SlideShare une entreprise Scribd logo
1  sur  50
CHAPTER 9

Discovering Computers
Fundamentals,
2011 Edition
Living in a Digital World
Objectives Overview
Describe various types of
network attacks, and
identify ways to safeguard
against these attacks,
including firewalls and
intrusion detection software

Discuss techniques to
prevent unauthorized
computer access and use

Identify safeguards against
hardware theft and
vandalism

Explain the ways to protect
against software theft and
information theft

See Page 381
for Detailed Objectives

2
Objectives Overview
Discuss the types of
devices available that
protect computers
from system failure

Identify risks and
safeguards associated
with wireless
communications

Discuss ways to
prevent health-related
disorders and injuries
due to computer use

Discuss issues
surrounding
information privacy

See Page 381
for Detailed Objectives

3
Computer Security Risks
• A computer security risk is any event or action that could
cause a loss of or damage to computer hardware,
software, data, information, or processing capability
• A cybercrime is an online or Internet-based illegal act
Hackers

Crackers

Unethical
Employees
Pages 382 - 383

Script Kiddies

Cyberextortionists

Corporate Spies

Cyberterrorists

4
Computer Security Risks

Pages 382 - 383
Figure 10-1

5
Internet and Network Attacks
• Information transmitted over networks has a
higher degree of security risk than information
kept on an organization’s premises
Computer Virus
• Affects a
computer
negatively by
altering the way
the computer
works

Page 384

Worm
• Copies itself
repeatedly,
using up
resources and
possibly
shutting down
the computer
or network

Trojan Horse
• A malicious
program that
hides within or
looks like a
legitimate
program

Rootkit
• Program that
hides in a
computer and
allows someone
from a remote
location to take
full control

6
Video: Attack of the Mobile Viruses

CLICK TO START
7
Internet and Network Attacks
• An infected computer has one or more of the
following symptoms:
Operating system
runs much slower
than usual

Music or unusual
sound plays
randomly

Available memory
is less than
expected

Files become
corrupted

Screen displays
unusual message
or image

Existing programs
and files disappear

Programs or files
do not work
properly

Unknown
programs or files
mysteriously
appear

System properties
change
Page 384

Operating system
does not start up

Operating system
shuts down
unexpectedly
8
Internet and Network Attacks

Page 385
Figure 10-2

9
Internet and Network Attacks
• Users can take several precautions to protect their home
and work computers and mobile devices from these
malicious infections

Pages 385 – 387
Figure 10-4

10
Internet and Network Attacks

Page 386
Figure 10-3

11
Internet and Network Attacks
• A botnet is a group of compromised computers connected to a
network
– A compromised computer is known as a zombie

• A denial of service attack (DoS attack) disrupts computer access to
Internet services
• A back door is a program or set of instructions in a program that
allow users to bypass security controls
• Spoofing is a technique intruders use to make their network or
Internet transmission appear legitimate
Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click DoS Attacks
below Chapter 10

Pages 387 - 388

12
Internet and Network Attacks
• A firewall is hardware and/or software that
protects a network’s resources from intrusion

Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click Firewalls
below Chapter 10

Pages 388 - 389
Figure 10-5

13
Internet and Network Attacks

Intrusion detection software
• Analyzes all network traffic
• Assesses system vulnerabilities
• Identifies any unauthorized intrusions
• Notifies network administrators of
suspicious behavior patterns or security
breaches
Page 389

14
Unauthorized Access and Use

Unauthorized access is
the use of a computer or
network without
permission

Page 389

Unauthorized use is the
use of a computer or its
data for unapproved or
possibly illegal activities

15
Unauthorized Access and Use
• Access controls define who can access a
computer, when they can access it, and what
actions they can take
– Two-phase processes called identification and
authentication
– User name
– Password
– CAPTCHA
Pages 389 - 390
Figure 10-6

16
Unauthorized Access and Use
• A possessed object is any
item that you must carry to
gain access to a computer
or computer facility
– Often are used in
combination with a personal
identification number (PIN)

Page 391
Figure 10-8

• A biometric device
authenticates a person’s
identity by translating a
personal characteristic into
a digital code that is
compared with a digital
code in a computer

17
Unauthorized Access and Use
• Digital forensics is the discovery, collection, and
analysis of evidence found on computers and
networks
• Many areas use digital forensics
Law
enforcement

