow up facing a variety of dangers and difficulties, but it is also a place
where children will become victims of cybercrime. Offenders were able to target children both on an individual
and a group basis by making use of information and communications technology (ICT). Children and teenagers
are picking up new technologies at a rate that has never been seen before, unwittingly putting themselves in the
path of people who prey on children online. Children all over the world are now exposed to new risks as a result
of the digital age, including statutory offences committed for both personal and commercial purposes, "child
trafficking," "cyber grooming," and "cyber-bullying." These are just some of the risks.

5
Cyber Security Module-II

 Law Enforcement Agencies (LEAs) take legal action in line with the Indian Penal Code and the Information
Technology Act, 2000 against cyber fraud and offenders. The CCPWC is one of the Ministry’s initiatives to
enforce these laws.

Types of Cyber Crime


1. Cyber Bullying: Sending tormenting post, harassing messages, threatening contents to a minor to
cause mental harassment and depressive or suicidal state of mind to the recipient of such messages.
Preventions: Share those messages and posts with your Parents or teachers who are matured
enough to understand the gravity of the matter and act accordingly. Do not keep on facing or enduring
these troubles.
2. Roasting: Adults and children have willingly posted images and/or videos of themselves on social
media and video sharing platforms, like Instagram, Twitter, YouTube, and Vine with the hashtag
(#roastme), inviting others to post insults about them.
3. Sexting- Self-production and posting of intimate pictures, posting / sharing of intimate pictures. It is
the most common type of self-generated sexually explicit material involving children.
4. Online games: Girls who are vulnerable to loneliness, low self-esteem and clinical depression can
fall prey to dangerous online games that may become addictive and further harm them. Some like the
notorious blue whale challenge even end in the victim ending her life. This is a personal as well as
social challenge for the others around.

Financial frauds
Cybercrime in finance is the act of obtaining financial gain through profit-driven criminal activity, including
identity fraud, ransomware attacks, email and internet fraud, and attempts to steal financial account, credit card,
or other payment card information.
 Credit Card/Debit Card Fraud- Cyber criminals steal the credit card/debit card details such as card
number, CVV code, expiry date of the card, PIN, OTP etc. using various techniques such as phishing,
vishing, skimming, Spoofing and commit online banking fraud.
 Online Wallet KYC Fraud- Fraudsters use series of mobile numbers and call to the victims randomly
for updating KYC of online wallet and commit fraud by taking payment credentials using different
techniques like Google Form.
 Online Sell Fraud- When people use the online websites like OLX/Quickr for selling their old items,
they receive call from fraudster also. Fraudster uses UPI collect money facility and send the request to
victim for accepting the same.
 Cryptocurrency Fraud-Cryptocurrency payments do not come with legal protections. Scammers are
finding new ways to steal your money using cryptocurrency. There is possibility of scam if someone
requests you to pay through cryptocurrency.
 SIM Swap Fraud- Using online SIM swap facility, cyber criminals get a new SIM card issued against
your mobile number through the mobile service provider. Further, using swapped SIM (new SIM),
fraudsters get One Time Password (OTP) and other SMS alerts required to carry out online transactions
through bank account.

6
Cyber Security Module-II

How to Prevent from Cyber Crime?


1. Never share your sensitive financial details like card number, expiry date, CVV, ATM PIN, OTP, online
banking ID and password to anyone.
2. Do not forward the message to other numbers if received from illegitimate sources.
3. Do not scan QR code through UPI app which is received from unknown sources.
4. Do not enter UPI PIN in case you receive QR code or link otherwise your account will be debited.
5. Please note that UPI PIN is used for deducting the money from your bank account. For receiving money,
no UPI PIN is required.
6. Do not click on the link received from unknown sources.
7. Do not open email attachments from unknown sources.
8. Block your web browser pop ups.
9. Keep your passwords strong and secret.
10. Keep backup of important files in a separate disk/ memory card.
11. Do not install apps through link. Apps should always be installed directly from play store/ app store.
12. Do not install Anydesk or Team Viewer Quick Support app in your mobile phone.
13. Do not visit unsafe or suspicious websites. Please note that secure website always starts with https.
14. Check the URL in the browser address bar and look for any spelling mistakes.

Various Common Measures to Control Cyber Crime


 Encryption: This is a common and widely used method to prevent data theft. In this method plain text can be
converted to cipher text and the recipient could decrypt it again into plain text by using a code. In this manner
only the sender and recipient could have access to data and no outsider could access to it.
 Syncronised Passwords: The passwords are created, and are only valid for very short duration. They can be
used for one time login. Some other methods are voice recognition, digital signature, biometric, etc.
 Firewalls: It creates wall between the system and possible intruders to protect the classified documents from
being leaked or accessed. It would only let the data to flow in computer which is recognised and verified by one’s
system. It only permits access to the system to ones already registered with the computer.
 Digital Signature: Are created by using means of cryptography by applying algorithms. This has its prominent
use in the business of banking where customer’s signature is identified by using this method before banks enter
into huge transactions.

