Attack
Attack
Attack
Information
• Security Mechanism
– A mechanism that is designed to detect, prevent, or
Security
recover from a security attack.
• Security Service
– A service that enhances the security of data processing
systems and information transfers.
• Makes use of one or more security mechanisms.
Computer • Computer Security
– The protection afforded to an automated information
Concept
means for protecting personal privacy and
proprietary information.
2. Integrity
Guarding against improper information
modification or destruction, and includes
ensuring information non-repudiation and
authenticity
3. Availability
Ensuring timely and reliable access to and
use of information.
Security
Goals Confidentiality
Integrity
Avalaibility
Types of • Passive Attacks
• Active Attacks
Attacks
PASSIVE ATTACKS
Passive • A passive attack is a network attack in which a system
is monitored and sometimes scanned for open ports
Passive
Attacks
Interception • The phenomenon of confidentiality plays an important
role in this type of attack. The data or message which is
sent by the sender is intercepted by an unauthorized
individual where the message will be changed to the
different form or it will be used by the individual for his
malicious process. So the confidentiality of the
message is lost in this type of attack.
• It is also known as “Release of message contents”.
Interception
Traffic • Traffic analysis is the process of intercepting and
examining messages in order to deduce information
Fabricate message
Session • In a session replay attack, a hacker steals an authorized
user’s log in information by stealing the session ID. The
Modify
message
Denial of • In a denial of service (DoS) attack, users are deprived of
access to a network or web resource. This is generally
(DOS)
THANK YOU