Insurance
agencies
Page 392

Criminal
prosecutors

Military
intelligence

Information
security
departments
18
Hardware Theft and Vandalism

Hardware theft is the
act of stealing
computer equipment

Page 393

Hardware vandalism
is the act of defacing
or destroying
computer equipment

19
Hardware Theft and Vandalism
• To help the reduce of chances of theft, companies
and schools use a variety of security measures
Physical access controls

Alarm systems

Real time location
system

Cables to lock
equipment

Passwords, possessed
objects, and biometrics

Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click RTLS
below Chapter 10

Page 393
Figure 10-9

20
Software Theft
• Software theft occurs when someone:

Steals software
media

Illegally copies a
program
Page 393

Intentionally
erases programs

Illegally
registers and/or
activates a
program
21
Software Theft
• A single-user license agreement typically contains the
following conditions:
Permitted to
• Install the software on one computer
• Make one copy of the software
• Remove the software from your computer before giving it away or selling it

Not permitted to
•
•
•
•

Install the software on a network
Give copies to friends or colleagues while continuing to use the software
Export the software
Rent or lease the software

Page 394

22
Software Theft
• Copying, loaning,
borrowing, renting, or
distributing software
can be a violation of
copyright law
• Some software requires
product activation to
function fully

Page 394
Figure 10-10

23
Information Theft
• Information theft occurs when someone steals
personal or confidential information
• Encryption is a process of converting readable
data into unreadable characters to prevent
unauthorized access

Page 395
Figure 10-11

24
Information Theft
• A digital signature is an encrypted code that a
person, Web site, or organization attaches to an
electronic message to verify the identity of the
sender
• A digital certificate is a notice that guarantees a
user or a Web site is legitimate
– Issued by a certificate authority
Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click Digital Certificates
below Chapter 10

Pages 395 - 396

25
Information Theft

Page 395
Figure 10-12

26
System Failure
• A system failure is the prolonged malfunction of a
computer
• A variety of factors can lead to system failure,
including:
– Aging hardware
– Natural disasters
– Electrical power problems
– Errors in computer programs
Page 396

27
System Failure
• Two ways to protect from system failures caused
by electrical power variations include surge
protectors and uninterruptable power supplies
(UPS)

Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click Surge Protectors
below Chapter 10

Page 396
Figures 10-13 – 10-14

28
Backing Up – The Ultimate Safeguard
• A backup is a duplicate of a file, program, or disk
that can be used if the original is lost, damaged,
or destroyed
– To back up a file means to make a copy of it

• Offsite backups are stored in a location separate
from the computer site
Cloud
Storage
Page 396

29
Backing Up – The Ultimate Safeguard
• Two categories of
backups:
– Full backup
– Selective backup

• Three-generation
backup policy
Grandparent

Parent

Child

Page 397

30
Wireless Security
• Wireless access poses additional security risks
– About 80 percent of wireless networks have no security
protection

• War driving allows individuals to detect wireless
networks while driving a vehicle through the area
A wireless access
point should not
broadcast a
network name

Page 397

Change the default
network name

Configure a WAP
so that only
certain devices
can access it

Use WPA or WPA2
security standards

31
Health Concerns of Computer Use
• The widespread use of
computers has led to
health concerns
– Repetitive strain injury
(RSI)
• Tendonitis
• Carpal tunnel syndrome
(CTS)

– Computer vision
syndrome (CVS)

Page 398
Figure 10-15

32
Health Concerns of Computer Use

Page 398
Figure 10-16

33
Health Concerns of Computer Use
• Ergonomics is an
applied science devoted
to incorporating
comfort, efficiency, and
safety into the design of
items in the workplace

Page 399
Figure 10-17

34
Health Concerns of Computer Use
• Computer addiction occurs when the computer
consumes someone’s entire social life
• Symptoms of users include:
Craves
computer
time

Unable to stop
computer
activity

Irritable when
not at the
computer
Page 399

Overjoy when
at the
computer
Neglects
family and
friends

Problems at
work or
school
35
Ethics and Society
• Computer ethics are
the moral guidelines
that govern the use of
computers and
information systems
• Information accuracy is
a concern
– Not all information on
the Web is correct

Page 399 – 401
Figure 10-19

36
Ethics and Society
Intellectual property rights are the rights to which
creators are entitled for their work
• A copyright protects any tangible form of expression

Digital rights management is a strategy designed to
prevent illegal distribution of movies, music, and other
digital content
Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click Digital Rights
Management
below Chapter 10

Page 401

37
Ethics and Society
• Green computing
involves reducing the
electricity and
environmental waste
while using a computer
– ENERGY STAR program

