{"id":421,"date":"2018-07-24T09:45:06","date_gmt":"2018-07-24T09:45:06","guid":{"rendered":"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/?post_type=chapter&#038;p=421"},"modified":"2018-12-28T09:24:36","modified_gmt":"2018-12-28T09:24:36","slug":"security-attacks","status":"publish","type":"chapter","link":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/chapter\/security-attacks\/","title":{"rendered":"Security Attacks"},"content":{"raw":"<div><span style=\"float: right\"><a href=\"https:\/\/youtu.be\/cfZmlLyRECE\" target=\"_blank\" rel=\"noopener\"><img src=\"http:\/\/epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/2018\/11\/download.png\" alt=\"epgp books\" width=\"75px\" height=\"75px;\" \/><\/a>\r\n<\/span><\/div>\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n<strong>Learning Objectives<\/strong>\r\n<ul>\r\n \t<li>To discuss the concept of attacks in network security<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>To Know about various web attacks<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>To learn about Social Engineering and its vulnerabilities<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>To understand the protection mechanism<\/li>\r\n<\/ul>\r\n<strong>34.1. <\/strong><strong>Need for Security<\/strong>\r\n\r\n&nbsp;\r\n<p style=\"text-align: justify\">Increased reliance on Information technology with or without the use of networks has made need for security a must. The use of IT has changed our lives drastically. We depend on E-mail, Internet banking, and several other governmental activities that use IT. Increased use of E-Commerce and the World Wide Web on the Internet as a vast repository of various kinds of information (immigration databases, flight tickets, stock markets etc.)<\/p>\r\n&nbsp;\r\n\r\n<strong style=\"text-align: initial;font-size: 1em\">34.2. Security Concerns<\/strong>\r\n<div>\r\n<div>\r\n<p style=\"text-align: justify\">Systems connected by networks are more prone to attacks and also suffer more as a result of the attacks than stand-alone systems (Reasons?). Concerns such as the following are common<\/p>\r\n\r\n<ul>\r\n \t<li style=\"text-align: justify\">How do I know the party I am talking on the network is <em>really<\/em> the one I want to talk?<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>How can I be assured that no one else is listening and learning the data that I send over a network<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Can I ever stay relaxed that no hacker can enter my network and play havoc?<\/li>\r\n<\/ul>\r\n<\/div>\r\n<strong>34.3. Attacks, Services and Mechanisms<\/strong>\r\n\r\n<\/div>\r\n<ul>\r\n \t<li>Security Attack: Any action that compromises the security of information.<\/li>\r\n \t<li>Security Mechanism: A mechanism that is designed to detect, prevent, or recover from a security attack.<\/li>\r\n \t<li>Security Service: A service that enhances the security of data processing systems and information transfers. A security service makes use of one or more security mechanisms<\/li>\r\n<\/ul>\r\n<img class=\"size-full wp-image-422 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127.jpg\" alt=\"\" width=\"612\" height=\"500\" \/>\r\n\r\n<strong>Security Attacks<\/strong>\r\n\r\n&nbsp;\r\n\r\n<strong>Interruption<\/strong>: This is an attack on availability\r\n\r\n&nbsp;\r\n\r\n<strong>Interception<\/strong>: This is an attack on confidentiality\r\n\r\n&nbsp;\r\n\r\n<strong>Modification<\/strong>: This is an attack on integrity\r\n\r\n&nbsp;\r\n\r\n<strong>Fabrication<\/strong>: This is an attack on authenticity\r\n\r\n&nbsp;\r\n\r\n<strong>34.4 Passive and active attacks<\/strong>\r\n<ul>\r\n \t<li><strong>Passive attacks<\/strong><\/li>\r\n<\/ul>\r\n\u2013\u00a0 No modification of content or fabrication\r\n\r\n&nbsp;\r\n\r\n\u2013 Eavesdropping to learn contents or other information (transfer patterns, traffic flows etc.)