<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>Revision: Securing Information System. by Farhana Yusri</title>
      <link>https://padlet.com/farhanayusri97/csc408</link>
      <description>Revision: Securing Information System.</description>
      <language>en-us</language>
      <pubDate>2018-12-25 14:20:50 UTC</pubDate>
      <lastBuildDate>2025-12-19 19:40:26 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url></url>
      </image>
      <item>
         <title> Question 1</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316645532</link>
         <description><![CDATA[<div> <br>Briefly explain the following computer crimes. <br><br>a) <mark>Sniffer</mark> <br>A program that monitors and analyzes network traffic, detecting bottlenecks and problems. It can be used illegally to capture the data being transmitted on a network. For example, a database could be analyzed for certain kinds of duplication.<br><br>b)<mark> Phishing</mark> <br>A cyber crime that try to obtain sensitive information such as usernames, passwords and credit card details by disguising as a trustworthy entity in an electronic communication. Usually they contacted the victim through email, text and phone call by claiming them as someone who legitimate in one institution. The information is then used to access important accounts and can result in identity theft and financial loss.<br><br>c) <mark>Pharming </mark><br>An attempt to manipulate users on the Internet by the hacker. It redirects users to false websites without them even knowing it. One way that pharming takes place is via an e-mail virus that "poisons" a user's local DNS cache. it can affect many more people at once. This is especially true if a large DNS server is modified.<br><br>d) <mark>Spoofing</mark> <br>An activities of stealing the important data of one individual by impersonates another device or user on a network. The most common forms are IP spoofing, email spoofing, and DNS spoofing. One of the way to prevent is by not replying to the email and installing strong antivirus.<br><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-25 14:27:47 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316645532</guid>
      </item>
      <item>
         <title>Question 2</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316646541</link>
         <description><![CDATA[<div>a) Distinguish the TWO (2) methods for encrypting network traffic on the Web.<br> <br>1) <mark>Secure Sockets Layer (SSL) and its successor.</mark> SSL and its successor Transport Layer Security (TLS) enable client and server computers to establish a secure connection session and manage encryption and decryption activities.<br><br>2) <mark>Use a VPN.</mark><br>A VPN (Virtual Private Network) acts as a secure tunnel for those who use public Wi-Fi.  The data will be sent via VPN to the third party server and its  protected from intrusion. It is because of the data already been encrypted .<br><br> b) Briefly explain the following terms.<br><br> i.<mark> Cyber warfare. </mark><br>Its also known as cyber war. an attacks that disable financial and organizational systems by stealing or altering classified data to undermine networks, websites and services.<br><br>ii. <mark>Computer Forensic.</mark> <br>Function as collecting, analysing and reporting on digital data in legal way. It is to detect any case invoving computer crime such as hacking.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-25 15:04:09 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316646541</guid>
      </item>
      <item>
         <title>Question 3</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316647379</link>
         <description><![CDATA[<div> a)  Briefly explain these THREE (3) tools. <br><br>- <mark>Firewalls.</mark><br> A firewall is a network security device that monitors incoming and outgoing network traffic and decides whether to allow or block specific traffic based on a defined set of security rules.<br><br>- <mark>Intrusion detection system.</mark><br>IDS act as monitoring network traffic and those suspicious activities in the system. It also respond to anomalous or malicious traffic by taking action such as blocking the user or source IP address from accessing the network.<br><br>- <mark>Antivirus software.</mark><br>Its function to protect the computer system from any virus by detect the virus, neutralize and eradicate it.<br><br>b)  Contrast between General Controls and Application Controls. <br><br>- General controls consist of  software controls, physical hardware controls, computer operations controls and some more . Meanwhile Application Controls consist of control totals, computer matching, report distribution logs and some more.<br><br>-  General controls apply to all computerized applications and consist of a combination of hardware, software, and manual procedures that create an overall control environment. In the meanwhile Application controls are specific controls unique to each computerized application, such as payroll or order processing. </div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-25 15:39:23 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316647379</guid>
      </item>
      <item>
         <title>Question 4</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316648775</link>
         <description><![CDATA[<div> Describe FOUR (4) types of malicious software. <br><br>1)<mark>Viruses.</mark><br>Viruses are the only type of malware that "infects" other files. That makes them particularly hard to clean up because the malware must be executed from the legitimate program.<br><br>2) <mark>Ransomware.</mark><br>Most ransomware programs are Trojans, which means they must be spread through social engineering of some sort.<br><br>3)<mark> Trojans.</mark><br>Trojans pretend and act as legitimate programs, but they contain malicious instructions such as fake antivirus program.<br><br>4) <mark>Fileless malware.</mark><br>A malware that doesn’t directly use files or the file system but theyexploit and spread in memory only or using other “non-file” OS objects such as registry keys, APIs or scheduled tasks.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-25 16:17:12 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316648775</guid>
