Thursday, August 12, 2010

Understanding of security threat

Social engineering
Social engineering is a fast-evolving, technology solutions, security policies and operating procedures alone can not protect the most important resources. Even if these safeguards, hackers usually threatens the safe operation of the Company. Victims also found to be without knowledge of sensitive information to bypass the network security, and even strangers will not open the door to the identification of the work. Although the immune system attack on the judgments of people, even the best network protection system, companies can reduce the positive safety culture and the landscape changes and the development of social engineering.

Salami slicing
Salami slicing is a series of actions in many children, often in secret, by one large transaction, it will be difficult, or illegal conduct with the results. The term is often used as the salami slicing pejoratively.An, also known as shaving a penny of the money stolen several times, usually in very small amounts are rounded to the nearest (or other currency) to the practical advantage of the financial transaction fraud.It happens that the change is small enough, one transaction can not be found. IT security, salami attack on a series of smaller attacks, the result of a larger attack. Is very suitable for computer automation of these types of attacks.


Trojan Horse

A destructive program disguised as a benign application. In contrast to virus trojan horse do not replicate themsleve, they are also devasting. The most insidious types of Trojan horse is a program that is free from viruses, but they have a virus on your computer. The term comes from the Greek story of the Trojan War, which the Greeks give a giant wooden horse, enemies, Trojans, seemingly a product of peace. But the Trojans pulled within the walls, Greek soldiers sneak out of the horse's hollow belly and open the gates to their fellow countrymen back and capture Troy.

Denial of service
This Dos attact is not really used for stealing the information. The main aim of this attact is to bring down the target nwtwork and make it to deny the service for legitimate user. In oder to do Dos attact, they can do this with simple ping command.


Sniffer

Sniffer can be used for legal or illegal means to obtain the data transmission network. The content of each package over a network router that to determaine whether the router has its own network of destination or to be moere with the internet. Sniff the router, but may be able to read the data package and the source and destination addresses. Academic Network Sniffer is often used to prevent file-sharing applications cause traffic congestion.

Ip spoofing

A technique used to gain unauthorized access to computers, whereby the intruder sends messages to a computer with an IP address indicating that the message is coming from a trusted host. To engage in IP spoofing, a hacker must first use a variety of techniques to find an IP address of a trusted host and then modify the packet headers so that it appears that the packets are coming from that host.


Brute force attack
In cryptography, a brute force attack is a strategy used to break the encryption of data. It involves traversing the search space of possible keys until the correct key is found.The selection of an appropriate key length depends on the practical feasibility of performing a brute force attack. By obfuscating the data to be encoded, brute force attacks are made less effective as it is more difficult to determine when one has succeeded in breaking the code.
Sabotage
A term borrowed from French syndicalists by American labor organizations at the turn of the century, sabotage means the hampering of productivity and efficiency of a factory, company, or organization by internal operatives. Often sabotage involves the destruction of property or machines by the workers who use them.

Shoulder surfing

Shoulder surfing is using direct observation techniques, such as looking over someone's shoulder, to get information. Shoulder surfing is an effective way to get information in crowded places because it's relatively easy to stand next to someone and watch as they fill out a form, enter a PIN number at an ATM machine, or use a calling card at a public pay phone.


Electromagnetic interference

Electromagnetic interference is a disturbance that affects an electrical circuit due to either electromagnetic conduction or electromagnetic radiation emitted from an external source. The disturbance may interrupt, obstruct, or otherwise degrade or limit the effective performance of the circuit.

No comments:

Post a Comment