\r\n<ul>\r\n \t<li><strong>Active attacks<\/strong><\/li>\r\n<\/ul>\r\n\u2013\u00a0 Modification of content and\/or participation in communication to\r\n<ul>\r\n \t<li>Impersonate legitimate parties<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Modify the content in transit<\/li>\r\n<\/ul>\r\nLaunch denial of service attacks\r\n\r\n&nbsp;\r\n\r\n<img class=\"size-full wp-image-423 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128.jpg\" alt=\"\" width=\"594\" height=\"243\" \/>\r\n\r\n<strong>Security Services<\/strong>\r\n\r\n&nbsp;\r\n<ul>\r\n \t<li>A security service is a service provided by the protocol layer of a communicating system (X.800)<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>5 Categories\r\n<ul>\r\n \t<li>\u00a0Authentication<\/li>\r\n \t<li>\u00a0Access Control<\/li>\r\n \t<li>\u00a0Data confidentiality<\/li>\r\n \t<li>\u00a0 Data Integrity<\/li>\r\n \t<li>\u00a0 Nonrepudiation (and Availability)<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Authentication (Peer entity authentication and Data origin authentication)\r\n<ul>\r\n \t<li>Ensuring the proper identification of entities and origins of data before communication<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Access control\r\n<ul>\r\n \t<li>Preventing unauthorized access to system resources<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Confidentiality\r\n<ul>\r\n \t<li>\u00a0 Preventing disclosure to unauthorized parties<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<div>\r\n\r\n<strong>34.5. Anatomy of Web Attacks<\/strong>\r\n\r\n&nbsp;\r\n\r\n1.\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>Attacker breaks into a legitimate website and posts malware<\/strong>\r\n\r\n&nbsp;\r\n<p style=\"text-align: justify\">Malware is no longer exclusive to malicious Web sites.Today it is common place for legitimate mainstream Web sites to act as parasitic hosts that serve up malware to their unsuspecting visitors.<\/p>\r\n&nbsp;\r\n\r\n2.\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>Attacking end-user machines.<\/strong>\r\n\r\n&nbsp;\r\n<p style=\"text-align: justify\">Malware on a Web site makes its way down on to a user\u2019s machine when that user visits the host Web site. \u201cDrive-by-download\u201d \u2013 happens automatically with no user interaction required. Additional techniques which do require some input from the user, but in practice are equally, if not more so, effective.<\/p>\r\n\r\n<\/div>\r\n<ol start=\"3\">\r\n \t<li><strong>Leveraging end user machines for malicious activity.<\/strong><\/li>\r\n<\/ol>\r\nThe most malicious activities begin once new malware has established a presence on a user\u2019s machine.\r\n\r\n&nbsp;\r\n\r\n<img class=\"size-full wp-image-424 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129.jpg\" alt=\"\" width=\"621\" height=\"275\" \/>\r\n\r\n<strong>How Do Websites Get Infected?<\/strong>\r\n<ul>\r\n \t<li>It used to be malware was only on illicit sites such as adult material and pirated software\r\n<ul>\r\n \t<li>Targeted users looking with short-term needs<\/li>\r\n<\/ul>\r\n<\/li>\r\n \t<li>Today legitimate and mainstream websites are targets\r\n<ul>\r\n \t<li>Complexity<span style=\"text-align: initial;font-size: 1em\"> of websites - <\/span>combination<span style=\"text-align: initial;font-size: 1em\"> of many different Web content sources, dynamically constructed using many different scripting technologies, plug-in components, and databases<\/span><\/li>\r\n<\/ul>\r\n<\/li>\r\n \t<li>Web advertisements\r\n<ul>\r\n \t<li>\u00a0Usually third<span style=\"text-align: initial;font-size: 1em\"> party<\/span><\/li>\r\n \t<li>\u00a0A webpage can have content coming from 10-20 different domains<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<div>\r\n\r\n<strong>How are legitimate Web sites compromised?<\/strong>\r\n\r\n&nbsp;\r\n\r\n1.\u00a0 SQL Injection Attacks\r\n<ul>\r\n \t<li>\u00a0Finding flaws in Web sites that have databases running behind them.<\/li>\r\n \t<li>A poorly validated input field in a Web input form may allow an attacker to insert additional SQL instructions which may then be passed directly into the backend database<\/li>\r\n \t<li>\u00a0Trojan.Asprox and IFRAME Tag<\/li>\r\n<\/ul>\r\n<\/div>\r\n<ol start=\"2\">\r\n \t<li>Malicious Advertisements<\/li>\r\n<\/ol>\r\n<ul>\r\n \t<li>Many Web sites today display advertisements hosted by third-party advertising sites<\/li>\r\n \t<li>\u00a0Volume of ads published automatically makes detection difficult<\/li>\r\n \t<li>\u00a0Random appearances further compounds the detection<\/li>\r\n<\/ul>\r\n<ol start=\"3\">\r\n \t<li>Search Engine Result Redirection<\/li>\r\n<\/ol>\r\n<ol start=\"4\">\r\n \t<li>Attacks on the backend virtual hosting companies<\/li>\r\n<\/ol>\r\n<ol start=\"5\">\r\n \t<li>Vulnerabilities in the Web server or forum hosting software<\/li>\r\n<\/ol>\r\n<ol start=\"6\">\r\n \t<li>Cross-site scripting (XSS) attacks<\/li>\r\n<\/ol>\r\nGETTING ONTO A USER\u2019S COMPUTER\r\n\r\n&nbsp;\r\n\r\n<img class=\"size-full wp-image-425 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130.jpg\" alt=\"\" width=\"570\" height=\"363\" \/>\r\n\r\n&nbsp;\r\n\r\n<strong>34.6. Automatic Attack Exposure<\/strong>\r\n<ul>\r\n \t<li>Techniques used to deliver malware from Websites to a users computer.