Reekent Patel UNIT 15 P1
INTRO
Your-Tech is a small company which provides information about security issues to other small medium
sized business. These web pages describe the various threats that companies deals with on a day to day
basis. We receive many phone calls every day about issues with security and how to deal with threats. I
will be including all information about threats and security with guidance to reduce the flow of the vast
majority of phone calls every day. There are many threats which occur every day in businesses around
the world. Associated with computers, which then you would have to take certain precautions must be
carried out to deal with the hazards.
UNAUTHORISED ACCESS
THREATS DESCRIPTION IMPAC
T
VIRUSES A Virus is a hazard towards a computer. If a virus is hacked into your
There are many different types of viruses desktop, and has been for a
such as Trojan Horse, and worms. long time, after a while you
Organisations have viruses, they prevent would start to notice all your
viruses hacking into their system by using a files will be deleted due to the
antivirus CD, there are many products out on virus feeding off the data,
the market today, however Norton antivirus some other viruses can jump
would be the best to use. on other computers and
replicate itself. This can be a
major disadvantage for Your-
Tech, E.G if a bank lost all
customers information due to
viruses.
PHISHING Phishing simply means using electrical The impact phishing can have
communication to gain sensitive on organisations can be very
information, such as customer’s information damaging. Many fraudsters
and personal bank details. It is normally rely on high reputation banks
done by E-mails, The fraudster would create to proceed with Phishing. If
a fake email explaining why they need the someone tried to carry out
personal information from specific this procedure they would use
customers, however many people are aware a bank that everyone is
of phishing now, and have taken certain familiar with such as Barclays.
precautions to deal with it. If in this case the customer
does reply back to the email,
this could have drastic
outcomes towards the
customer’s security of
personal information. The
outcomes would be the
customer’s personal
Reekent Patel UNIT 15 P1
information would no longer
be secure anymore. Also it
gives the organisation a bad
name as well, due to the
original customer not trusting
them anymore.
IDENTITY THEFT Identity theft is when an individual has Identity theft can have a major
swiped all information from a victim and is affect on the person that has
using this information to receive benefits been victimised by this threat.
and credit for themselves on the victim’s Due to the fraudsters receiving
name. For many fraudsters this is an easy all benefits, there could be
way to get credit and receive corrupt money problems. These problems
dishonestly. would relate straight back to
the victim, who would then
get prosecuted because
his/her name was used. All
this would happen to the
person whose information was
taken by a fraudster. This is
why there is a major risk in
identity theft. If an employee
from Your-Tech has their
identity stolen from them, the
organisation could be in
danger of being hacked into
due to an employee’s identity
and information being taken
and abused.
PIGGYBACKING Piggybacking is when an unauthorized The impact of piggybacking is
person uses another person’s wireless not that huge compared to the
internet to access the internet. It could be a others explained above
restricted area that the person wants to get however it does have an
onto however they can’t so they jump on impact which is the authorised
another person’s wireless router and start persons internet which is
using and abusing their access. Also another getting abused can be shut
method of identity theft is passwords and down due to the person who
identity cards being replicated. is piggybacking abusing the
internet access by going on
restricted websites. All
problems would link back to
the person who’s using a
legitimate wireless access. The
fraudsters would have no
problems due to him/her
using someone else’s internet
Reekent Patel UNIT 15 P1
access. If this was to happen
to Your-Tech, The
organisations information
would be insecure, also there
restricted sites could be used
and abused. However Your-
Tech has a secure wireless
connection which needs
passwords and encryptions.
HACKING Hacking simply means when a virus or an
individual manually intercepts a computer
without the user knowing. There are many
forms of hacking. One mains form of hacking
is people’s security information on
computers. This form is known around the
world, many people have succeeded with
hacking into computers and controlling them
and some have been caught. Many
fraudsters now days victimise bank
computers to hack into. To them this is the
most valuable due to the fact everyone’s
information within that bank is in only one
database which can be located and taken
within couple seconds. However now there
are programs which can prevent hackers
from even entering a file. There are
encryptions added so no one but there
person who created the encryption can
access it. This is very beneficial towards
major linked organisations such as Barclays.
If Your-Techs system was to get hacked into
by either a individual or a virus then there
would be really damaging outcomes such as
the mainframe shutting down which would
cause all computers that run of the
mainframe within that area to shut down.
NATRAUL DISASTERS No one can prevent a natural disaster, for
example if there was an earthquake and it
hit a central reservation of a city in any
country, all objects would be destroyed due
to everything colliding and breaking. All
computers in offices would disappear. This is
where companies can lose out on a lot of
sensitive information. If that was to happen
there would be a drop in the income they
Reekent Patel UNIT 15 P1
receive which would resolve in a loss of
business. In other circumstances if there
was a blackout which causes electricity
failure there would be many organisations
which can lose out on a lot of delicate
information. However all organisations
should back up all- information in case there
ever was a blackout or any disaster, so in this
case there is a way of preventing information
to be lost from a natural disaster.
DAMAGE TO OR DESTRUCTION OF SYSTEM ACCESS
Malicious damage Within a secure organisation which is known,
there could be malicious damage, for example
a customer has come into a top rated bank
with their children. The children tend to mess
with stuff, however obviously not by purpose
the children interpreted one of the advisors
computers, which could resolve in a loss of
data. In another case there could be a person
set out to corrupt the system from outside of
the organisation this can be known as
malicious damage.
Technical Failures Many computers have technical failures.
Technical failures occur due to users abusing
computers for example downloading
unessassry programs.
Nowadays computers are more up to date,
they can cope with heavy data files.
Organisations such as Barclays are more likely
to get a technical failure due to so many
desktops. However all desktops are controlled
by one mainframe, if a problem was to occur
within the mainframe all computers connected
to it will be damage and probably have to be
rebooted which can resolve to a loss of data
unless all files were backed up.
Human Errors There are a lot of people that stress out in
work, and sometimes don’t even know what
tasks they are carrying out. Human error is a
Reekent Patel UNIT 15 P1
major aspect in dealing with threats. For
example a technician is called in to fit a new
program for Microsoft excel. The job is well
and done, however few weeks after the
system crashes whilst having a busy day with
customers. This can be very damaging to the
business, due to the fact it’s losing out on time
and money.
Theft We have talked about identity theft.
However theft is overall a whole different
aspect. Theft meaning that when
someone has physical stole information or
objects. There are many thieves’ that like
to victimise organisations. For example a
person goes into a law firm and steals all
legal advice for upcoming jury dates. This
can be very dangerous due to all court
issues are in the hands of someone
insecure. This is very dangerous in
organisation circumstances.