You are on page 1of 10

15/06/2010

Objectives Overview

Define the term, Describe various types


Discuss techniques to
computer security risks, of Internet and network
prevent unauthorized
and briefly describe the attacks, and identify
computer access and
types of cybercrime ways to safeguard
use
perpetrators against these attacks

Discovering Identify safeguards


Explain the ways
software manufacturers
Discuss how encryption
Computers 2010
against hardware theft works, and explain why
protect against
and vandalism it is necessary
software piracy
Living in a Digital World

See Page 555 Discovering Computers 2010: Living in a Digital World 2


for Detailed Objectives Chapter 11

Objectives Overview Computer Security Risks

• A computer security risk is any event or action that could


cause a loss of or damage to computer hardware,
Discuss the types of Identify risks and
Explain the options software, data, information, or processing capability
devices available that safeguards associated
available for backing up
protect computers from with wireless
system failure
computer resources
communications • A cybercrime is an online or Internet-based illegal act

Recognize issues related Hackers Crackers Script Kiddies Corporate Spies


Discuss ways to prevent
to information accuracy, Discuss issues
health-related disorders
intellectual property surrounding information
and injuries due to
rights, codes of conduct, privacy
computer use
and green computing Unethical
Cyberextortionists Cyberterrorists
Employees

See Page 555 Discovering Computers 2010: Living in a Digital World 3 Pages 556 - 557 Discovering Computers 2010: Living in a Digital World 4
for Detailed Objectives Chapter 11 Chapter 11

Computer Security Risks Internet and Network Attacks

• Information transmitted over networks has a higher


degree of security risk than information kept on an
organization’s premises
• An online security service is a Web site that evaluates
your computer to check for Internet and e-mail
vulnerabilities

Click to view Web Link,


click Chapter 11, Click Web
Link from left navigation,
then click Computer
Emergency Response Team
Coordination Center below
Chapter 11
Pages 556 – 557 Discovering Computers 2010: Living in a Digital World 5 Page 558 Discovering Computers 2010: Living in a Digital World 6
Figure 11-1 Chapter 11 Figure 11-2 Chapter 11

1
15/06/2010

Internet and Network Attacks Video: Attack of the Mobile Viruses

Computer
Worm Trojan Horse Rootkit
Virus
• Affects a • Copies itself • A malicious • Program that
computer repeatedly, program that hides in a
negatively by using up hides within computer
altering the resources or looks like and allows
way the and possibly a legitimate someone
computer shutting program from a
works down the remote
computer or location to
network take full
control
CLICK TO START

Page 558 Discovering Computers 2010: Living in a Digital World 7 Discovering Computers 2010: Living in a Digital World 8
Chapter 11 Chapter 11

Internet and Network Attacks Internet and Network Attacks

• An infected computer has one or more of the


following symptoms:
Operating system Available memory Screen displays
Files become
runs much slower is less than unusual message
corrupted
than usual expected or image

Unknown
Music or unusual Programs or files
Existing programs programs or files
sound plays do not work
and files disappear mysteriously
randomly properly
appear

Operating system
System properties Operating system
shuts down
change does not start up
unexpectedly

Pages 558 - 559 Discovering Computers 2010: Living in a Digital World 9 Page 559 Discovering Computers 2010: Living in a Digital World 10
Chapter 11 Figure 11-3 Chapter 11

Internet and Network Attacks Internet and Network Attacks

• Users can take several


precautions to protect
their home and work
computers and mobile
devices from these
malicious infections

Page 560 – 561 Discovering Computers 2010: Living in a Digital World 11 Page 561 Discovering Computers 2010: Living in a Digital World 12
Figure 11-7 Chapter 11 Figure 11-6 Chapter 11

2
15/06/2010

Internet and Network Attacks Internet and Network Attacks

• A botnet is a group of compromised computers connected to a • A firewall is hardware and/or software that
network
– A compromised computer is known as a zombie
protects a network’s resources from intrusion
• A denial of service attack (DoS attack) disrupts computer access to
Internet services
– Distributed DoS (DDoS)
• A back door is a program or set of instructions in a program that
allow users to bypass security controls
• Spoofing is a technique intruders use to make their network or
Internet transmission appear legitimate
Click to view Web Link, Click to view Web Link,
click Chapter 11, Click Web click Chapter 11, Click Web
Link from left navigation, Link from left navigation,
then click DoS Attacks then click Firewalls
below Chapter 11 below Chapter 11

