<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>CSC408 Revision Chapter 7/8 by Mohd Rais</title>
      <link>https://padlet.com/mohamadraissharif/rp0knaizl64v</link>
      <description>Prepared for Madam Sri Yusmawati 
 AM228-4A</description>
      <language>en-us</language>
      <pubDate>2018-12-29 16:07:57 UTC</pubDate>
      <lastBuildDate>2018-12-29 17:26:38 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url></url>
      </image>
      <item>
         <title>CSC EXERCISE FOR REVISION</title>
         <author>mohamadraissharif</author>
         <link>https://padlet.com/mohamadraissharif/rp0knaizl64v/wish/316842194</link>
         <description><![CDATA[<div><strong>CHAPTER 7/8<br></strong><br></div><div><strong>Question 1</strong><br> <strong>Briefly explain the following computer crimes.<br>  <br></strong>a.       Sniffer: These are legitimate programs used to monitor and analyse networks. They can be deployed in a criminal fashion to steal passwords, credit card information, identities, or to spy on network activity. A sniffer program is relatively inexpensive to purchase and easy to use.</div><div> </div><div>b.      Phishing: Phishing is a method of trying to gather personal information using deceptive e-mails and websites. The goal is to trick the email recipient into believing that the message is something they want or need, a request from their bank, for instance, or a note from someone in their company and to click a link or download an attachment.</div><div> </div><div>c.       Pharming: A type of cyber-crime very similar to phishing, where a website's traffic is manipulated, and confidential information is stolen. It exploits the foundation of how Internet browsing works. A hacker may install viruses or Trojans on the user's computer, or they could be an attempt to collect personal and financial information for use in identity theft.</div><div> </div><div>d.      Spoofing: When cyber criminals try to get into the computer by impersonating as a trusted source. Examples include email spoofing (using email header that appears to be from someone you trust), IP spoofing (using a fake IP address to impersonate a trusted machine) and address bar spoofing (using malware to force you to view a specific web page).</div><div><br> <strong>QUESTION 2</strong></div><div><strong>a) Distinguish the TWO (2) methods for encrypting network traffic on the Web.</strong></div><div><strong> </strong></div><div>Secure Sockets Layer (SSL) and successor Transport Layer Security (TLS) enables client &amp; server computers to manage encryption &amp; decryption activities. So, they communicate with each other during a secure web session. </div><div> </div><div>Secure Hypertext Transfer Protocol (SHTTP) is used for encrypting data flowing over the Internet but it is limited to individual messages, whereas SSL &amp; TLS are designed to establish a secure connection between 2 computers.</div><div> </div><div> <strong>b) Briefly explain the following terms.</strong></div><div> </div><div>Cyber warfare - State-sponsored activity designed to cripple &amp; defeat another state or nation by penetrating its computers or networks for the purposes of causing damage &amp; disruption.</div><div> </div><div>Computer Forensic - Scientific collection, examination, authentication, preservation, and analysis of data from computer storage media for use as evidence in court of law and it includes recovery of ambient and hidden data.</div><div> </div><div><br></div><div> <strong>Question 3</strong><br> <strong>a) Without protection against malware and intruders, connecting to the Internet could be very dangerous. Firewalls, intrusion detection system and antivirus software have become the tools to overcome this problem. Briefly explain these THREE (3) tools.</strong> </div><div> </div><div><strong>Firewalls</strong></div><div>Firewall is software or firmware that enforces a set of rules about what data packets will be allowed to enter or leave a network. Firewalls are incorporated into a wide variety of networked devices to filter traffic and lower the risk that malicious packets traveling over the public internet can impact the security of a private network. Firewalls may also be purchased as stand-alone software applications.</div><div> </div><div><strong>Intrusion Detection System</strong> (IDS) </div><div>IDS is a network security technology originally built for detecting vulnerability exploits against a target application or computer. Intrusion Prevention Systems (IPS) extended IDS solutions by adding the ability to block threats in addition to detecting them and has become the dominant deployment option for IDS/IPS technologies. This article will elaborate on the configuration and functions that define the IDS deployment.</div><div> </div><div><strong>Antivirus software</strong> </div><div>Antivirus software is a program or set of programs that are designed to prevent, search for, detect, and remove software viruses, and other malicious software like worms, trojans, adware, and more.</div><div> </div><div><strong>b) Information systems controls is one of the components of an organizational framework for security and control. Information systems controls consist of two - general and application control. A company must know how and where to deploy security tools and security personnel must know what controls a company must have in place to protect its information system. Contrast between General Controls and Application Controls. </strong></div><div> </div><div><strong>General Controls</strong> is a govern design, security, and use of computer programs and security of data files in general throughout organization’s information technology infrastructure. For instance, software control, hardware control and administrative control where it applies to all computerized applications.</div><div> </div><div><strong>Application Controls </strong>is specific controls unique to each computerized application, such as payroll or order processing. Include both automated and manual procedures. Ensure that only authorized data are completely and accurately processed by that application whereby it consists of input controls, processing controls, and output controls</div><div> </div><div> </div><div><strong>Question 4<br>  Malicious Software programs are referred to as Malware. Describe FOUR (4) types of malicious software. <br></strong><br></div><div><strong>Rootkits</strong>:</div><div>Allowing attackers to get access to and steal data from users’ machines without being detected for long periods of time. The term is loosely applied to a subset of malware tools that are designed specifically to stay hidden on infected computers and enable the attacker to remotely control the PC. </div><div> </div><div><strong>Spyware</strong>: </div><div>Any technology that aids in gathering information about a person or organization without their knowledge. On the Internet (where it is sometimes called a Spybot or tracking software), Spyware is programming that is put in someone's computer to secretly gather information about the user and relay it to advertisers or other interested parties.