<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>answer for csc 408 by S Ma</title>
      <link>https://padlet.com/syazwaniemohdali/91etp8d4qzfn</link>
      <description></description>
      <language>en-us</language>
      <pubDate>2018-12-30 07:24:55 UTC</pubDate>
      <lastBuildDate>2018-12-30 07:35:36 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url></url>
      </image>
      <item>
         <title>EXERCISE CSC408 - Securing Information Systems</title>
         <author>syazwaniemohdali</author>
         <link>https://padlet.com/syazwaniemohdali/91etp8d4qzfn/wish/316868453</link>
         <description><![CDATA[<div><strong>PART A</strong><br><br>Briefly explain the following computer crimes.<br>a) Sniffer – Eavesdropping program that monitors information travelling over network. It enables hackers to steal proprietary information such as email, company file and etc.<br><br></div><div>b) Phishing – Setting up fake web sites or sending email messages that look like legitimate businesses to ask users for confidential personal data<br><br></div><div>c) Pharming – Redirects users to a bogus web page, even when individual types correct web page address into his or her browser.<br><br></div><div>d) Spoofing - Misrepresenting oneself by using fake email addresses or masquerading as someone else. It redirecting Web link to address different from intended one, with site masquerading as intended destination.<br><br></div><div>(8 marks)<br><br></div><div><strong> QUESTION 2<br></strong><br></div><div>a) Distinguish the TWO (2) methods for encrypting network traffic on the Web.<br><br></div><div>1) Secure Sockets Layer (SSL) and successor Transport Layer Security(TLS) - enables client and server computers to mnage encryption and decryption activities, so that they communicate with each other during a secure web session. <br><br></div><div>2) Secure Hypertext Transfer Protocol (S-HTTP) – It used for encrypt data flowing over the internet but it is limited to individual messages, whereas SSL and TLS are designed to establish a secure connection between two computers.<br><br></div><div>(4 marks)<br><br></div><div> b) Briefly explain the following terms.<br><br></div><div>i. Cyber warfare – Designed to cripple and defeat another state or nation by penetrating its computer or networks for the purpose of causing damage and disruption. It have become much more widespread, sophisticated and potentially devastating. <br><br></div><div>ii. Computer Forensic – It scientific collection, examination, authentication, preservation and analysis of data from computer storage media for use as evidence in court of law. Ans it includes recovery of ambient and hidden data. <br><br></div><div>(4 marks)<br><br></div><div><strong> QUESTION 3<br></strong><br></div><div>a) Without protection against malware and intruders, connecting to the Internet could be very dangerous. Firewalls, intrusion detection system and antivirus software have become the tools to overcome this problem. Briefly explain these THREE (3) tools.<br><br></div><div>1) Static packet filtering – It examine selected fields in the header of data packet flowing back and forth between the trusted network and internet, examining individual packet in isolation. <br><br></div><div>2) Stateful inspection – It provide additional security by determine whether packet are part of on going dialogue between sender and receiver. <br><br></div><div>3) Network address translation (NAT) - It provide another layer of protection when static packet filtering and stateful inspection are employed. <br><br></div><div>(6 marks)<br><br>b) Information systems controls is one of the components of an organizational framework for security and control. Information systems controls consist of two - general and application control. A company must know how and where to deploy security tools and security personnel must know what controls a company must have in place to protect its information system. <br><br></div><div>Contrast between General Controls and Application Controls.<br><br></div><div>a)General controls – It for govern design, security and use of computer programs and security of data files in general throughout organization’s information technology infrastructure. It apply to all computerized applications. Moreover it combination of hardware, software and manual procedure to create overall control environment. <br><br></div><div>b)Application controls – It specific controls unique to each computerized application such as payroll or order processing. And it includes both automated and manual procedure, for example ,input controls, output controls and processing controls. Moreover, it ensures that only authorized data are completely and accurately can processed by that application. <br><br></div><div>(8 marks)<br><br></div><div> <strong>QUESTION 4<br></strong><br></div><div>Malicious Software programs are referred to as Malware. Describe FOUR (4) types of malicious software.<br><br></div><div>1) Viruses - Rogue software program that attached itself to other software programs or data files in order to be executed.<br><br></div><div>2) Worms – Independent programs that copy themselves from one computer to other computers over network.<br><br></div><div>3) Trojan horses - Software that appears benign but does something other than expected. For example, Zeus Trojan, runs on computers with MS Windows OS – used to steal login credential for banking. <br><br></div><div>4) SQL injection attacks – Hackers submit data to web forms that exploits site’s unprotected software and sends rogue SQL query to database. <br><br></div><div>(8 marks)<br><br></div><div> <strong>QUESTION 5<br></strong><br></div><div>a) Nowadays securing information systems has become an important issue in organization to protect itself against computer crime.<br><br></div><div>Define computer crime and provide an appropriate example.