CSD in Cyber Security Course Overview
CSD in Cyber Security Course Overview
Internet hacking refers to the unauthorized access to or manipulation of systems and networks for malicious purposes. Cracking, a subset of hacking, specifically involves breaking into systems to bypass security measures, often to access software or protected data. Types of cracking include software cracking, where copy protection is bypassed; password cracking, where user credentials are deciphered; and network cracking, which involves infiltrating networks to access sensitive information .
Viruses and worms are both malicious software that can result in computer intrusion, yet they operate differently. Viruses attach themselves to legitimate programs and require user action to propagate, often spreading through file sharing or email. In contrast, worms are standalone malware that can self-replicate and spread autonomously across networks, often exploiting vulnerabilities without requiring user interaction. This ability to spread independently makes worms potentially more widespread and damaging .
Backups provide a copy of data that can be restored in the event of data loss, ensuring continuity. Archival storage involves long-term data retention for reference or compliance purposes, often using less accessible storage methods to reduce costs. Data disposal is the process of permanently deleting data or physical media to prevent unauthorized access. Secure data disposal involves methods like shredding or digital wiping, essential for protecting sensitive information when no longer needed .
Risk analysis in cyber security involves identifying assets, assessing threats and vulnerabilities, calculating risk levels, and implementing measures to mitigate these risks. The process begins with inventorying essential assets and identifying potential threats such as hackers or insiders. Vulnerabilities are then assessed, often involving security audits. Risk levels are calculated by considering the likelihood and impact of potential incidents, leading to prioritization of risk mitigation efforts. Finally, strategies such as deploying security tools or establishing policies are implemented to reduce risks .
Cyber extortion involves threats to harm or disrupt systems unless a ransom is paid. This often manifests as ransomware attacks, where data is encrypted and decryption is withheld until a ransom is received. Prevention measures include regularly updating software, conducting employee training to recognize phishing attempts, maintaining secure backups, deploying advanced threat detection systems, and having an incident response plan ready to minimize impacts in case of an attack .
Firewall security technology works as a barrier between trusted internal networks and untrusted external networks, filtering incoming and outgoing traffic based on pre-established security rules. Key components include packet filtering, which inspects packets against rules; stateful inspection, maintaining context of active connections; and application-layer filtering, which enforces rules on specific applications or services. Diagrammatically, a firewall sits between the internet and internal network, controlling data flow to prevent unauthorized access .
Archival storage plays a crucial role in maintaining data integrity by preserving information for long-term access and ensuring compliance with legal or regulatory requirements. It involves using durable media and structured processes to prevent data corruption or loss. This continuity is vital for forensic investigations, historic reference, and ensuring information is consistently available over time, despite technological changes .
Information systems face numerous threats, including malware, phishing, denial of service (DoS) attacks, insider threats, and more. Malware, like viruses or ransomware, can disrupt operations or steal data by infecting systems. DoS attacks aim to make services unavailable by overwhelming them with traffic, potentially causing significant operational downtime and financial loss, as well as damage to reputation .
Cybercrime encompasses illegal activities conducted via computers or the internet, such as hacking, identity theft, cyberstalking, and phishing. Cyberstalking involves the use of the internet to harass an individual, often involving monitoring activities or sending threatening messages. Phishing is the fraudulent attempt to obtain sensitive information by disguising as a trustworthy entity, commonly through deceptive emails or websites .
Effective data disposal involves techniques that ensure data is unrecoverable. Strategies include physical destruction, such as shredding or incinerating media; overwriting data with random patterns multiple times; and degaussing, using magnetic fields to demagnetize storage media. These methods prevent data recovery and protect against unauthorized access to sensitive information once it is no longer needed .