0% found this document useful (0 votes)
9 views5 pages

Computer Safety and E-Security Guidelines

Chapter 8 discusses safety and security issues related to computer systems, including risks like electrocution and fire hazards, along with methods to mitigate these risks. It also covers e-safety concerns on social networking sites, the importance of strong passwords, and the role of firewalls in protecting systems from unauthorized access. Additionally, it explains biometric authentication techniques and the significance of encryption in safeguarding sensitive information.

Uploaded by

lolimartinez613
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
9 views5 pages

Computer Safety and E-Security Guidelines

Chapter 8 discusses safety and security issues related to computer systems, including risks like electrocution and fire hazards, along with methods to mitigate these risks. It also covers e-safety concerns on social networking sites, the importance of strong passwords, and the role of firewalls in protecting systems from unauthorized access. Additionally, it explains biometric authentication techniques and the significance of encryption in safeguarding sensitive information.

Uploaded by

lolimartinez613
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

Lola Martinez

CHAPTER 8: Safety and Security


Exam-style questions:

1)
a- Name three safety issues when using computer systems. [3]

Three safety issues when using computer systems are electrocution, tripping
hazards, and fire hazards. Each of these poses a significant risk to users and
must be managed to ensure a safe working environment.

b- For each named safety issue, describe one way to remove or militate against
the risk. [3]

To prevent electrocution, users should avoid bringing drinks into the computer
room and ensure all wires are regularly checked for damage. In the case of
tripping hazards, cables should be placed in ducts or under desks and wireless
connections used when possible. For fire hazards, it is important not to
overload sockets and to keep ventilation around equipment clear.

2) Internet banking can be used by bank customers to check their account


balance. Many ways of logging into such a system involve the use of
passwords. Describe three methods of minimizing the possibility of passwords
being misused or intercepted. [3]

To reduce the risk of passwords being misused or intercepted, strong


passwords that include upper-case letters, numbers, and symbols should be
used and changed frequently. Secondly, anti-spyware software should be
installed to prevent key logging software from capturing passwords. Lastly,
two-factor authentication adds another layer of security by requiring something
the user knows and something they have, such as a phone, before granting
access.

3) There are a number of health and safety issues associated with the use of
computers. Draw arrows from the terms Health or Safety to the matching issue.
Use a maximum of four arrows. [4]

4)
a- Discuss the e-safety issues when using a social networking site. [7]

When using social networking sites, several e-safety risks must be considered.
Firstly, users must not share personal data such as addresses or school names,
as this can lead to identity theft. Secondly, privacy settings should be
Lola Martinez

configured to control who can view one’s profile and posts. Additionally, posting
photographs in school uniform or with identifiable landmarks can reveal one’s
location. Users should also avoid communicating with strangers or accepting
unknown friend requests. Finally, it is essential to block and report suspicious
behavior and avoid the use of inappropriate language, especially in chat rooms.

b- Data can be classified as personal or sensitive. Give two examples of each.


[4]

Personal data includes information such as a person's email address and date
of birth, while sensitive data includes more private details such as a person’s
medical history and political views. Sensitive data requires a higher level of
protection due to the potential for harm if disclosed.

5) Indicate, by ticking (✓) the appropriate box, which of the following are
examples of a health risk and which are examples of a safety risk. [7]

6) Seven ICT descriptions are shown on the left and seven ICT terms on the
right. By drawing arrows, connect each description to the correct term. [6]
Lola Martinez

7) Complete the following paragraph using words or phrases from the following
list. Each word or phrase may be used once, more than
once or not at all.
E-safety
» authenticity
» biometrics
» digital
certificate sensitive
» encrypted privacy
» e-safety hacking
phishi
» hacking ng
» link
» password lin
protected smishi
» personal
data
» pharming encrypte
» phishing secure sockets
» privacy
digital
settings
» protocols
» secure sockets layer authenticit
» sensitive data
» smishing
» user ID
» vishing
Lola Martinez

8)
a- Explain what is meant by a firewall. [2]

A firewall is a software or hardware system that sits between a user’s computer


and a public network, such as the internet. Its purpose is to filter traffic and
prevent unauthorized access, thereby protecting the system from potential
security threats like hacking or viruses.

b- Describe four of the tasks carried out by a typical firewall. [4]

A typical firewall performs several essential tasks. Firstly, it examines incoming


and outgoing data traffic, allowing only what meets specific criteria. Secondly,
it blocks access to suspicious or unauthorized websites based on IP address
filtering. Thirdly, it can log all network activity, which helps users or
administrators identify any potential threats. Lastly, it provides alerts when
unauthorized software attempts to access the internet, allowing users to
approve or deny the action.