Social Engineering Attacks


The first step in most social engineering attacks is for the attacker to perform research and reconnaissance on
the target. If the target is an enterprise, for instance, the hacker may gather intelligence on the organizational
structure, internal operations, common lingo used within the industry and possible business partners, among
other information. attackers can scan social media profiles for personal information and study their behavior
online and in person.
If the attack is successful, the attacker gains access to confidential information, such as Social Security numbers
and credit card or bank account information; makes money off the targets; or gains access to protected systems
or networks.

7
Cyber Security Module-II

Types of social engineering attacks


Popular types of social engineering attacks include the following techniques:

 Baiting. An attacker leaves a malware-infected physical device, such as a Universal Serial Bus flash
drive, in a place it is sure to be found. The target then picks up the device and inserts it into their
computer, unintentionally installing the malware.
 Phishing. When a malicious party sends a fraudulent email disguised as a legitimate email, often
purporting to be from a trusted source. The message is meant to trick the recipient into sharing
financial or personal information or clicking on a link that installs malware.
 Spear phishing. This is like phishing, but the attack is tailored for a specific individual or
organization.
 Vishing. Also known as voice phishing, vishing involves the use of social engineering over the phone
to gather financial or personal information from the target.
 Whaling. A specific type of phishing attack, a whaling attack targets high-profile employees, such as
the chief financial officer or chief executive officer, to trick the targeted employee into disclosing
sensitive information.

 Pretexting. One party lies to another to gain access to privileged data. For example, a pretexting scam
could involve an attacker who pretends to need financial or personal data to confirm the identity of
the recipient.
 Scareware. This involves tricking the victim into thinking their computer is infected with malware or
has inadvertently downloaded illegal content. The attacker then offers the victim a solution that will

8
Cyber Security Module-II

fix the bogus problem; in reality, the victim is simply tricked into downloading and installing the
attacker's malware.
 Watering hole. The attacker attempts to compromise a specific group of people by infecting websites
they are known to visit and trust with the goal of gaining network access.
 Diversion theft. In this type of attack, social engineers trick a delivery or courier company into going
to the wrong pickup or drop-off location, thus intercepting the transaction.
 Honey trap. In this attack, the social engineer pretends to be an attractive person to interact with a
person online, fake an online relationship and gather sensitive information through that relationship.

Malware and Ransomware attacks


Malware, short for malicious software, refers to any intrusive software developed by cybercriminals (often
called hackers) to steal data and damage or destroy computers and computer systems.

 Examples of common malware include viruses, worms, Trojan viruses, spyware, adware, and
ransomware.
 The trojan virus disguises itself as legitimate software.
 Ransomware blocks access to the network's key components.
 whereas Spyware is software that steals all your confidential data without your knowledge.
 Adware is software that displays advertising content such as banners on a user's screen.
 A computer virus is a program, wherein a code copies itself and replicates itself to other programs/files
on a device and may result in corrupting or damaging the device. Examples of computer virus include
Creeper, Blaster, Slammer, etc. Time taken by a virus to spread in the system is lesser in comparison to a
worm.
 A computer worm is an independent malicious program, which when enters a system can start causing
harm/damage to the device. Examples of computer worm include Morris worm, storm worm, etc. A
worm can quickly spread through a device.

Let’s now look at how we can prevent a malware attack:

 Use antivirus software. It can protect your computer against malware. Avast Antivirus, Norton
Antivirus, and McAfee Antivirus are a few of the popular antivirus software.
 Use firewalls. Firewalls filter the traffic that may enter your device. Windows and Mac OS X have
their default built-in firewalls, named Windows Firewall and Mac Firewall.
 Stay alert and avoid clicking on suspicious links.
 Update your OS and browsers, regularly.

9
Cyber Security Module-II

What is Ransomware attack?


Ransomware is a malware designed to deny a user or organization access to files on their computer. By
encrypting these files and demanding a ransom payment for the decryption key, cyberattacks place
organizations in a position where paying the ransom is the easiest and cheapest way to regain access to their
files. Some variants have added additional functionality – such as data theft – to provide further incentive for
ransomware victims to pay the ransom.
Recent ransomware attacks have impacted hospitals’ ability to provide crucial services, crippled public services
in cities, and caused significant damage to various organizations.