      </item>
      <item>
         <title>Question 5</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316649231</link>
         <description><![CDATA[<div> a) Define computer crime and provide an appropriate example.<br>= <mark>Computer crime</mark> is digital crime used modern technology like computer and its system to hacking, stealing individual personal information for bad intention. For example is the case where there is an accountant stealing 10sen from their customers through online network.<br><br> b) Briefly explain THREE (3) reasons why information systems are vulnerable to destruction, error and abuse? <br><br>1) <mark>Human factor.</mark><br> Since it human made so there is  weakness. Human beings are responsible for designing, configuring, and using</div><div>systems with security features. They make mistakes in judgment and in implementation. They take</div><div>shortcuts. <br><br>2)<mark> Hardware imperfection.</mark><br> New technologies emerge bring new forms of vulnerabilities. In the rush to bring products to market and increase connectivity, the security implications are not always thoroughly researched and</div><div>understood. Weaknesses are not discovered until after the products have been on the market</div><div>Security engineering lags behind the product development curve.<br><br>3) <mark>Malware.</mark><br> There are malicious software that always been updated to breakdown the network and do harm towawds the owner such as worms, viruses, Trojan horses and spyware.<br><br> c) Discuss the THREE (3) most important tools and technology for safeguarding information resources. <br>1)<mark> Authentication</mark>.<br>Authentication which is a system that checks the identification of an end user who wants to access it. Some types of authentications are token, smart cards, biometric authentication and two-factor authentication.</div><div> <br>2) <mark>Firewalls </mark><br> Is a combination of hardware and software that prevents unauthorized users from accessing private networks and provides additional security by determining whether packets are part of an on-going dialogue between sender &amp; receive.<br><br>3) <mark> Identity management software </mark><br>For automates the keeping track of all users and privileges and for authenticates users, protecting identities and control access.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-25 16:34:07 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316649231</guid>
      </item>
      <item>
         <title>Question 7</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316651566</link>
         <description><![CDATA[<div> a)Describe ransomware. <br><br>Most <mark>ransomware</mark> programs are Trojans, which means they must be spread through social engineering of some sort. It lock and encrypt a victim’s computer data, then demand a ransom to restore access.  In many cases, the victim must pay the cyber criminal within a set amount of time or risk losing access forever. And since we’re dealing with criminals here, paying the ransom doesn’t ensure access will be restored.<br><br> b) State how do we prevent and protect our computer from ransomware.<br>-<mark> Use security software</mark> to protect your data, install and use a trusted security suite that offers more than just antivirus features. Next,<mark> keep the software updated</mark> by up-to-date internet security software.<br><br> c) Discuss the effects of computer crime to an organization. <br>- The organization will <mark>face terrible loss </mark>since all the important data been locked and they need to pay for the info.<br>- <mark>Penalties and compensatory payments to customers</mark> due to leak of their personal information towards other irresponsible third party.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-25 18:05:03 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316651566</guid>
      </item>
      <item>
         <title>Question 6</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316664104</link>
         <description><![CDATA[<div>a)  Define authentication. <br> Authentication is the process or action of verifying the identity of a user or process.<br><br> b) Identify and briefly describe FOUR (4) authentication technologies. <br><br>1) <mark>Facial recognition software.</mark><br> The technology recognize its owner by scanning their physical access control system (PACS).<br><br>2) <mark>HSPD12 Smart Card.<br></mark>  It is a  handing a smart card (<a href="https://whatis.techtarget.com/definition/personal-identity-verification-PIV-card"> </a>personal identity verification card) to every federal employee and contractor.<br><br>3) <mark>Card shaped one-time password devices.</mark><br>The devices are truly portable, easily managed administratively and well understood by users.<br><br>4) <mark>Personal portable security devices.<br></mark> Its a new technology  in the smart card chip which controls access to the USB flash memory.<mark><br></mark><strong><br><br></strong><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-26 02:41:40 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316664104</guid>
      </item>
      <item>
         <title>Case study</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316664847</link>