Pages 562 - 563 Discovering Computers 2010: Living in a Digital World 13 Pages 563 - 564 Discovering Computers 2010: Living in a Digital World 14
Chapter 11 Figure 11-8 Chapter 11

Internet and Network Attacks Unauthorized Access and Use

Intrusion detection software


• Analyzes all network traffic
• Assesses system vulnerabilities
• Identifies any unauthorized intrusions Unauthorized access is Unauthorized use is the
the use of a computer or use of a computer or its
• Notifies network administrators of suspicious behavior network without data for unapproved or
patterns or security breaches permission possibly illegal activities
Honeypot
• Vulnerable computer that is set up to entice an intruder to
break into it
Page 564 Discovering Computers 2010: Living in a Digital World 15 Page 564 Discovering Computers 2010: Living in a Digital World 16
Chapter 11 Chapter 11

Unauthorized Access and Use Unauthorized Access and Use

• Organizations take • Access controls define who can access a


several measures to
help prevent
computer, when they can access it, and what
unauthorized access actions they can take
and use – Two-phase processes called identification and
– Acceptable use policy authentication
– Disable file and printer
sharing – User name
– Firewalls – Password
– Intrusion detection – CAPTCHA
software

Page 565 Discovering Computers 2010: Living in a Digital World 17 Pages 565 – 566 Discovering Computers 2010: Living in a Digital World 18
Figure 11-10 Chapter 11 Figure 11-11 Chapter 11

3
15/06/2010

Unauthorized Access and Use Unauthorized Access and Use

• A possessed object is any • A biometric device • Digital forensics is the discovery, collection, and
item that you must carry to authenticates a person’s
gain access to a computer identity by translating a analysis of evidence found on computers and
or computer facility personal characteristic into networks
– Often are used in a digital code that is
combination with a personal compared with a digital
• Many areas use digital forensics
identification number (PIN) code in a computer
Law Criminal Military
enforcement prosecutors intelligence

Click to view Web Link,


Information
Insurance
click Chapter 11, Click Web security
Link from left navigation, agencies
then click Biometric Devices
below Chapter 11
departments
Page 568 Discovering Computers 2010: Living in a Digital World 19 Page 569 Discovering Computers 2010: Living in a Digital World 20
Figure 11-14 Chapter 11 Chapter 11

Hardware Theft and Vandalism Hardware Theft and Vandalism

• To help reduce the of chances of theft, companies


and schools use a variety of security measures
Hardware vandalism Physical access controls Alarm systems
Cables to lock
Hardware theft is the equipment
is the act of defacing
act of stealing
or destroying
computer equipment
computer equipment Real time location
system
Passwords, possessed
objects, and biometrics

Click to view Web Link,


click Chapter 11, Click Web
Link from left navigation,
then click RTLS
below Chapter 11

Page 570 Discovering Computers 2010: Living in a Digital World 21 Page 570 Discovering Computers 2010: Living in a Digital World 22
Chapter 11 Figure 11-15 Chapter 11

Software Theft Software Theft

• Software theft occurs when someone: • A single-user license agreement typically contains the
following conditions:
Permitted to
Steals software Intentionally • Install the software on one computer
media erases programs • Make one copy of the software
• Remove the software from your computer before giving it away or selling it

Not permitted to
• Install the software on a network
Illegally
• Give copies to friends or colleagues while continuing to use the software
Illegally copies a registers and/or
program activates a • Export the software
program • Rent or lease the software
Page 571 Discovering Computers 2010: Living in a Digital World 23 Page 571 Discovering Computers 2010: Living in a Digital World 24
Chapter 11 Chapter 11

4
15/06/2010

Software Theft Information Theft

• Copying, loaning, • Information theft occurs when someone steals


borrowing, renting, or personal or confidential information
distributing software
can be a violation of • Encryption is a process of converting readable
copyright law data into unreadable characters to prevent
• Some software requires unauthorized access
product activation to
function fully
Click to view Web Link,
click Chapter 11, Click Web
Link from left navigation,
then click Business Software
Alliance below Chapter 11

Pages 571 – 572 Discovering Computers 2010: Living in a Digital World 25 Pages 572 - 573 Discovering Computers 2010: Living in a Digital World 26
Figure 11-16 Chapter 11 Figure 11-17 Chapter 11