Steps to Prevent & Limit the Impact of Ransomware

1. Maintain backups – thoughtfully


2. Develop plans and policies
3. Review port settings
4. Harden your endpoints
5. Keep systems up-to-date
6. Train the team
7. Implement an IDS (Intrusion Detection System)

zero day and zero click attacks

What is a Zero-Day Threat?


 A zero-day threat or attack is an unknown vulnerability in your computer or mobile device’s software
or hardware. The term is derived from the age of the exploit, which takes place before or on the first (or
“zeroth”) day of a security vendors’ awareness of the exploit or bug.
 This often means there is no known immediate security because software or hardware manufacturers
are just learning of the vulnerability and have had zero days to address and patch the vulnerability.

What is a Zero Click Attack?


• Often, zero-click attacks target apps that provide messaging or voice calling because these services are
designed to receive and interpret data from untrusted sources.
• The exploit can install malware or perform other malicious interactions on a user’s device without the
target needing to click on a link, open a malicious file or take any other action.
A hypothetical zero-click attack might work like this:

• Cybercriminals identify a vulnerability in a mail or messaging app.


• They exploit the vulnerability by sending a carefully crafted message to the target.
• The vulnerability allows malicious actors to infect the device remotely via emails that consume
extensive memory.
• The hacker's email, message, or call won't necessarily remain on the device.
• As a result of the attack, cybercriminals can read, edit, leak, or delete messages.

10
Cyber Security Module-II

What is the modus operandi of a cyber-attack?


• Cyber attackers don’t want you to understand what they’re doing. The less you know, the more
opportunity they have to fraudulently extract funds from your organization. A skilled and determined
cyber-criminal can use multiple entry points to navigate around defenses, breach your network in
minutes and evade detection for months.
• This is how they do it

1. Reconnaissance and compromise: The initial reconnaissance period prior to an attack involves
criminals researching and gathering information about the target organization. They look for
network ranges, IP addresses and domain names.
2. Obtain credentials: Attackers use various tools to help them steal credentials, allowing them
to upgrade their access to administrator level
3. Submit fraudulent messages: Attackers infiltrate the network using malicious programmers
that allow them to hide in multiple systems and inject malware into critical systems. At this
point, they can start to submit fraudulent payment instructions by impersonating an operator or
approver.
4. Hide evidence: Once fraudulent payments have been sent, attackers proceed to cover their
tracks, hiding evidence of their actions. Using various tools and techniques, they delete or
manipulate records.

Challenges of Cyber Crime:

1. People are unaware of their cyber rights-


The Cybercrime usually happen with illiterate people around the world who are unaware about
their cyber rights implemented by the government of that particular country.
2. Anonymity-
Those who Commit cyber crime are anonymous for us so we cannot do anything to that person.
3. Less numbers of case registered-
Every country in the world faces the challenge of cyber crime and the rate of cyber crime is
increasing day by day because the people who even don’t register a case of cyber crime and this is
major challenge for us as well as for authorities as well.
4. Mostly committed by well educated people-
Committing a cyber crime is not a cup of tea for every individual. The person who commits cyber
crime is a very technical person so he knows how to commit the crime and not get caught by the
authorities.
5. No harsh punishment-
In Cyber crime there is no harsh punishment in every cases. But there is harsh punishment in some
cases like when somebody commits cyber terrorism in that case there is harsh punishment for that
individual. But in other cases there is no harsh punishment so this factor also gives encouragement
to that person who commits cyber crime.

11
Cyber Security Module-II

Cyber Extortion

occurs when a hacker illegally accesses your organization's sensitive data or systems and then demands money
in return for allowing you to either regain control or stop the attack. If you have an ecommerce site, for example,
and a hacker launches a distributed denial-of-service (DDoS) attack, users may be unable to purchase your
products or services—not until you pay the amount the hacker is asking for.
 Some examples of extortion include the mob demanding money from a business in order to keep it from
harm

What Is Cyber Warfare?

Cyber warfare is usually defined as a cyber-attack or series of attacks that target a country. It has the potential to
wreak havoc on government and civilian infrastructure and disrupt critical systems, resulting in damage to the
state and even loss of life.

some high-profile examples of cyber warfare operations:


 Stuxnet (2010) was the first cyber warfare tool intended to cause physical harm to
infrastructure. Stuxnet was a malware cyberweapon that targeted Iranian nuclear centrifuges and
caused substantial disruption to the country’s nuclear program.
 Cyber espionage by the United States (2013) against countries such as Brazil and Germany was
revealed in documents leaked by Edward Snowden.
 The Sony Pictures hack (2014) saw a state-affiliated hacking group from North Korea leak
confidential documents belonging to Sony Pictures Entertainment. The attack was in response to
the release of “The Interview,” a Hollywood film portraying North Korea in an unfavorable light.
 Wannacry (2017) was a ransomware attack originating from North Korea. Wannacry exploited a
Windows vulnerability to revoke data access across hundreds of thousands of PCs in 150
countries.
 Blackouts in Mumbai, India (2020) are thought to have been part of a Chinese
cyberattack conducted as a “warning” against India.