         <description><![CDATA[<div><strong>1.</strong>      <strong>Security isn’t simply a technology issue, it’s a business issue. Discuss.</strong></div><div> </div><div>Security is no longer just a technology issue, it is also a business issue as well because majority of the companies out there today rely on computer systems to keep their employees information secure as well as their customers’ information, sales transactions, and the details on their vendors, their success is dependent on the secureness of this information. For a non-technologies business especially, they need to understand enough about security that they can take ownership of security approval processes. Ultimately it is because the business themselves that will bear the consequences of a poorly secured system. It is difficult to say that a case of internal fraud or financial misstatement is a purely IT issue. However, such incidents are preventable through a well-defined security structures allocated to the appropriate business users. Since the business bears the risk it is logical that they should be fully engaged in the design of the solutions to prevent the occurrence of such risks. Without adequate understanding and design of the computer security structures, users are not able to use the functions that they require in order to run the business processes. If incorrectly designed, the same security structures will allow users access data and functions that they should not be using including system administration functions, access to sensitive personal data or commercially sensitive data such as sales figures. </div><div> </div><div>For example, <a href="http://zappos.com/">Zappos.com</a> joining the ranks of Sony, Gawker, <a href="http://rootkit.com/">rootkit.com</a> and many others have lost account passwords and other data to hackers which included names, e-mail addresses, billing and shipping addresses, phone numbers, and the last four digits of credit card numbers along with cryptographically scrambled passwords, but not the actual passwords. This has cost them their business reputation, branding and also customer’s trust. There will always be a possibility of a breach in security for every company. It could be due to a cyber-attack, human error, or even social engineering. But, if risk management of security is a common goal amongst every employee not just the IT department, it can help manage and minimise security risks in the long run. Therefore, both the business and technical departments must take responsibility for collaborating to address this issue. IT security is a priority that should simply be regarded as good business practice. <br><br>2<strong>.</strong>      <strong>Who poses the biggest security threat: insiders or outsiders?</strong></div><div> </div><div>While an organization usually faces more external threats, the reality is that organizations need to be just as concerned about the insider threat. An insider attack is one of the biggest threats faced by organizations since these types of hacks can be very difficult for IT teams to identify. This is because an insider – whether he’s an employee or a contractor – is already entrusted with authorized access to at least some systems and applications on a corporate network. It can be very hard for those in IT to decipher whether he’s just performing his regular job tasks, or carrying out something sinister. An angry employee who already has access to company files could be secretly leaking documents to competitors, or he could be sabotaging systems or corrupting data because he is miffed at his employer. The same could be said about former employees, who often retain access to the network even long after leaving the organization. </div><div> </div><div>However, they are most often not deliberately a threat. Outsiders are the ones who have bad intentions, but they don’t have access. Network restrictions are usually strong enough to keep them out. So instead, they focus their efforts on tricking unsuspecting insiders into opening the doors for them. And once inside, they are indistinguishable from the insiders. Employee web browsing is one of the most used pathways to accomplish this. Outsiders set up a website capable of exploiting any computer that browses to it, and then they send emails to the insiders that entice them to click a link to that site. Most employees will not take the bait, but it just takes one person to give in to curiosity and click the link. Malicious outsiders are very good at this. They can craft emails that look like they are from someone within the company and reference projects or people that the recipient knows. It can be very difficult to tell these emails are not legitimate. With a little perseverance, it’s just a matter of time before someone clicks. Because of this, efforts to protect the company from malicious outsiders can only go so far. Companies today must prioritize protecting against threats from their own insiders. One employee clicking the wrong link doesn’t have to put the whole company at risk. Therefore, companies need to take both outsiders and insiders seriously, because they can each have disastrous consequences.</div><div> </div><div> </div><div> <br>3<strong>.</strong>      <strong>Suppose your business had an e-commerce Web site where it sold goods and accepted credit card payments. Discuss the major security threats to this Web site and their potential impact. What can be done to minimize these threats?