Information Theft Information Theft

• A digital signature is an encrypted code that a


person, Web site, or organization attaches to an
electronic message to verify the identity of the
sender
– Often used to ensure that an impostor is not
participating in an Internet transaction
• Web browsers and Web sites use encryption
techniques

Page 573 Discovering Computers 2010: Living in a Digital World 27 Page 574 Discovering Computers 2010: Living in a Digital World 28
Figure 11-18 Chapter 11 Chapter 11

Information Theft Information Theft

• Popular security techniques include

Digital Transport Layer


Certificates Security (TLS)

Secure HTTP VPN


Click to view Web Link,
click Chapter 11, Click Web
Link from left navigation,
then click Digital Certificates
below Chapter 11

Pages 574 - 575 Discovering Computers 2010: Living in a Digital World 29 Pages 574 - 575 Discovering Computers 2010: Living in a Digital World 30
Chapter 11 Figures 11-19 – 11-20 Chapter 11

5
15/06/2010

System Failure System Failure

• A system failure is the prolonged malfunction of a • Two ways to protect from system failures caused
computer by electrical power variations include surge
• A variety of factors can lead to system failure, protectors and uninterruptable power supplies
including: (UPS)
– Aging hardware
– Natural disasters
– Electrical power problems
• Noise, undervoltages, and overvoltages Click to view Web Link,
click Chapter 11, Click Web

– Errors in computer programs Link from left navigation,


then click Surge Protectors
below Chapter 11

Page 575 Discovering Computers 2010: Living in a Digital World 31 Page 576 Discovering Computers 2010: Living in a Digital World 32
Chapter 11 Figures 11-21 – 11-22 Chapter 11

Backing Up – The Ultimate Safeguard Backing Up – The Ultimate Safeguard

• A backup is a duplicate of a file, program, or disk • Two categories of • Three-generation


that can be used if the original is lost, damaged, backups: backup policy
or destroyed – Full backup
Grandparent
– Selective backup
– To back up a file means to make a copy of it
• Offsite backups are stored in a location separate
Parent
from the computer site
Cloud
Storage
Child

Page 577 Discovering Computers 2010: Living in a Digital World 33 Page 577 Discovering Computers 2010: Living in a Digital World 34
Chapter 11 Chapter 11

Wireless Security Wireless Security

• Wireless access poses additional security risks • In additional to using firewalls, some safeguards
– About 80 percent of wireless networks have no security improve security of wireless networks:
protection
• War driving allows individuals to detect wireless A wireless access
Change the default
networks while driving a vehicle through the area point should not
SSID
broadcast an SSID

Configure a WAP
so that only Use WPA or WPA2
Click to view Web Link,
click Chapter 11, Click Web certain devices can security standards
Link from left navigation,
then click War Driving
below Chapter 11
access it
Page 578 Discovering Computers 2010: Living in a Digital World 35 Page 578 Discovering Computers 2010: Living in a Digital World 36
Figure 11-23 Chapter 11 Chapter 11

6
15/06/2010

Health Concerns of Computer Use Health Concerns of Computer Use

• The widespread use of


computers has led to
health concerns
– Repetitive strain injury
(RSI)
– Carpal tunnel syndrome
(CTS)
– Computer vision
syndrome (CVS)

Page 579 Discovering Computers 2010: Living in a Digital World 37 Page 580 Discovering Computers 2010: Living in a Digital World 38
Figure 11-24 Chapter 11 Figure 11-25 Chapter 11

Health Concerns of Computer Use Health Concerns of Computer Use

• Ergonomics is an • Computer addiction occurs when the computer


applied science devoted consumes someone’s entire social life
to incorporating
comfort, efficiency, and • Symptoms of users include:
safety into the design of Craves Overjoy when Unable to stop
items in the workplace computer at the computer
time computer activity

Irritable when Neglects Problems at


not at the family and work or
computer friends school
Page 580 Discovering Computers 2010: Living in a Digital World 39 Page 581 Discovering Computers 2010: Living in a Digital World 40
Figure 11-26 Chapter 11 Chapter 11