What is internet(online) fraud?


Internet fraud refers to any type of fraud scheme that uses email, websites, chat rooms or message boards to
present fraudulent invitations, offers or requests to potential victims, to conduct fraudulent transactions, or to
transmit the proceeds of fraud to themselves or to others connected with the scheme.
 Examples internet Fraud are Imposter scams (phishing attacks), Credit card and debit card fraud,
Mortgage and loan fraud, Employment scams , Online fraud and malware, Advance fee scams, Tax refund
fraud, Healthcare fraud (medical identity theft), Cryptocurrency fraud.

12
Cyber Security Module-II

What is cryptojacking?
Cryptojacking is a threat that embeds itself within a computer or mobile device and then uses its resources to
mine cryptocurrency. Cryptocurrency is digital or virtual money, which takes the form of tokens or "coins." The
most well-known is Bitcoin, but there are approximately 3,000 other forms of cryptocurrency.
Cybercriminals hack into devices to install cryptojacking software. The software works in the background,
mining for cryptocurrencies or stealing from cryptocurrency wallets.

What is a data breach?


A data breach is any security incident in which unauthorized parties gain access to sensitive data or
confidential information, including personal data (Social Security numbers, bank account numbers, healthcare
data) or corporate data (customer data records, intellectual property, financial information).
What are the Consequences of a Data Breach?
 Data breaches can affect the brand's reputation and cause the company to lose customers. Breaches can
damage and corrupt databases. Data breaches also can have legal and compliance consequences.
 Data breaches also can significantly impact individuals, causing loss of privacy and, in some cases,
identity theft.

HOW TO FILE A COMPLAINT

 The complaint regarding commission of cyber crime can be made to the in-charge of the cyber crime
cells which are present almost in every city.
 1930 is national cybercrime helpline. If you fall victim to a financial fraud, you can call this number with
necessary details, such as your name, contact information, your account number along with the details of
the account that you transferred the money to.
 To file a complaint alleging commission of a cyber crime the following documents must be provided:

1. In case of e-mail abuse, vulgar e-mail etc. the following information should be provided:

1. Extract the extended headers of offending e-mail and bring soft copy as well hard copy of offending e-
mail.
2. Please do not delete the offending e-mail from your e-mail box.
3. Please save the copy of offending e-mail on your computers hard drive.

[Link] case of hacking the following information should be provided:

1. Server Logs
2. Copy of defaced web page in soft copy as well as hard copy format, if your website is defaced
3. If data is compromised on your server or computer or any other network equipment, soft copy of original
data and soft copy of compromised data.
4. Access control mechanism details i.e.- who had what kind of the access to the compromised system
5. List of suspects – if the victim is having any suspicion on anyone.
6. All relevant information leading to the answers to following questions –
1. what ? (what is compromised)

13
Cyber Security Module-II

2. who? (who might have compromised system)


3. when?(when the system was compromised)
4. why?(why the system might have been compromised)
5. where?(where is the impact of attack-identifying the target system from the network)
6. How many?(How many systems have been compromised by the attack)

Where to Report a Cyber Fraud?

1. Visit the nearest police station immediately.


2. To report cybercrime complaints online, visit the National Cyber Crime Reporting Portal. This portal
can be accessed at [Link]
3. In case you receive or come across a fraud sms, e-mail, link, phone call asking for your sensitive
personal information or bank details, please report it on Maharashtra Cyber’s web portal by
visiting [Link]
4. Refer to the latest advisories which are issued by CERT-IN on [Link]
5. Report any adverse activity or unwanted behavior to CERT-IN using following channels E-mail
: incident@[Link] Helpdesk : +91 1800 11 4949.

Remedial and mitigation measures

 Remediation activities focus on fixing a problem to avoid or prevent the arrival of a risk. For
example, in the cybersecurity world, remediation measures are usually related to patching
vulnerabilities with software updates, to eliminate those weak spots in your cyber defenses.
 Mitigation measures focus on reducing the potential damage of a threat, to levels that are tolerable
for the company or that can be accepted based on a cost-benefit analysis. Mitigation activities
address vulnerabilities that can’t be addressed via remediation — perhaps because remediation of
one issue might cause other risks, or the costs of downtime would be too high to be worth the cost.