Pages 401 - 402
Figure 10-20

38
Ethics and Society
• Information privacy refers to the right of
individuals and companies to deny or restrict the
collection and use of information about them
• Huge databases store data online
• It is important to safeguard your information

Page 402 - 403

39
Ethics and Society

Page 403
Figure 10-21

40
Ethics and Society
• When you fill out a
form, the merchant that
receives the form
usually enters it into a
database
• Many companies today
allow people to specify
whether they want
their personal
information distributed
Page 403

41
Ethics and Society
• A cookie is a small text file that a Web server stores on
your computer
• Web sites use cookies for a variety of reasons:
Allow for
personalization

Click to view Web Link,
click Chapter 10, Click Web
Link from left navigation,
then click Cookies
below Chapter 10

Pages 403 - 404

Store users’
passwords

Track how
often users
visit a site

Assist with
online
shopping

Target
advertisements
42
Ethics and Society

Page 404
Figure 10-22

43
Ethics and Society
• Spam is an unsolicited
e-mail message or
newsgroup posting
• E-mail filtering blocks
e-mail messages from
designated sources
• Anti-spam programs
attempt to remove
spam before it reaches
your inbox
Pages 404 - 405
Figure 10-23

44
Ethics and Society
• Phishing is a scam in
which a perpetrator sends
an official looking e-mail
message that attempts to
obtain your personal and
financial information
• Pharming is a scam
where a perpetrator
attempts to obtain your
personal and financial
information via spoofing
Page 405
Figure 10-24

45
Ethics and Society
• The concern about privacy has led to the
enactment of federal and state laws regarding the
storage and disclosure of personal data
– See Figure 10-25 on page 406 for a listing of major U.S.
government laws concerning privacy

Page 406

46
Ethics and Society
Social engineering is defined as gaining
unauthorized access or obtaining confidential
information by taking advantage of trust and naivety
Employee monitoring involves the use of computers
to observe, record, and review an employee’s use of
a computer

Pages 405 - 407

47
Ethics and Society
• Content filtering is the
process of restricting
access to certain
material on the Web
• Many businesses use
content filtering
• Web filtering software
restricts access to
specified Web sites
Page 407
Figure 10-26

48
Summary

Potential computer risks
and the safeguards

Computer-related health
issues and preventions

Page 408

Wireless security risks
and safeguards

Ethical issues surrounding
information accuracy,
intellectual property
rights, green computing,
and information privacy
49
CHAPTER 9

Discovering Computers
Fundamentals,
2011 Edition
Living in a Digital World

Chapter 9 Complete

Contenu connexe

Tendances

Slaid bab 1.3 Keselamatan Komputer
Slaid bab 1.3 Keselamatan KomputerSlaid bab 1.3 Keselamatan Komputer
Slaid bab 1.3 Keselamatan Komputer
razak12345
 
Chapter 06 software csc&tts
Chapter 06 software csc&ttsChapter 06 software csc&tts
Chapter 06 software csc&tts
Hisyam Rosly
 
Unauthorized access and use
Unauthorized access and useUnauthorized access and use
Unauthorized access and use
chrispaul8676
 
Power point cybercrime
Power point cybercrimePower point cybercrime
Power point cybercrime
12698
 
7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...
7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...
7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...
Nurul Atikah
 
3.3 Kesan Darurat
3.3 Kesan Darurat3.3 Kesan Darurat
3.3 Kesan Darurat
Mohd Sofian
 
Dasar luar malaysia paly
Dasar luar malaysia   palyDasar luar malaysia   paly
Dasar luar malaysia paly
IPDA
 

Tendances (20)

Slaid bab 1.3 Keselamatan Komputer
Slaid bab 1.3 Keselamatan KomputerSlaid bab 1.3 Keselamatan Komputer
Slaid bab 1.3 Keselamatan Komputer
 
Basic concepts in computer security
Basic concepts in computer securityBasic concepts in computer security
Basic concepts in computer security
 
Kebebasan Bersuara, Berhimpun dan Berpersatuan
Kebebasan Bersuara, Berhimpun dan BerpersatuanKebebasan Bersuara, Berhimpun dan Berpersatuan
Kebebasan Bersuara, Berhimpun dan Berpersatuan
 
PERUNTUKAN UTAMA PERLEMBAGAAN MALAYSIA
PERUNTUKAN UTAMA PERLEMBAGAAN MALAYSIAPERUNTUKAN UTAMA PERLEMBAGAAN MALAYSIA
PERUNTUKAN UTAMA PERLEMBAGAAN MALAYSIA
 
BAB 4 Perisian operasi
BAB 4   Perisian operasiBAB 4   Perisian operasi
BAB 4 Perisian operasi
 
Security Awareness Training - For Companies With Access to NYS "Sensitive" In...
Security Awareness Training - For Companies With Access to NYS "Sensitive" In...Security Awareness Training - For Companies With Access to NYS "Sensitive" In...
Security Awareness Training - For Companies With Access to NYS "Sensitive" In...
 