Ethics and Society Ethics and Society

• Computer ethics are


the moral guidelines Intellectual property rights are the rights to which creators
are entitled for their work
that govern the use of
computers and • A copyright protects any tangible form of expression
information systems
• Information accuracy is An IT code of conduct is a written guideline that helps
determine whether a specific computer action is ethical or
a concern
unethical
– Not all information on
the Web is correct
Click to view Web Link,
click Chapter 11, Click Web
Link from left navigation,
then click Digital Rights
Management
below Chapter 11
Pages 581 – 582 Discovering Computers 2010: Living in a Digital World 41 Page 582 Discovering Computers 2010: Living in a Digital World 42
Figure 11-28 Chapter 11 Chapter 11

7
15/06/2010

Ethics and Society Ethics and Society

• Green computing involves reducing the electricity


and environmental waste while using a computer

Page 583 Discovering Computers 2010: Living in a Digital World 43 Pages 583 – 584 Discovering Computers 2010: Living in a Digital World 44
Figure 11-29 Chapter 11 Figure 11-30 Chapter 11

Ethics and Society Ethics and Society

• Information privacy refers to the right of


individuals and companies to deny or restrict the
collection and use of information about them
• Huge databases store data online
• It is important to safeguard your information

Page 584 Discovering Computers 2010: Living in a Digital World 45 Page 584 Discovering Computers 2010: Living in a Digital World 46
Chapter 11 Figure 11-31 Chapter 11

Ethics and Society Ethics and Society

• When you fill out a • A cookie is a small text file that a Web server stores on
form, the merchant that your computer
receives the form • Web sites use cookies for a variety of reasons:
usually enters it into a
database Assist with
Allow for Store users’
online
• Many companies today personalization passwords
shopping
allow people to specify
whether they want
Track how
their personal Target
Click to view Web Link, often users
information distributed click Chapter 11, Click Web advertisements
Link from left navigation,
then click Cookies
visit a site
below Chapter 11

Page 585 Discovering Computers 2010: Living in a Digital World 47 Pages 585 – 586 Discovering Computers 2010: Living in a Digital World 48
Figure 11-32 Chapter 11 Chapter 11

8
15/06/2010

Ethics and Society Ethics and Society

• Spam is an unsolicited
e-mail message or
newsgroup posting
• E-mail filtering blocks
e-mail messages from
designated sources
• Anti-spam programs
attempt to remove
spam before it reaches
your inbox

Page 586 Discovering Computers 2010: Living in a Digital World 49 Page 587 Discovering Computers 2010: Living in a Digital World 50
Figure 11-33 Chapter 11 Figure 11-34 Chapter 11

Ethics and Society Ethics and Society

• Phishing is a scam in • The concern about privacy has led to the


which a perpetrator sends
an official looking e-mail enactment of federal and state laws regarding the
message that attempts to storage and disclosure of personal data
obtain your personal and
financial information
– See Figure 11-36 on page 589 for a listing of major U.S.
government laws concerning privacy
• Pharming is a scam
where a perpetrator • The 1970 Fair Credit Reporting Act limits the
attempts to obtain your rights of others viewing a credit report to only
personal and financial
information via spoofing those with a legitimate business need

Pages 587 - 588 Discovering Computers 2010: Living in a Digital World 51 Page 588 Discovering Computers 2010: Living in a Digital World 52
Figure 11-35 Chapter 11 Chapter 11

Ethics and Society Ethics and Society

• Content filtering is the


Social engineering is defined as gaining process of restricting
unauthorized access or obtaining confidential access to certain material
information by taking advantage of trust and naivety on the Web
• Many businesses use
content filtering
Employee monitoring involves the use of computers
• Internet Content Rating
to observe, record, and review an employee’s use of Association (ICRA)
a computer • Web filtering software
restricts access to
Click to view Web Link,
click Chapter 11, Click Web
specified Web sites
Link from left navigation,
then click Social Engineering
below Chapter 11

Page 590 Discovering Computers 2010: Living in a Digital World 53 Pages 590 – 591 Discovering Computers 2010: Living in a Digital World 54
Chapter 11 Figure 11-37 Chapter 11

9
15/06/2010

Summary

Potential computer risks and Wireless security risks and


the safeguards safeguards

Ethical issues surrounding


information accuracy, Discovering
Computer-related health intellectual property rights, Computers 2010
issues and preventions codes of conduct, green
computing, and information Living in a Digital World
privacy
Page 591 Discovering Computers 2010: Living in a Digital World 55
Chapter 11 Complete
Chapter 11

10

You might also like