Example: Regularly scan and take inventory of your network devices and software, Remove
unnecessary or unexpected hardware and software from the network.

The Legal Perspective of Cyber Crime


In Simple way we can say that cybercrime is unlawful acts wherein the computer is either a tool or a
target or both. Cybercrimes can involve criminal activities that are traditional in nature, such as theft, fraud,
forgery, defamation and mischief, all of which are subject to the Indian Penal Code. The abuse of computers
has also given birth to a gamut of new age crimes that are addressed by the Information Technology Act,
2000.

Cyber Law
• Cyber Law also called IT Law is the law regarding Information-technology including computers and
the internet. It is related to legal informatics and supervises the digital circulation of information,
software, information security, and e-commerce.
• Cyber law deals with the legal aspects of cyberspace, the internet, and computing. In a broader view,
cyber law handles the issues of intellectual property, contract, jurisdiction, data protection laws, privacy,
and freedom of expression in the digital space.

14
Cyber Security Module-II

• Importance of Cyber Law:


It covers all transactions over the internet.
It keeps eye on all activities over the internet.
It touches every action and every reaction in cyberspace.

Types of Cyber Law


There are several types of cyber laws, each addressing specific aspects of digital activities and cybersecurity.
Here are some common categories of cyber laws:
1. Privacy Laws:
o Privacy laws govern the collection, use, and protection of individuals’ personal information
online.
o Examples include the General Data Protection Regulation (GDPR) in Europe and the California
Consumer Privacy Act (CCPA) in the United States.
2. Cybercrime Laws:
o Cybercrime laws focus on criminal activities conducted online, including hacking, identity theft,
online fraud, and cyberbullying.
o These laws define offenses, penalties, and procedures for investigation and prosecution.
3. Data Breach Notification Laws:
o Data breach notification laws mandate that organizations inform affected individuals and
authorities when a data breach occurs.
o These laws aim to ensure transparency and help individuals take necessary actions to protect
themselves.
4. Intellectual Property Laws:
o Intellectual property laws protect digital content, patents, trademarks, and copyrights in the
digital realm.
o They address issues like copyright infringement and online piracy.
5. Cybersecurity Laws:
o Cybersecurity laws require organizations to implement measures to protect their digital
infrastructure and sensitive data.
o These laws often set standards and requirements for data security practices.
6. E-Commerce and Online Contracts:
o Laws related to e-commerce and online contracts establish legal frameworks for online
transactions, electronic signatures, and consumer rights.
o They provide a basis for resolving disputes in the digital marketplace.

15
Cyber Security Module-II

7. Social Media and Online Content Regulations:


o Regulations governing social media and online content address issues such as hate speech,
defamation, and harmful content.
o They set guidelines for the removal or restriction of such content.
8. Computer Crime Laws:
o Computer crime laws specifically target offenses involving computer systems and networks.
o They encompass unauthorized access, malware distribution, and cyberattacks on critical
infrastructure.
9. Cryptocurrency and Blockchain Regulations:
o As digital currencies and blockchain technology gain prominence, regulations address issues like
cryptocurrency trading, initial coin offerings (ICOs), and blockchain-based contracts.
10. International Cybersecurity Agreements:
o Some laws and agreements focus on international cooperation in combating cybercrimes and
promoting cybersecurity best practices.
o Examples include the Budapest Convention on Cybercrime and bilateral cybersecurity
agreements between nations.

Cybercrime laws have much highlighting importance like-


1. It helps to prosecute cyber abuse, online assaults and harassment, theft of records or documents,
disruption in online working, and other cybercrimes effectively.
2. It helps in the prosecution of those who undertake illegal activities with the use of the Internet.
3. Action is taken against the accused based on his location and the way he is involved in the crime
causing a violation of cyber law.
4. As cybercrimes are beyond the reach of felonies, prosecuting or retracting the hackers is most
important.
5. The rules and laws are designed to address cyber-related threats and issues by protecting internet
businesses and users from unwanted unauthorized access and malicious attacks.

What is Forensic Investigation?


 Cyber forensics is the science of collecting, inspecting, interpreting, reporting, and presenting
computer-related electronic evidence. Evidence can be found on the hard drive or in deleted files.
 One important facet of a forensics investigation is to provide some incident response assistance. They
help close the window of opportunity of the breach, which may even take place before the real forensic
investigation begins. In this step(s) the investigator tries to find where you’re vulnerable, or how the
attacker got into your system, and how to prevent future (successful) hacks.

16

You might also like