Information security
 Information security Information security
Information security
 
Tragedi 13 mei 1969
Tragedi 13 mei 1969Tragedi 13 mei 1969
Tragedi 13 mei 1969
 
Chapter 06 software csc&tts
Chapter 06 software csc&ttsChapter 06 software csc&tts
Chapter 06 software csc&tts
 
Unauthorized access and use
Unauthorized access and useUnauthorized access and use
Unauthorized access and use
 
Cyber Security
Cyber SecurityCyber Security
Cyber Security
 
Maksud & kegunaan rangkaian 2
Maksud & kegunaan rangkaian 2Maksud & kegunaan rangkaian 2
Maksud & kegunaan rangkaian 2
 
Power point cybercrime
Power point cybercrimePower point cybercrime
Power point cybercrime
 
7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...
7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...
7.9 ANCAMAN JENAYAH SIBER DLM KEPESATAN TEKNOLOGI MAKLUMAT{PENGAJIAN AM STPM ...
 
System Security-Chapter 1
System Security-Chapter 1System Security-Chapter 1
System Security-Chapter 1
 
3.3 Kesan Darurat
3.3 Kesan Darurat3.3 Kesan Darurat
3.3 Kesan Darurat
 
Cyber Security
Cyber SecurityCyber Security
Cyber Security
 
Topik 1 pengenalan kepada rangkaian
Topik 1   pengenalan kepada rangkaianTopik 1   pengenalan kepada rangkaian
Topik 1 pengenalan kepada rangkaian
 
Dasar luar-negara
Dasar luar-negaraDasar luar-negara
Dasar luar-negara
 
Dasar luar malaysia paly
Dasar luar malaysia   palyDasar luar malaysia   paly
Dasar luar malaysia paly
 

En vedette

Computer Security and Safety, Ethics & Privacy
Computer Security and Safety, Ethics & PrivacyComputer Security and Safety, Ethics & Privacy
Computer Security and Safety, Ethics & Privacy
Samudin Kassan
 
CH. 5 Computer Security and Safety, Ethics and Privacy
CH. 5 Computer Security and Safety, Ethics and PrivacyCH. 5 Computer Security and Safety, Ethics and Privacy
CH. 5 Computer Security and Safety, Ethics and Privacy
malik1972
 
Chapter 3 application software
Chapter 3   application softwareChapter 3   application software
Chapter 3 application software
haider ali
 
Chapter 11 computer security and safety, ethics, and privacy
Chapter 11   computer security and safety, ethics, and privacyChapter 11   computer security and safety, ethics, and privacy
Chapter 11 computer security and safety, ethics, and privacy
haider ali
 

En vedette (20)

Computer Security and Safety, Ethics & Privacy
Computer Security and Safety, Ethics & PrivacyComputer Security and Safety, Ethics & Privacy
Computer Security and Safety, Ethics & Privacy
 
CSC 134
CSC 134CSC 134
CSC 134
 
Discovering Computers: Chapter 14
Discovering Computers: Chapter 14Discovering Computers: Chapter 14
Discovering Computers: Chapter 14
 
Discovering Computers: Chapter 13
Discovering Computers: Chapter 13Discovering Computers: Chapter 13
Discovering Computers: Chapter 13
 
Discovering Computers: Chapter 12
Discovering Computers: Chapter 12Discovering Computers: Chapter 12
Discovering Computers: Chapter 12
 
Chapter 04
Chapter 04Chapter 04
Chapter 04
 
Discovering Computers: Chapter 07
Discovering Computers: Chapter 07Discovering Computers: Chapter 07
Discovering Computers: Chapter 07
 
Discovering Computers: Chapter 10
Discovering Computers: Chapter 10Discovering Computers: Chapter 10
Discovering Computers: Chapter 10
 
Discovering Computers: Chapter 08
Discovering Computers: Chapter 08Discovering Computers: Chapter 08
Discovering Computers: Chapter 08
 