<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Exposure\r\n<ul>\r\n \t<li>\u00a0Browsing a website<\/li>\r\n \t<li>\u00a0No user interaction is required<\/li>\r\n \t<li>\u00a0Executable content is automatically downloaded<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<strong>34.7. Typical Sequence of Events<\/strong>\r\n<ul>\r\n \t<li>Attacker compromises a good website<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Visit website<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Redirected to a bad website<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Corrupt code is downloaded<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Installed on the computer<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Corrupt software takes control<\/li>\r\n<\/ul>\r\n<strong>34.8. Attack Toolkits<\/strong>\r\n<ul>\r\n \t<li>Profiling the victim\r\n<ul>\r\n \t<li>Based on the Specific Operating System<\/li>\r\n \t<li>Browser Type<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Timing the attack\r\n<ul>\r\n \t<li>Attack only once every hour<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Geographical variances\r\n<ul>\r\n \t<li>\u00a0 Regional attacks on users<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Selective use of vulnerabilities\r\n<ul>\r\n \t<li>Based on the protection of the users<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Random attacks\r\n<ul>\r\n \t<li>\u00a0 No pattern, no reason, unpredictable<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<strong>\u00a0 \u00a0\u201cClick Jacking\u201d<\/strong>\r\n<ul>\r\n \t<li>The click of link executes the attacker\u2019s code<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Often leading the person to a malicious website.<\/li>\r\n<\/ul>\r\n<strong>Frequency of Attacks<\/strong>\r\n<ul>\r\n \t<li>Thousands of times every day<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>In 2008\r\n<ul>\r\n \t<li>18 million infection attempts<\/li>\r\n \t<li>\u00a0 Continues to increase<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<div>\r\n\r\n<strong>Social Engineering<\/strong>\r\n\r\n&nbsp;\r\n\r\n\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>People are tricked into performing actions they would not otherwise want to perform<\/strong>\r\n\r\n<\/div>\r\n<img class=\"size-full wp-image-426 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131.jpg\" alt=\"\" width=\"551\" height=\"390\" \/>\r\n\r\n<strong>34.9. Types of Social Engineering Attacks<\/strong>\r\n<ul>\r\n \t<li>Fake Codec<\/li>\r\n \t<li>Malicious Peer-to-Peer (P2P) Files<\/li>\r\n \t<li>Malicious Advertisements<\/li>\r\n \t<li>Fake Scanner Web Page<\/li>\r\n \t<li>Blog Spam<\/li>\r\n \t<li>Other Attack Vectors<\/li>\r\n<\/ul>\r\n<strong>\u00a0 \u00a0Fake Codec<\/strong>\r\n\r\n<img class=\"alignnone size-full wp-image-427\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-132.jpg\" alt=\"\" width=\"305\" height=\"186\" \/>\r\n<ul>\r\n \t<li>User is prompted to install a missing codec<\/li>\r\n \t<li>Codec is actually malware code\r\n<ul>\r\n \t<li>\u00a0Usually a trojan horse<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<div>\r\n\r\n<strong>Malicious Peer-to-Peer (P2P) Files<\/strong>\r\n\r\n&nbsp;\r\n<p style=\"text-align: justify\">Malware authors bind content into popular applications. Files named after celebrities, popular bands. Uploaded to popular P2P sites where they are downloaded by unsuspecting users which are openly available how-to materials on the internet. Details how to build and distribute malware Pay-Per-Install malware is available.<\/p>\r\n\r\n<\/div>\r\n<strong>Malicious Advertisements<\/strong>\r\n\r\n&nbsp;\r\n<p style=\"text-align: justify\">Malware authors advertise their fake codecs to unsuspecting users by using legitimate advertising channels and Sponsored links pointed to pages masked as legitimate downloads for official versions of software. Advertising providers have taken notice, but this is difficult to mitigate owing to volume<\/p>\r\n&nbsp;\r\n\r\n<strong>Fake Scanner Web Page<\/strong>\r\n<ul>\r\n \t<li>Create a web site or product that misrepresents the truth\r\n<ul>\r\n \t<li>\u00a0JavaScript pop-ups notifying of false need to install operating system updates<\/li>\r\n \t<li>Tools that claim to scan for and remove images, etc.