</div><div> </div><div><strong>Trojan</strong>:</div><div>A type of computer software that is camouflaged in the form of regular software such as utilities, games and sometimes even antivirus programs. Once it runs on the computer, it causes problems like killing background system processes, deleting hard drive data and corrupting file allocation systems.</div><div> </div><div><strong>Worm</strong>:</div><div>A computer worm is a type of malicious software program whose primary function is to infect other computers while remaining active on infected System. It is also a self-replicating malware that duplicates itself to spread to uninfected computers. Worms often use parts of an operating system that are automatic and invisible to the user. It is common for worms to be noticed only when their uncontrolled replication consumes system resources, slowing or halting other tasks.</div><div> </div><div><strong>Virus</strong>:</div><div>A virus is a program or programming code that replicates by being copied or initiating its copying to another program, computer boot sector or document. Viruses can be transmitted as attachments to an e-mail note or in a downloaded file or be present on a diskette or CD.</div><div> </div><div> </div><div><strong><em>Question 5 <br></em></strong><strong> a) Nowadays securing information systems has become an important issue in organization to protect itself against computer crime. Define computer crime and provide an appropriate example.<br></strong><br></div><div> Computer crime means any violations of criminal law that involves knowledge of computer technology for their perpetration, investigation, or prosecution. Some examples are breaching confidentiality of protected computerized data and accessing a computer system without authority.<br><br></div><div><br> <strong>b) Briefly explain THREE (3) reasons why information systems are vulnerable to destruction, error and abuse? <br></strong>i) Internet Vulnerabilities <br><br></div><div>It is because the network is open to anyone and the internet is designed to be an open system and make internal corporate systems more vulnerable to actions from outsiders.<br><br></div><div>ii) Wireless Security Challenges<br><br></div><div>It is because, Wi-Fi networks can be easily penetrated easily by intruders using sniffer program to obtain an address to access the resources of a network without authorization.<br><br></div><div>ii) Malware<br><br></div><div>It is represented in the form of a computer virus, a worm and Trojan Horse. Computer viruses and worms can spread rampantly from system to system, clogging computer memory or destroying programs and data<br><br></div><div><br><strong>c) Discuss the THREE (3) most important tools and technology for safeguarding information resources. <br>Antivirus and anti-spyware software </strong></div><div>It checks computers for presence of malware and can often eliminate it as well ad it also required continual updating</div><div> </div><div><strong>Authentication</strong> </div><div>Which is a system that checks the identification of an end user who wants to access it. Some types of authentications are token, smart cards, biometric authentication and two-factor authentication.</div><div> </div><div><strong>Firewalls</strong> </div><div>Which is a combination of hardware and software that prevents unauthorized users from accessing private networks and provides additional security by determining whether packets are part of an on-going dialogue between sender &amp; receiver.</div><div> </div><div> </div><div><strong>Question 6 <br>a) Identity management software automates the process of keeping track of all information systems users and their system privileges, assigning each user a unique digital identity for accessing each system. Define authentication. <br>  <br></strong>Authentication is the technique by which a system checks the identification of an end User who wants to access it. Since entrance or access control is normally based on the identification of the user who demands access to a resource. Authentication is essential to effective security.<br>  <br> <strong>b) Identify and briefly describe FOUR (4) authentication technologies. <br></strong><br></div><div><strong>Username/Password</strong> - Most commonly used electrical authentication method across the globe. It does not require any physical device and has a very low implementation cost. It is reasonably good for low assurance applications. At the same time, these are also easy to share and can be guessed, stolen or hacked easily which makes it unsuitable for protecting confidential data.<br><br></div><div><strong>E-Token Based Technologies</strong> which is a small<br>device that develop/generates a new odd/random value every time it is used.<br>This random value becomes the basis for authentication (an alternative to a<br>password). It can be implemented on a USB key fob or on a smart card. Data is<br>protected on the device itself.<br> <br> </div><div><strong>Bio-metric Authentication- </strong>a user identity verification process that involves biological input, or the scanning or analysis of some part of the body are used to protect many kinds of systems - from logical systems facilitated through hardware access points to physical systems protected by physical barriers, such as secure facilities and protected research sites</div><div> </div><div><strong>Two Factor Authentication</strong> also known as<br>multi-step verification, which adds another layer of security, supplementing<br>the username and password model with a code that only a specific user has<br>access to (typically sent to something they have immediately to hand).</div><div> </div><div> <br> <strong>Question 7 </strong></div><div><strong>a) Describe ransomware. <br></strong><br></div><div>Ransom malware, or ransomware is a type of malware that prevents users from accessing their system or personal files and demands ransom payment in order to regain access. The earliest variants of ransomware were developed in the late 1980s, and payment was to be sent via snail mail. Today, ransomware authors order that payment be sent via cryptocurrency or credit card.