CH. 5 Computer Security and Safety, Ethics and Privacy
CH. 5 Computer Security and Safety, Ethics and PrivacyCH. 5 Computer Security and Safety, Ethics and Privacy
CH. 5 Computer Security and Safety, Ethics and Privacy
 
Discovering Computers: Chapter 15
Discovering Computers: Chapter 15Discovering Computers: Chapter 15
Discovering Computers: Chapter 15
 
Chapter 6 output
Chapter 6   outputChapter 6   output
Chapter 6 output
 
Discovering Computers: Chapter 06
Discovering Computers: Chapter 06Discovering Computers: Chapter 06
Discovering Computers: Chapter 06
 
Chapter 3 application software
Chapter 3   application softwareChapter 3   application software
Chapter 3 application software
 
Discovering Computers: Chapter 09
Discovering Computers: Chapter 09Discovering Computers: Chapter 09
Discovering Computers: Chapter 09
 
Discovering Computers: Chapter 05
Discovering Computers: Chapter 05Discovering Computers: Chapter 05
Discovering Computers: Chapter 05
 
Chapter 11 computer security and safety, ethics, and privacy
Chapter 11   computer security and safety, ethics, and privacyChapter 11   computer security and safety, ethics, and privacy
Chapter 11 computer security and safety, ethics, and privacy
 
Discovering Computers: Chapter 02
Discovering Computers: Chapter 02Discovering Computers: Chapter 02
Discovering Computers: Chapter 02
 
Discovering Computers: Chapter 01
Discovering Computers: Chapter 01Discovering Computers: Chapter 01
Discovering Computers: Chapter 01
 
WIRELESS TRANSMISSION MEDIA
WIRELESS  TRANSMISSION MEDIAWIRELESS  TRANSMISSION MEDIA
WIRELESS TRANSMISSION MEDIA
 

Similaire à Chapter 9 security privacy csc

Chapter 05 Digital Safety and Security
Chapter 05 Digital Safety and SecurityChapter 05 Digital Safety and Security
Chapter 05 Digital Safety and Security
xtin101
 
chapter11-120214225647-phpapp01.pptx
chapter11-120214225647-phpapp01.pptxchapter11-120214225647-phpapp01.pptx
chapter11-120214225647-phpapp01.pptx
ssuser666f98
 
43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx
43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx
43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx
PradeeshSAI
 
Computer security and safety.pptx
Computer security and safety.pptxComputer security and safety.pptx
Computer security and safety.pptx
ssuser666f98
 

Similaire à Chapter 9 security privacy csc (20)

Security_saftety_privacy of computer by sarmad baloch
Security_saftety_privacy of computer by sarmad balochSecurity_saftety_privacy of computer by sarmad baloch
Security_saftety_privacy of computer by sarmad baloch
 
Computer Security and their social effect and their usage.
Computer Security and their social effect and their usage.Computer Security and their social effect and their usage.
Computer Security and their social effect and their usage.
 
Week 12
Week 12Week 12
Week 12
 
Chapter 05 Digital Safety and Security
Chapter 05 Digital Safety and SecurityChapter 05 Digital Safety and Security
Chapter 05 Digital Safety and Security
 
Chapter 5 - Digital Security, Ethics, Privacy.pptx
Chapter 5 - Digital Security, Ethics, Privacy.pptxChapter 5 - Digital Security, Ethics, Privacy.pptx
Chapter 5 - Digital Security, Ethics, Privacy.pptx
 
4.1.2 area 2016
4.1.2 area 20164.1.2 area 2016
4.1.2 area 2016
 
chapter11-120214225647-phpapp01.pptx
chapter11-120214225647-phpapp01.pptxchapter11-120214225647-phpapp01.pptx
chapter11-120214225647-phpapp01.pptx
 
chapter11-120214225647-phpapp01.pdf
chapter11-120214225647-phpapp01.pdfchapter11-120214225647-phpapp01.pdf
chapter11-120214225647-phpapp01.pdf
 
DC16_Ch05.pptx
DC16_Ch05.pptxDC16_Ch05.pptx
DC16_Ch05.pptx
 
Lecture 5.1.pptx
Lecture 5.1.pptxLecture 5.1.pptx
Lecture 5.1.pptx
 
43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx
43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx
43080d37-44e9-4b2f-9cb5-ceb90f3fab98.pptx
 
Computer-Security.pptx
Computer-Security.pptxComputer-Security.pptx
Computer-Security.pptx
 
Cyber Security PPT.pptx
Cyber Security PPT.pptxCyber Security PPT.pptx
Cyber Security PPT.pptx
 