<\/li>\r\n<\/ul>\r\n<\/li>\r\n<\/ul>\r\n<img class=\"size-full wp-image-428 alignleft\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133.jpg\" alt=\"\" width=\"356\" height=\"182\" \/>\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n\r\n&nbsp;\r\n<div>\r\n\r\n&nbsp;\r\n<p style=\"text-align: left\"><strong>Other Attack Vectors<\/strong><\/p>\r\n&nbsp;\r\n\r\n\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Spam\r\n\r\n&nbsp;\r\n\r\nEmails contain links directing people to drive by download, fake scanner\/codec, and malware sites\r\n\r\n&nbsp;\r\n\r\n\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Pirated software sites\r\n\r\n&nbsp;\r\n\r\nPirated versions of software are bundled with or comprised solely of trojan horses\r\n\r\n<\/div>\r\n<strong>What happens to your computer?<\/strong>\r\n<ul>\r\n \t<li>Leading Malware: Misleading Applications<\/li>\r\n<\/ul>\r\nAlso referred to as rogueware, scareware\r\n<ul>\r\n \t<li>Intentionally misrepresent security issues<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Social engineering to entice product purchase<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Malware activities:<\/li>\r\n<\/ul>\r\nPrevent users from navigating to legitimate antivirus vendors\r\n\r\n&nbsp;\r\n\r\nPrevents itself from being uninstalled\r\n\r\n&nbsp;\r\n<p style=\"text-align: justify\">\u00a0 \u00a0 Pops up warnings that the system is infected and that the software needs to be purchased in order to clean system<\/p>\r\n&nbsp;\r\n\r\n<strong>Other Malware Activities<\/strong>\r\n<ul>\r\n \t<li>Stealing personal information<\/li>\r\n<\/ul>\r\nKeyloggers\r\n<ul>\r\n \t<li>capture username, passwords for various sites<\/li>\r\n<\/ul>\r\nBanking, Shopping, Gaming and email accounts\r\n<ul>\r\n \t<li>Capture credit card numbers<\/li>\r\n<\/ul>\r\n<ul>\r\n \t<li>Botnet proliferation<\/li>\r\n<\/ul>\r\nRemote control to coordinate large scale attacks\r\n\r\n&nbsp;\r\n<div>\r\n\r\n<strong>Software Protection<\/strong>\r\n\r\n&nbsp;\r\n\r\n\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Update and Patch Software\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Get latest OS, Browser, Application patches\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Browswer Plug-in updates often forgotten\r\n\r\n&nbsp;\r\n\r\n\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Endpoint Protection Software\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Heuristic File Protection\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Intrusion prevention system \u2013 prevent drive by\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Behavioral monitoring\r\n\r\n&nbsp;\r\n\r\n\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Update Protection Software Subscription\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 70000 virus variants possible in a week\r\n\r\n<\/div>\r\n<strong>Behavioral Protection<\/strong>\r\n<ul>\r\n \t<li>Be Suspicious<\/li>\r\n<\/ul>\r\n\u2013\u00a0 Avoid things that seem too good to be true\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Use safe search functionality in browsers\r\n\r\n&nbsp;\r\n<ul>\r\n \t<li>Adopt Strong Password Policy<\/li>\r\n<\/ul>\r\n\u2013\u00a0 Use mixture of letters, number, and symbols\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Change passwords frequently\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Use unique passwords for different sites\r\n\r\n&nbsp;\r\n<ul>\r\n \t<li>Prevention is the key<\/li>\r\n<\/ul>\r\n\u2013\u00a0 Reduce or Eliminate the Vulnerability\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Adaptive experienced based techniques\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Be proactive in protecting systems\r\n\r\n&nbsp;\r\n\r\n\u2013\u00a0 Cheaper to prevent than the repair infected systems\r\n\r\n&nbsp;\r\n\r\n<strong>Summary<\/strong>\r\n<ul>\r\n \t<li>Understood concept of attacks in network security<\/li>\r\n \t<li>Discussed about various web attacks<\/li>\r\n \t<li>Learnt about Social Engineering and its vulnerabilities<\/li>\r\n \t<li>Illustrated the various protection mechanisms<\/li>\r\n<\/ul>\r\n<table>\r\n<tbody>\r\n<tr>\r\n<td><strong>you can view video on Security Attacks<\/strong><\/td>\r\n<td><a href=\"https:\/\/youtu.be\/cfZmlLyRECE\" target=\"_blank\" rel=\"noopener\"><img class=\"alignnone wp-image-120\" src=\"http:\/\/epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/2018\/11\/download.png\" alt=\"\" width=\"36\" height=\"36\" \/><\/a><\/td>\r\n<\/tr>\r\n<\/tbody>\r\n<\/table>\r\n<img class=\"aligncenter wp-image-429\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134.jpg\" alt=\"\" width=\"547\" height=\"440\" \/>","rendered":"<div><span style=\"float: right\"><a href=\"https:\/\/youtu.be\/cfZmlLyRECE\" target=\"_blank\" rel=\"noopener\"><img