9) Explain each of the following terms and give an example of their use. [10]

a- cloning of credit cards: is the illegal duplication of the magnetic stripe on a


card using a skimming device. For example, a criminal may place a skimmer in
an ATM slot to copy card data and then use it with a fake card for purchases.

b- fingerprint scanning: uses a person’s unique fingerprint pattern to verify


identity. For example, smartphones use fingerprint scans to unlock the device
securely.

c- digital certificates: are files containing a public and private key used to
authenticate a sender and encrypt communication. An example is when a
secure email is sent with a digital certificate to verify the sender’s identity.
d- encryption: transforms data into cypher text using an encryption key,
making it unreadable to unauthorized users. For instance, sensitive files stored
on a USB can be encrypted to protect them from theft.

e- vishing: is a voice phishing attack where users receive fake phone calls
asking for personal information, like pretending to be from a bank asking for
your card details.

10)
a- Name three biometric authentication techniques. [3]

Three biometric authentication techniques are fingerprint scans, face


recognition, and retina scans. These methods use unique biological
characteristics to verify identity.

b- For each named technique, describe the advantages and disadvantages of


using it as a method of data security. [6]
Lola Martinez

Fingerprint scans are highly accurate and easy to use, offering strong security.
However, they may not work well if the skin is damaged or dirty, and some
may find them intrusive. Face recognition is non-intrusive and low-cost,
commonly used in smartphones. Nevertheless, it may fail under different
lighting or if the person changes their hairstyle or wears glasses. Retina scans
offer extremely high accuracy and are almost impossible to replicate. However,
they are intrusive, slow to verify, and expensive to install.

11)
a- Explain what is meant by the term authentication. [2]

Authentication is the process of verifying the identity of a user before granting


access to a system. This ensures that data or services are only accessible by
authorized individuals.

b- Explain what is meant by two-factor authentication. [3]

Two-factor authentication is a security method that requires two forms of


identification: something the user knows (like a password) and something they
have (like a phone). For example, a bank may send a one-time code to a user’s
phone, which must be entered along with the password to log in.

12)
a- Explain why it is important to encrypt emails. [3]

It is important to encrypt emails because this ensures that even if the


messages are intercepted by a hacker, the contents remain unreadable without
the decryption key. This protects sensitive information and maintains
confidentiality during communication.

b- Explain why key logging software poses a security threat when purchasing
items on the internet. [3]

Key logging software records every keystroke made on a keyboard, allowing


cybercriminals to steal personal data such as credit card numbers and
passwords. When purchasing online, this can lead to identity theft and financial
fraud.

Common questions

Powered by AI

Fingerprint scans are accurate and easy to use but may fail with damaged skin and can be intrusive. Face recognition is non-intrusive and affordable yet may be unreliable under varying conditions like changes in appearance or lighting. Retina scans provide high accuracy and difficulty to replicate but are intrusive, costly, and slow for verification .

Three methods to minimize password misuse or interception include using strong passwords with upper-case letters, numbers, and symbols, installing anti-spyware software to prevent key logging, and implementing two-factor authentication requiring something the user knows and has, like a phone. Strong passwords reduce the chance of being easily guessed. Anti-spyware prevents malware from capturing keystrokes. Two-factor authentication adds an additional security layer by verifying identity with two separate factors .

A typical firewall protects a computer system by filtering traffic and blocking unauthorized access. Its main functions include examining incoming and outgoing data traffic, blocking access to suspicious or unauthorized websites using IP filtering, logging network activity for threat identification, and providing alerts when unauthorized software tries to access the internet .

Key logging software captures every keystroke, enabling cybercriminals to steal data such as credit card numbers and passwords during online purchases, leading to identity theft and fraud. Countermeasures include installing anti-spyware, using secure payment gateways, and implementing two-factor authentication to ensure data security against unauthorized access .

Two-factor authentication enhances security by requiring two forms of identification: something the user knows (e.g., password) and something they have (e.g., phone). For instance, a bank may send a one-time code to a user’s phone that must be entered with the password for access, ensuring identity verification through dual checkpoints .

Vishing involves voice phishing attacks where fake phone calls attempt to extract personal information, like bank details, from victims. It poses a threat because it exploits trust and communication channels, often using social engineering tactics to deceive individuals into revealing sensitive data .

Social networking sites create e-safety risks such as identity theft by sharing personal information like addresses. To mitigate these, users should configure privacy settings to control visibility, avoid posting identifiable photos, reject unknown friend requests, block and report suspicious behavior, and refrain from inappropriate language in chat rooms. These practices reduce exposure to potential threats by limiting personal data dissemination and managing interactions .

Potential safety risks when using computer systems include electrocution, tripping hazards, and fire hazards. To mitigate electrocution, users should avoid bringing drinks into the computer room and regularly check wires for damage. Tripping hazards can be minimized by placing cables in ducts or under desks and using wireless connections where possible. To prevent fire hazards, avoid overloading sockets and ensure proper ventilation around equipment to dissipate heat .

Digital certificates ensure secure communication by using public and private keys to authenticate senders and encrypt messages. They verify sender identity, as only authorized users possess the corresponding private key to decrypt messages, ensuring data integrity and authenticity during information exchange .

Encrypting emails ensures that even if intercepted by hackers, the contents remain unreadable without the decryption key. This protects sensitive information from unauthorized access and maintains confidentiality, ensuring secure communication of private data .

You might also like