Afrikaans
Akan
Albanian
Amharic
Arabic
Armenian
Azerbaijani
Basque
Belarusian
Bemba
Bengali
Bihari
Bosnian
Breton
Bulgarian
Cambodian
Catalan
Cebuano
Cherokee
Chichewa
Chinese (Simplified)
Chinese (Traditional)
Corsican
Croatian
Czech
Danish
Dutch
English
Esperanto
Estonian
Ewe
Faroese
Filipino
Finnish
French
Frisian
Ga
Galician
Georgian
German
Greek
Guarani
Gujarati
Haitian Creole
Hausa
Hawaiian
Hebrew
Hindi
Hmong
Hungarian
Icelandic
Igbo
Indonesian
Interlingua
Irish
Italian
Japanese
Javanese
Kannada
Kazakh
Kinyarwanda
Kirundi
Kongo
Korean
Krio (Sierra Leone)
Kurdish
Kurdish (Soranรฎ)
Kyrgyz
Laothian
Latin
Latvian
Lingala
Lithuanian
Lozi
Luganda
Luo
Luxembourgish
Macedonian
Malagasy
Malay
Malayalam
Maltese
Maori
Marathi
Mauritian Creole
Moldavian
Mongolian
Myanmar (Burmese)
Montenegrin
Nepali
Nigerian Pidgin
Northern Sotho
Norwegian
Norwegian (Nynorsk)
Occitan
Oriya
Oromo
Pashto
Persian
Polish
Portuguese (Brazil)
Punjabi
Quechua
Romanian
Romansh
Runyakitara
Russian
Samoan
Scots Gaelic
Serbian
Serbo-Croatian
Sesotho
Setswana
Seychellois Creole
Shona
Sindhi
Sinhalese
Slovak
Slovenian
Somali
Spanish
Spanish (Latin American)
Sundanese
Swahili
Swedish
Tajik
Tamil
Tatar
Telugu
Thai
Tigrinya
Tonga
Tshiluba
Tumbuka
Turkish
Turkmen
Twi
Uighur
Ukrainian
Urdu
Uzbek
Vietnamese
Welsh
Wolof
Xhosa
Yiddish
Yoruba
Zulu
In our next section we will talk about the key security concepts
let's start with the cyber threats.
Cyber threats or simply threats refer to cyber security circumstances or events with the potential to
cause harm by way of their outcome.
A few examples of common threats include as social engineering are phishing attack that leads to an
attacker installing a Trojan and stealing private information from your applications.
Political activists need those seeing your Web site an administrator accidently leaving data unprotected
on a production system causing a data breach or soon flooding your ISP data center.
Cyber security threats are actualized by threat to actors Skye's threat actors usually refer to persons
or entities who may potentially initiate at threat while natural disasters as well as other environmental
and political events do constitute threats.
They are not generally regarded as being threat actors.
Examples of common threat actors include financially motivated criminals which are known also as cyber
criminals guys and politically motivated activists and these guys are known as the hacktivists and competitors
careless employees and nation state attackers.
Cyber threats can also become more dangerous if threat to actors leverage one or more vulnerabilities
to gain to a system often including the operating system yeah let's go ahead with the one notable TS
vulnerabilities simply refer to our weaknesses in our system they make threat the outcomes possible
and potentially even more dangerous.
A system could be exploited through a single vulnerability.
For example let's say as a single ask fuel injection attack could go to an attacker full control over
sensitive data an attacker could also chain several exploits together and taking advantage of more than
one vulnerability to gain more com control.
Examples of common vulnerabilities are as cruel injections cross site scripting server mis configurations
sensitive data transmitted in plain text and more
exploitation.
Exploitation is the next step in attackers playbook after finding a vulnerability on the system exploits
are the meals through which vulnerability can be leveraged for malicious activity by hackers.
And these include pieces of software sector analysis of comments or even open source exploit kids so
yeah.
We have threads and we have vulnerabilities we have exploits saw how we can mitigate it.
All of these things and we have some mitigation techniques and their training and awareness patch management
policies and procedures and incident response.
Let's start with the training and awareness.
It is constituted as the most convenient and comfortable form of the security guys.
User training is considered as the least expensive and the most effective mitigation technique.
Actually it is the best way to keep the users from making mistakes that will lead to success of the
social engineering attack is educating how to handle them.
It is important to know the procedures protocols and the policies for the security of a network or else
training users.
Skew a real advantage of the relatively low cost guys.
And the second thing is the pitch management.
When an application or an operating system is released it is not perfect far from the security perspective
guys.
Then after Dooley's updates and security patches are released on the ongoing basis which can add to
as software to make them more secure or provide it's more functionality.
And the third thing is policies and procedures the security procedures and policies must be outlined
clearly in writing in the organization guys and it should define acceptable behaviors on networks and
organization computers.
Who uses the computers has to read the procedures and policies and also sign the form for agreeing it.
And the last thing is the incident response when the intruder has enacted an attack on the network.
Then the first instinct gets you the user back to work regardless of what that takes.
It makes more sense in the short run but in case of long run it might be a wrong move surely guys.
The rails tall software which is damaged by the attack then this rare installation may covered the threat
of an attacker and prevent it from persecuting and finding it.
Also it is essential to understand these security threats which affect the networks and be familiar
with the affecting networks like those attacks warms viruses social engineering and men in the middle
attacks.
It is necessary to learn each type of these attacks operates and how to secure it.
Additionally understand the mitigation techniques such as incident response procedure and policies patch
management and training and awareness understand efficient and effective methods of protecting against
these social engineering threats and also other network weaknesses as software security physical security
is also so important infrastructure locations such as network closets and data centers should remain
securely locked badge.
Access to sensitive locations is a scalable solution offering an audit trail of identities and time
stamps when access is granted.
Administrators can control access on a granular basis and quickly remove access when an employee is
dismissive.
Can't find what you're looking for?
Get subtitles in any language from opensubtitles.com, and translate them here.