<br><br></div><div>Define computer crime is defined as “any violation of criminal law that involve a knowledge of computer of technology for their perpetration, investigation or prosecution”. Computer may be target of crime ,for example is accessing a computer system without authority.<br><br></div><div>(3 marks)<br><br></div><div> b) Briefly explain THREE (3) reasons why information systems are vulnerable to destruction, error and abuse?<br><br></div><div>1) Internet vulnerabilities – It is because the network is open to anyone.The Internet is designed to be an open system and makes internal corporate systems more vulnerable to actions from outsiders.<br><br></div><div>2) Malware – Malware is represented in the form of a computer virus, a worm and Trojan horse.Computer viruses and worms can spread rampantly from system to system, clogging computer memory or destroying programs and data. <br><br></div><div>3) Wireless security challenges – Many wifi networks can be easily penetrated easily by intruders using sniffer program to obtain an address to access the resources of a network without authorization. <br><br></div><div>(6 marks)<br><br></div><div> c) Discuss the THREE (3) most important tools and technology for safeguarding information resources.<br><br></div><div>1) Firewalls – It prevents unauthorized users from accessing private networks.<br><br></div><div>2) Intrusion detection system – It monitors hot spots on corporate networks to detect and deter intruders. And also examines events as they are happening to discover attacks in progress. <br><br></div><div>3) Antivirus and anti spyware software – It checks whether computers for presence of malware and can often eliminate as well and it requires continual updating.<br><br></div><div>(6 marks)<br><br></div><div><strong> QUESTION 6<br></strong><br></div><div>a) Identity management software automates the process of keeping track of all information systems users and their system privileges, assigning each user a unique digital identity for accessing each system.<br><br></div><div>Define authentication.<br><br></div><div>Authentication is  the process of recognizing a user’s identity. It the process or action of verifying the identity of a user or process. A common example is entering a username and password when you log in to a website.<br><br></div><div>(2 marks)<br><br></div><div> b) Identify and briefly describe FOUR (4) authentication technologies.<br><br></div><div>1) Password based technologies - Passwords are the most common form of authentication. Password may be of any form(String of alphabets, numbers and special characters). This password is necessarily to be known by the ENTITY or the THING or a PERSON that is being Authenticated.<br><br></div><div>2) E-Token based technologies -  E-Token authentication is a small device that develop/generates a new odd/random value every time it is used. This random value becomes the basis for authentication(an alternative to a password). It can be implemented on a USB key fob or on a smart card. <br><br></div><div>3) Certificate based technologies - It is a digital document which digitally signed by a reliable third party known as the Certificate Authority (CA). Then these Digital Certificates can be reused for user authentication. Certificate based authentication is stable as compared to password based authentication.<br><br></div><div>4) Biometric based technologies - Biometric authentication mention to the realization/recognition/identification of humans by their personality/characteristics such as Face, fingerprint, human voice, Retina, Iris pattern of the eye, vein pattern etc. It's used in computer science as a form of realization/recognition and access control.<br><br></div><div>(8 marks)<br><br></div><div> <strong>QUESTION 7<br></strong><br></div><div>a) Describe ransomware.<br><br></div><div>Ransomware is proliferating on both desktop and mobile devices, it tries to extort ,money from users by taking control of their computers or displaying annoying pop-up messages. For example, CryptoLocker. It encrypts infected computer files, forcing users to pay hundreds of dollars to regain access. <br><br></div><div>(3 marks)<br><br></div><div> b) State how do we prevent and protect our computer from ransomware.<br><br></div><div>1) Reset browser home page<br><br></div><div>2) Slow computer performances by taking up memory<br><br></div><div>3) Records every keystroke on computer to steal serial numbers, passwords, launch internet attacks. <br><br></div><div>(3 marks)<br><br></div><div> c) Discuss the effects of computer crime to an organization.<br><br></div><div>The effects of computer crime to an organization which can makes a company suffers losses due to computer crime when a hacker steals confidential information and future plans of the company. And he simply sells the information to a competitor company and they use the information to get benefits. When a hacker enter in an organization and steals confidential information form the company as the company may contains confidential information like credit cards of customers and as the information is stolen , the customer will not trust the company again and will move to someone else who could protect their confidential information.<br><br></div><div>4 marks)<br><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-30 07:26:21 UTC</pubDate>
         <guid>https://padlet.com/syazwaniemohdali/91etp8d4qzfn/wish/316868453</guid>
      </item>
      <item>
         <title>CHAPTER 7</title>
         <author>syazwaniemohdali</author>
         <link>https://padlet.com/syazwaniemohdali/91etp8d4qzfn/wish/316868513</link>