</strong></div><div> </div><div>E-commerce platform will have certain vulnerabilities that are known to attackers. One of the major security threats would be Malware which is the malicious software that attackers insert into the web files or pages once they have gained access to the site. Malware may be found on an individual’s computer if they have themselves fallen victim to a phishing attack or otherwise been compromised, or it may be inserted directly onto the website after a successful SQL injection or if administrative account access has been granted to a harmful entity. As with software, malware can perform an extremely wide range of activities, from turning the computer into a botnet that can be part of a DDoS attack, to stealing credit card and account information from the website users. One type of <a href="https://www.bleepingcomputer.com/news/security/visbot-malware-found-on-6-691-magento-online-stores/">malware that targeted Magento sites</a> was able to take credit card information and store it in images so that the attacker could easily access it without flags being raised. Credit card information and personal identifying information are now regularly submitted online or stored in a network  that can be considered as a necessity for any e-commerce platforms. However, it could be vulnerable. Markets on the so-called “dark web” that sell stolen information can wreak havoc by enabling others to charge money to someone’s account or even steal their identity. This can risk the business to face major potential lawsuits by customers and users. There are also bad bots that scrape websites for pricing and inventory information. They then use this information to change pricing on the web site or hold popular inventory in shopping carts, leading to a drop in the business’ sales and revenue.</div><div> </div><div>In order to minimize these threats, we need to update the computer operating systems and patch regularly in order to defend against malware and phishing. This will help prevent vulnerabilities from being exploited and help detect and block threats from entering the system. We also need to use a secure connection for online checkout. It is best to use strong SSL (Secure Sockets Layer) for Web and data protection. SSL certificates are crucial for authenticating the identity of the business and to ensure that the data in transit is encrypted. This ultimately protects the company and customers from getting their personal or financial information stolen. For customer’s data safety, we have to require strong passwords and enable Two-factor Authentication (2FA). Enabling <a href="http://blog.trendmicro.com/whats-the-deal-with-two-factor-authentication/">two-factor authentication </a>provides an extra layer of security by requiring two pieces of information for every new login attempt. Instead of only requiring a password, it would, for example, require customers to verify their account via a one-time use authentication code received thru SMS. Most importantly, network’s computers must be equipped with <a href="https://wpbuffs.com/security/">antivirus and anti-malware software</a>.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-26 03:09:34 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316664847</guid>
      </item>
      <item>
         <title>Case study</title>
         <author>farhanayusri97</author>
         <link>https://padlet.com/farhanayusri97/csc408/wish/316665102</link>
         <description><![CDATA[<div><strong>Question 1</strong></div><div> </div><div><strong>Is cyberwarfare a serious problem? Why or why not?</strong></div><div> </div><div>Cyberwarfare is a serious problem because it poses a unique and dauting a challenges for security experts, not only in detecting and preventing intrusions but also in tracking down prepetrators and bringing them to justice. The most prominent threats so far include the succesfull attacks on the FAA airline system, including one in 2006 that partially shut down air traffic data system in Alaska. And also the case of cyberspies that inflitrated the U.S electrical grid in April 2009 and left behind software programs whose purpose is unclear. Beside that, it also include the intruders that successfully penetrated the Pentagon’s 300 billion dollar joint strike fighter project and stole several terabytes of data related to design and electronics systems. In Iraq, insurgents intercepted Predaor drone feeeds using software downloade from the internet.</div><div> </div><div><strong>Question 2</strong></div><div> </div><div><strong>What solutions are available for this problem? Do you think they will be effective? Why or why not?</strong></div><div> </div><div>The solutions are available for this problem is the congress should considering legislation so that it would require all critical infrastructure companies to meet newer,thougher cybersecurity standards. As cyberwarefare technologies develop and become moe advanced, the standard imposed by this legislation will likwly be insufficient to defend against attacks. <br><br>Secretary of Defense Gates ordered the creation of Cybercom, the first headquaters designed to coordinate government cybersecurity efforts. It was activated in May 2010. It will coordinate the operation and protection of military and Pentagon computer networks. It will coordidnate efforts to restrict access to government computers an protect systems that run the stock exchanges, clear global banking transactions and manage the air traffic control sysytem. Its ultimate goal will be to prevent catastrophic cyberattacks against the U.S. Some insiders suggest that it might not able to effectively organize the governmental agencies without irect to the Presient, which it currently lacks. <br><br>Because spy agencies like the CIA are prohibited by law from acting on American soil, some people are proposing to entrust some of the cyberwarfare work to private defense contractors. There is no effective way for a domestic agency to conduct computer operations without entering prohibited networks within the U.S. or even conduct investigations in countries that are American allies. Preventing terrorist or cyberwar attacks may require examining some email messages from other countries or giving intelligence agencies more access to networks or Internet service providers.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-26 03:16:01 UTC</pubDate>
         <guid>https://padlet.com/farhanayusri97/csc408/wish/316665102</guid>
      </item>
   </channel>
</rss>