Network Security
Network SecurityNetwork Security
Network Security
 
Chapter 10.0
Chapter 10.0Chapter 10.0
Chapter 10.0
 
Security and control in mis
Security and control in misSecurity and control in mis
Security and control in mis
 
Computer Security risks Shelly
Computer Security risks ShellyComputer Security risks Shelly
Computer Security risks Shelly
 
Computer security and safety.pptx
Computer security and safety.pptxComputer security and safety.pptx
Computer security and safety.pptx
 
Security & control in management information system
Security & control in management information systemSecurity & control in management information system
Security & control in management information system
 
File000119
File000119File000119
File000119
 

Plus de Hisyam Rosly

Chapter 08 communication and network csc
Chapter 08 communication and network cscChapter 08 communication and network csc
Chapter 08 communication and network csc
Hisyam Rosly
 
Chapter 04 storage csc & tts
Chapter 04 storage csc & ttsChapter 04 storage csc & tts
Chapter 04 storage csc & tts
Hisyam Rosly
 
Chapter 05 os dan utility program csc & tts
Chapter 05 os dan utility program csc & ttsChapter 05 os dan utility program csc & tts
Chapter 05 os dan utility program csc & tts
Hisyam Rosly
 
Chapter 02 system unit csc & tts
Chapter 02 system unit csc & ttsChapter 02 system unit csc & tts
Chapter 02 system unit csc & tts
Hisyam Rosly
 
Chapter 03 io csc&tts
Chapter 03 io csc&ttsChapter 03 io csc&tts
Chapter 03 io csc&tts
Hisyam Rosly
 

Plus de Hisyam Rosly (6)

Chapter 08 communication and network csc
Chapter 08 communication and network cscChapter 08 communication and network csc
Chapter 08 communication and network csc
 
Chapter 04 storage csc & tts
Chapter 04 storage csc & ttsChapter 04 storage csc & tts
Chapter 04 storage csc & tts
 
Chapter 05 os dan utility program csc & tts
Chapter 05 os dan utility program csc & ttsChapter 05 os dan utility program csc & tts
Chapter 05 os dan utility program csc & tts
 
Chapter 02 system unit csc & tts
Chapter 02 system unit csc & ttsChapter 02 system unit csc & tts
Chapter 02 system unit csc & tts
 
Chapter 03 io csc&tts
Chapter 03 io csc&ttsChapter 03 io csc&tts
Chapter 03 io csc&tts
 
Chapter 01 csc
Chapter 01 cscChapter 01 csc
Chapter 01 csc
 

Dernier

Dernier (20)

Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 

Chapter 9 security privacy csc

  • 1. CHAPTER 9 Discovering Computers Fundamentals, 2011 Edition Living in a Digital World
  • 2. Objectives Overview Describe various types of network attacks, and identify ways to safeguard against these attacks, including firewalls and intrusion detection software Discuss techniques to prevent unauthorized computer access and use Identify safeguards against hardware theft and vandalism Explain the ways to protect against software theft and information theft See Page 381 for Detailed Objectives 2
  • 3. Objectives Overview Discuss the types of devices available that protect computers from system failure Identify risks and safeguards associated with wireless communications Discuss ways to prevent health-related disorders and injuries due to computer use Discuss issues surrounding information privacy See Page 381 for Detailed Objectives 3
  • 4. Computer Security Risks • A computer security risk is any event or action that could cause a loss of or damage to computer hardware, software, data, information, or processing capability • A cybercrime is an online or Internet-based illegal act Hackers Crackers Unethical Employees Pages 382 - 383 Script Kiddies Cyberextortionists Corporate Spies Cyberterrorists 4
  • 5. Computer Security Risks Pages 382 - 383 Figure 10-1 5
  • 6. Internet and Network Attacks • Information transmitted over networks has a higher degree of security risk than information kept on an organization’s premises Computer Virus • Affects a computer negatively by altering the way the computer works Page 384 Worm • Copies itself repeatedly, using up resources and possibly shutting down the computer or network Trojan Horse • A malicious program that hides within or looks like a legitimate program Rootkit • Program that hides in a computer and allows someone from a remote location to take full control 6
  • 7. Video: Attack of the Mobile Viruses CLICK TO START 7
  • 8. Internet and Network Attacks • An infected computer has one or more of the following symptoms: Operating system runs much slower than usual Music or unusual sound plays randomly Available memory is less than expected Files become corrupted Screen displays unusual message or image Existing programs and files disappear Programs or files do not work properly Unknown programs or files mysteriously appear System properties change Page 384 Operating system does not start up Operating system shuts down unexpectedly 8
  • 9. Internet and Network Attacks Page 385 Figure 10-2 9
  • 10. Internet and Network Attacks • Users can take several precautions to protect their home and work computers and mobile devices from these malicious infections Pages 385 – 387 Figure 10-4 10
  • 11. Internet and Network Attacks Page 386 Figure 10-3 11
  • 12. Internet and Network Attacks • A botnet is a group of compromised computers connected to a network – A compromised computer is known as a zombie • A denial of service attack (DoS attack) disrupts computer access to Internet services • A back door is a program or set of instructions in a program that allow users to bypass security controls • Spoofing is a technique intruders use to make their network or Internet transmission appear legitimate Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click DoS Attacks below Chapter 10 Pages 387 - 388 12
  • 13. Internet and Network Attacks • A firewall is hardware and/or software that protects a network’s resources from intrusion Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click Firewalls below Chapter 10 Pages 388 - 389 Figure 10-5 13
  • 14. Internet and Network Attacks Intrusion detection software • Analyzes all network traffic • Assesses system vulnerabilities • Identifies any unauthorized intrusions • Notifies network administrators of suspicious behavior patterns or security breaches Page 389 14
  • 15. Unauthorized Access and Use Unauthorized access is the use of a computer or network without permission Page 389 Unauthorized use is the use of a computer or its data for unapproved or possibly illegal activities 15
  • 16. Unauthorized Access and Use • Access controls define who can access a computer, when they can access it, and what actions they can take – Two-phase processes called identification and authentication – User name – Password – CAPTCHA Pages 389 - 390 Figure 10-6 16
  • 17. Unauthorized Access and Use • A possessed object is any item that you must carry to gain access to a computer or computer facility – Often are used in combination with a personal identification number (PIN) Page 391 Figure 10-8 • A biometric device authenticates a person’s identity by translating a personal characteristic into a digital code that is compared with a digital code in a computer 17
  • 18. Unauthorized Access and Use • Digital forensics is the discovery, collection, and analysis of evidence found on computers and networks • Many areas use digital forensics Law enforcement Insurance agencies Page 392 Criminal prosecutors Military intelligence Information security departments 18
  • 19. Hardware Theft and Vandalism Hardware theft is the act of stealing computer equipment Page 393 Hardware vandalism is the act of defacing or destroying computer equipment 19
  • 20. Hardware Theft and Vandalism • To help the reduce of chances of theft, companies and schools use a variety of security measures Physical access controls Alarm systems Real time location system Cables to lock equipment Passwords, possessed objects, and biometrics Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click RTLS below Chapter 10 Page 393 Figure 10-9 20
  • 21. Software Theft • Software theft occurs when someone: Steals software media Illegally copies a program Page 393 Intentionally erases programs Illegally registers and/or activates a program 21
  • 22. Software Theft • A single-user license agreement typically contains the following conditions: Permitted to • Install the software on one computer • Make one copy of the software • Remove the software from your computer before giving it away or selling it Not permitted to • • • • Install the software on a network Give copies to friends or colleagues while continuing to use the software Export the software Rent or lease the software Page 394 22
  • 23. Software Theft • Copying, loaning, borrowing, renting, or distributing software can be a violation of copyright law • Some software requires product activation to function fully Page 394 Figure 10-10 23