         <description><![CDATA[<div><strong>1.</strong>      <strong>Security isn’t simply a technology issue, it’s a business issue. Discuss.</strong></div><div> </div><div>Security is no longer just a technology issue, it is also a business issue as well because majority of the companies out there today rely on computer systems to keep their employees information secure as well as their customers’ information, sales transactions, and the details on their vendors, their success is dependent on the secures of this information. For a non-technologies business especially, they need to understand enough about security that they can take ownership of security approval processes. Ultimately it is because the business themselves that will bear the consequences of a poorly secured system. It is difficult to say that a case of internal fraud or financial misstatement is a purely IT issue. However, such incidents are preventable through a well-defined security structures allocated to the appropriate business users. Since the business bears the risk it is logical that they should be fully engaged in the design of the solutions to prevent the occurrence of such risks. Without adequate understanding and design of the computer security structures, users are not able to use the functions that they require in order to run the business processes. If incorrectly designed, the same security structures will allow users access data and functions that they should not be using including system administration functions, access to sensitive personal data or commercially sensitive data such as sales figures. </div><div><br>2<strong>.</strong>      <strong>Who poses the biggest security threat: insiders or outsiders?</strong></div><div> </div><div>While an organization usually faces more external threats, the reality is that organizations need to be just as concerned about the insider threat. An insider attack is one of the biggest threats faced by organizations since these types of hacks can be very difficult for IT teams to identify. This is because an insider – whether he’s an employee or a contractor – is already entrusted with authorized access to at least some systems and applications on a corporate network. It can be very hard for those in IT to decipher whether he’s just performing his regular job tasks, or carrying out something sinister. An angry employee who already has access to company files could be secretly leaking documents to competitors, or he could be sabotaging systems or corrupting data because he is miffed at his employer. The same could be said about former employees, who often retain access to the network even long after leaving the organization.</div><div> <br>3<strong>.</strong>      <strong>Suppose your business had an e-commerce Web site where it sold goods and accepted credit card payments. Discuss the major security threats to this Web site and their potential impact. What can be done to minimize these threats?</strong></div><div> </div><div>E-commerce platform will have certain vulnerabilities that are known to attackers. One of the major security threats would be Malware which is the malicious software that attackers insert into the web files or pages once they have gained access to the site. Malware may be found on an individual’s computer if they have themselves fallen victim to a phishing attack or otherwise been compromised, or it may be inserted directly onto the website after a successful SQL injection or if administrative account access has been granted to a harmful entity. As with software, malware can perform an extremely wide range of activities, from turning the computer into a botnet that can be part of a DDoS attack, to stealing credit card and account information from the website users. One type of malware that targeted Magento sites was able to take credit card information and store it in images so that the attacker could easily access it without flags being raised. Credit card information and personal identifying information are now regularly submitted online or stored in a network  that can be considered as a necessity for any e-commerce platforms.  Markets on the so-called “dark web” that sell stolen information can wreak havoc by enabling others to charge money to someone’s account or even steal their identity. This can risk the business to face major potential lawsuits by customers and users. There are also bad bots that scrape websites for pricing and inventory information. They then use this information to change pricing on the web site or hold popular inventory in shopping carts, leading to a drop in the business’ sales and revenue.</div><div> </div><div>In order to minimize these threats, we need to update the computer operating systems and patch regularly in order to defend against malware and phishing. This will help prevent vulnerabilities from being exploited and help detect and block threats from entering the system. We also need to use a secure connection for online checkout. It is best to use strong SSL (Secure Sockets Layer) for Web and data protection. SSL certificates are crucial for authenticating the identity of the business and to ensure that the data in transit is encrypted. This ultimately protects the company and customers from getting their personal or financial information stolen. For customer’s data safety, we have to require strong passwords and enable Two-factor Authentication (2FA). Enabling two-factor authentication provides an extra layer of security by requiring two pieces of information for every new login attempt. Instead of only requiring a password, it would, for example, require customers to verify their account via a one-time use authentication code received thru SMS. Most importantly, network’s computers must be equipped with antivirus and anti-malware software.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-30 07:29:16 UTC</pubDate>
         <guid>https://padlet.com/syazwaniemohdali/91etp8d4qzfn/wish/316868513</guid>
      </item>
      <item>
         <title>CSC408 - VIDEO &amp; CASE STUDY</title>
         <author>syazwaniemohdali</author>
         <link>https://padlet.com/syazwaniemohdali/91etp8d4qzfn/wish/316868611</link>