<br><br></div><div> </div><div><strong>b) State how do we prevent and protect our computer from ransomware.</strong><br> i) Make sure one must install up to date anti-malware or anti-virus tool<br><br></div><div>ii) Scan attachments<br><br></div><div>iii) Ask before you open the email<br><br></div><div><strong>c) Discuss the effects of computer crime to an organization. </strong><br>   </div><div>The effect of computer crime to an organization which can makes a company suffers losses due to computer crime when a hacker steals confidential information and future plans of the company. And he can simply sell the information to a competitor company and they can use the information for their advantage.<br><br></div><div>When a hacker enters in an organization and steals confidential information from the company as the company may contains confidential information like credit cards of customers and as the information is stolen, the customer will not trust that company again and will move to other company that could protect their confidential information from being stolen again.<br><br></div><div><br> <strong>Chapter 7: Securing Information Systems.<br></strong><br></div><div><strong>Questions:</strong></div><div><strong>1. Security isn’t simply a technology issue, it’s a business issue. Discuss.<br></strong><br></div><div>It’s a business issue because most of the organization are depending on their technology and system to sustain their business. Any risk towards their security will give huge impact in their business as well as profit. The more problem related to their security such as leak of employees and consumer personal details will jeopardize their organization. This is because people will lose trust to keep their information with them as all the personal data is very crucial to be well protected to ensure there is no abuse of information. If the technology or system made unable to protect people security, it shows that the organization had failed to protect their consumer right at first place. <br><br></div><div> <br><br></div><div><strong>2. Who poses the biggest security threat: insiders or outsiders?<br></strong><br></div><div>The biggest security threat comes from the insiders. This is because the insider is the employees that directly involved with any transaction related. They are the one who control all the processes and there might be higher chances for them to easily breach the security. There is no doubt that employee itself can sabotage the organization if they feel dissatisfied with their organization. <br><br></div><div> <br><br></div><div><strong>3.  Suppose your business had an e-commerce Web site where it sold goods and accepted credit card payments. Discuss the major security threats to this Web site and their potential impact. What can be done to minimize these threats?<br></strong><br></div><div>-The major security threats to e-commerce are malicious code threats. These code threats typically involve viruses, worms, Trojan horses. Viruses are normally external threats and can corrupt the files on the website if they find their way in the internal network. They can be very dangerous as they destroy the computer systems completely and can damage the normal working of the computer. <br><br></div><div>Worms are places itself directly through the internet. It can infect millions of computers in a matter of just few hours. A Trojan horse is a programming code which can perform destructive functions. They normally attack your computer when you download something. <br><br></div><div>-way to minimize this threat is look closely at the URL from any email for special characters, numbers. If your financial institution, or a site that you have an account with, sends you a ‘password reset’ email, log in to the bank directly instead of clicking on the link in the email.<br><br></div><div><strong><br>  Case Study:<br>  1. Is cyber warfare a serious problem? Why or why not?<br></strong><br></div><div>Absolutely, cyberwarfare is a big problem. This is because cyberwarfare is more complex than conventional warfare. Although many potential targets are military a country’s power grids, financial systems, and a communication network can also be crippled. Non-state actors such as terrorist ore criminal groups can mount attacks, and it is often difficult to tell who is responsible. Nations must constantly to be on the alert for new malware and other technologies that could be used against them, and some of these technologies develop by skilled hacker groups are openly for sale to interested governments. It involved big asset of nation state especially on their military and financial matter which must be uphold from external intervention to ensure peace and harmony.</div><div> </div><div><strong>2. What solutions are available for this problem? Do you think they will be effective? Why or why not?</strong></div><div>There have been several attempts to take effective measures against cyber-attacks, but none have been successful on international base. For example, in 2011 the Shanghai Cooperation Organization proposed to the UN the “International code of conduct for information security” which did not pass because it enabled to much internet censorship according to many western countries. Another measure taken by the US and Russia is the establishment of a cyberwar-hotline which should be used in crisis situation to prevent an accidental cyberwar. This might not prevent any cyber-attacks, but it is certainly an important step because as mentioned, cyber-attacks can be committed through other computers which could lead to tensions between two countries caused by someone else. In order to effectively prepare for a possible cyberwar, the USA has launched a simulation called Cyber Shockwave in 2010 which simulate the situation as realistic as possible. The results were shocking and showed that the USA isn’t prepared for such attacks, especially not if they would be attacked by surprise. Similar simulations have been conducted before by the USA. They have proved very efficient as it showed in which aspects the USA was unprepared and in which aspects they were.</div>]]></description>
         <enclosure url="" />
         <pubDate>2018-12-29 16:17:05 UTC</pubDate>
         <guid>https://padlet.com/mohamadraissharif/rp0knaizl64v/wish/316842194</guid>
      </item>
   </channel>
</rss>