  • 24. Information Theft • Information theft occurs when someone steals personal or confidential information • Encryption is a process of converting readable data into unreadable characters to prevent unauthorized access Page 395 Figure 10-11 24
  • 25. Information Theft • A digital signature is an encrypted code that a person, Web site, or organization attaches to an electronic message to verify the identity of the sender • A digital certificate is a notice that guarantees a user or a Web site is legitimate – Issued by a certificate authority Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click Digital Certificates below Chapter 10 Pages 395 - 396 25
  • 27. System Failure • A system failure is the prolonged malfunction of a computer • A variety of factors can lead to system failure, including: – Aging hardware – Natural disasters – Electrical power problems – Errors in computer programs Page 396 27
  • 28. System Failure • Two ways to protect from system failures caused by electrical power variations include surge protectors and uninterruptable power supplies (UPS) Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click Surge Protectors below Chapter 10 Page 396 Figures 10-13 – 10-14 28
  • 29. Backing Up – The Ultimate Safeguard • A backup is a duplicate of a file, program, or disk that can be used if the original is lost, damaged, or destroyed – To back up a file means to make a copy of it • Offsite backups are stored in a location separate from the computer site Cloud Storage Page 396 29
  • 30. Backing Up – The Ultimate Safeguard • Two categories of backups: – Full backup – Selective backup • Three-generation backup policy Grandparent Parent Child Page 397 30
  • 31. Wireless Security • Wireless access poses additional security risks – About 80 percent of wireless networks have no security protection • War driving allows individuals to detect wireless networks while driving a vehicle through the area A wireless access point should not broadcast a network name Page 397 Change the default network name Configure a WAP so that only certain devices can access it Use WPA or WPA2 security standards 31
  • 32. Health Concerns of Computer Use • The widespread use of computers has led to health concerns – Repetitive strain injury (RSI) • Tendonitis • Carpal tunnel syndrome (CTS) – Computer vision syndrome (CVS) Page 398 Figure 10-15 32
  • 33. Health Concerns of Computer Use Page 398 Figure 10-16 33
  • 34. Health Concerns of Computer Use • Ergonomics is an applied science devoted to incorporating comfort, efficiency, and safety into the design of items in the workplace Page 399 Figure 10-17 34
  • 35. Health Concerns of Computer Use • Computer addiction occurs when the computer consumes someone’s entire social life • Symptoms of users include: Craves computer time Unable to stop computer activity Irritable when not at the computer Page 399 Overjoy when at the computer Neglects family and friends Problems at work or school 35
  • 36. Ethics and Society • Computer ethics are the moral guidelines that govern the use of computers and information systems • Information accuracy is a concern – Not all information on the Web is correct Page 399 – 401 Figure 10-19 36
  • 37. Ethics and Society Intellectual property rights are the rights to which creators are entitled for their work • A copyright protects any tangible form of expression Digital rights management is a strategy designed to prevent illegal distribution of movies, music, and other digital content Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click Digital Rights Management below Chapter 10 Page 401 37
  • 38. Ethics and Society • Green computing involves reducing the electricity and environmental waste while using a computer – ENERGY STAR program Pages 401 - 402 Figure 10-20 38
  • 39. Ethics and Society • Information privacy refers to the right of individuals and companies to deny or restrict the collection and use of information about them • Huge databases store data online • It is important to safeguard your information Page 402 - 403 39
  • 40. Ethics and Society Page 403 Figure 10-21 40
  • 41. Ethics and Society • When you fill out a form, the merchant that receives the form usually enters it into a database • Many companies today allow people to specify whether they want their personal information distributed Page 403 41
  • 42. Ethics and Society • A cookie is a small text file that a Web server stores on your computer • Web sites use cookies for a variety of reasons: Allow for personalization Click to view Web Link, click Chapter 10, Click Web Link from left navigation, then click Cookies below Chapter 10 Pages 403 - 404 Store users’ passwords Track how often users visit a site Assist with online shopping Target advertisements 42
  • 43. Ethics and Society Page 404 Figure 10-22 43
  • 44. Ethics and Society • Spam is an unsolicited e-mail message or newsgroup posting • E-mail filtering blocks e-mail messages from designated sources • Anti-spam programs attempt to remove spam before it reaches your inbox Pages 404 - 405 Figure 10-23 44
  • 45. Ethics and Society • Phishing is a scam in which a perpetrator sends an official looking e-mail message that attempts to obtain your personal and financial information • Pharming is a scam where a perpetrator attempts to obtain your personal and financial information via spoofing Page 405 Figure 10-24 45
  • 46. Ethics and Society • The concern about privacy has led to the enactment of federal and state laws regarding the storage and disclosure of personal data – See Figure 10-25 on page 406 for a listing of major U.S. government laws concerning privacy Page 406 46
  • 47. Ethics and Society Social engineering is defined as gaining unauthorized access or obtaining confidential information by taking advantage of trust and naivety Employee monitoring involves the use of computers to observe, record, and review an employee’s use of a computer Pages 405 - 407 47
  • 48. Ethics and Society • Content filtering is the process of restricting access to certain material on the Web • Many businesses use content filtering • Web filtering software restricts access to specified Web sites Page 407 Figure 10-26 48
  • 49. Summary Potential computer risks and the safeguards Computer-related health issues and preventions Page 408 Wireless security risks and safeguards Ethical issues surrounding information accuracy, intellectual property rights, green computing, and information privacy 49
  • 50. CHAPTER 9 Discovering Computers Fundamentals, 2011 Edition Living in a Digital World Chapter 9 Complete