         <description><![CDATA[<div><br><strong>Question 1<br></strong><br></div><div><strong>Security isn’t simply a technology issue, it’s a business issue. Discuss.<br></strong><br></div><div>Security is a policies, procedures and technical measures used to prevent unauthorized access, alteration, theft or physical damage to information systems. Security is basically not just a technology issue but it is can led to business issues where the technology of information is an internet vulnerabilities where it is the network open to anyone, size of internet means abuses can have wide impact and so on. The business issue is happened when the security itself can be lack of controls when the information systems can be transforming business to emerging mobile digital platform, growing business use of big data and growth in cloud computing. A growing reliance on computer to work and communicate have made the control of computer networks is s significant security. For example, the leader himself need to be aware of the customer or his client’s privacy of their personal data to be protected well where they should identify and recognize theft growth and to be concern about the information access. <br><br></div><div><br></div><div><strong>Question 2<br></strong><br></div><div><strong>Who poses the biggest security threat: insiders or outsiders?<br></strong><br></div><div>It can be both but it has a biggest statistic that shows the insider is a main security threat. This is because they are the one or the person who are directly involve in the organization and have a wider knowledge of the information system in the company. They can access to the information in the organization and know how the information is processes and protected where they have a biggest opportunity to steal the data that the outsider cannot do since they are not directly connected with the organization. For example, the insider cam attached the wrong file to the email being sent, oversharing on social media about the organization information and losing the laptop or USB drive through some other mistake. <br><br></div><div> </div><div><strong>Question 3<br></strong><br></div><div><strong>Suppose your business had an e-commerce Web site where it sold goods and accepted credit card payments. Discuss the major security threats to this Web site and their potential impact. What can be done to minimize these threats? <br></strong><br></div><div>The major security threats to the Web site Web site where it sold goods and accepted credit card payments and their potential impact is the various malicious software can be the risk of this e-commerce. One of the impact is viruses where it is the rouge software program that attaches itself to other software programs or data files in order to be executed. For example, virus is a program or programming code that replicates by being copied or initiating its copying to another program, computer boot sector or document. Virus can destroy a computer system and disrupt the operations of the Web site. However, to minimize these threats is apply for the Antivirus software. This can help to checks computers for presence of malware and can often eliminate it as well and it requires continual updating. Viruses scanning software should be used to check any software downloaded from the internet obtained from any sources. <br><br><br></div><div><strong>CASE STUDY 1</strong><br><strong>THE LOOMING THREAT OF CYBER</strong></div><div> </div><div> </div><div><strong>1. Is cyberwarfare a serious problem? Why or why not?</strong></div><div>Yes, Cyberware is the serious problem because the Cyberware itself is a state-sponsored activity designed to cripple and defeat another state or nation by penetrating its computers or networks for the purposes of causing damage and disruption. For example, it is refers to the use of digital attacks such as computer viruses and hacking by one country to disrupt the vital computer systems of another, with the aim of creating damage, death and destruction where the terrorist are criminal groups can mount attacks, and it is often difficult to tell who is responsible. In the case study, the most prominent threat is attack action on the FAA airline system that consist of one in 2006 that partially shut down air traffic data system in Alaska. Cyberwarfare is more complex than conventional warfare. Although many potential targets are military a country’s power grids, financial systems, and a communication network can also be crippled.<br><br></div><div> </div><div> </div><div><strong>2. What solutions are available for this problem? Do you think they will be effective? Why or why not?</strong></div><div>The solutions are available for this problem is the organization or any related company need take an action to have a legal and regulatory requirements for electronic records management and privacy protection to have a security so that the problem in the cyberware can be avoided. The main focus is the congress should consider the legislation to require all critical infrastructure companies to meet newer. They can effectively use any HIPAA, Gramm-Leach-Billey Act and Sarbane-Oxley Act. For example, the Gramm-Leach-Billey Act can requires financial institutions to ensure the security and confidentially of customer data. In the case study, the scale and speed of cyber-attacks has escalated in the United States and other parts if the world. From September 2012 through March 2013, at least twelve U.S financial institutions-Bank of America, Citigroup, Wells Fargo, U.S. Bancorp, PNC, Capital One, Fifth Third Bank, BB&amp;T, HSBC, J.P. Morgan Chase, and American Express-were targeted in attacks that slowed their server to crawl and then shut down. The goal of the attacker was to inflict an unprecedented level of strain on as many financial institutions as possible. No account information was stolen and no financial gain sought, leading experts to think it was a state-sponsored attack. So, to prevent this problem, the legislation of the legal and regulatory requirements for electronic records management and privacy information to protect them. </div><div><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-30 07:33:38 UTC</pubDate>
         <guid>https://padlet.com/syazwaniemohdali/91etp8d4qzfn/wish/316868611</guid>
      </item>
   </channel>
</rss>