decoding=\"async\" src=\"http:\/\/epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/2018\/11\/download.png\" alt=\"epgp books\" width=\"75px\" height=\"75px;\" \/><\/a><br \/>\n<\/span><\/div>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Learning Objectives<\/strong><\/p>\n<ul>\n<li>To discuss the concept of attacks in network security<\/li>\n<\/ul>\n<ul>\n<li>To Know about various web attacks<\/li>\n<\/ul>\n<ul>\n<li>To learn about Social Engineering and its vulnerabilities<\/li>\n<\/ul>\n<ul>\n<li>To understand the protection mechanism<\/li>\n<\/ul>\n<p><strong>34.1. <\/strong><strong>Need for Security<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify\">Increased reliance on Information technology with or without the use of networks has made need for security a must. The use of IT has changed our lives drastically. We depend on E-mail, Internet banking, and several other governmental activities that use IT. Increased use of E-Commerce and the World Wide Web on the Internet as a vast repository of various kinds of information (immigration databases, flight tickets, stock markets etc.)<\/p>\n<p>&nbsp;<\/p>\n<p><strong style=\"text-align: initial;font-size: 1em\">34.2. Security Concerns<\/strong><\/p>\n<div>\n<div>\n<p style=\"text-align: justify\">Systems connected by networks are more prone to attacks and also suffer more as a result of the attacks than stand-alone systems (Reasons?). Concerns such as the following are common<\/p>\n<ul>\n<li style=\"text-align: justify\">How do I know the party I am talking on the network is <em>really<\/em> the one I want to talk?<\/li>\n<\/ul>\n<ul>\n<li>How can I be assured that no one else is listening and learning the data that I send over a network<\/li>\n<\/ul>\n<ul>\n<li>Can I ever stay relaxed that no hacker can enter my network and play havoc?<\/li>\n<\/ul>\n<\/div>\n<p><strong>34.3. Attacks, Services and Mechanisms<\/strong><\/p>\n<\/div>\n<ul>\n<li>Security Attack: Any action that compromises the security of information.<\/li>\n<li>Security Mechanism: A mechanism that is designed to detect, prevent, or recover from a security attack.<\/li>\n<li>Security Service: A service that enhances the security of data processing systems and information transfers. A security service makes use of one or more security mechanisms<\/li>\n<\/ul>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-422 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127.jpg\" alt=\"\" width=\"612\" height=\"500\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127.jpg 612w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127-300x245.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127-65x53.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127-225x184.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-127-350x286.jpg 350w\" sizes=\"auto, (max-width: 612px) 100vw, 612px\" \/><\/p>\n<p><strong>Security Attacks<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><strong>Interruption<\/strong>: This is an attack on availability<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Interception<\/strong>: This is an attack on confidentiality<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Modification<\/strong>: This is an attack on integrity<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Fabrication<\/strong>: This is an attack on authenticity<\/p>\n<p>&nbsp;<\/p>\n<p><strong>34.4 Passive and active attacks<\/strong><\/p>\n<ul>\n<li><strong>Passive attacks<\/strong><\/li>\n<\/ul>\n<p>\u2013\u00a0 No modification of content or fabrication<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013 Eavesdropping to learn contents or other information (transfer patterns, traffic flows etc.)<\/p>\n<ul>\n<li><strong>Active attacks<\/strong><\/li>\n<\/ul>\n<p>\u2013\u00a0 Modification of content and\/or participation in communication to<\/p>\n<ul>\n<li>Impersonate legitimate parties<\/li>\n<\/ul>\n<ul>\n<li>Modify the content in transit<\/li>\n<\/ul>\n<p>Launch denial of service attacks<\/p>\n<p>&nbsp;<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-423 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128.jpg\" alt=\"\" width=\"594\" height=\"243\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128.jpg 594w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128-300x123.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128-65x27.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128-225x92.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-128-350x143.jpg 350w\" sizes=\"auto, (max-width: 594px) 100vw, 594px\" \/><\/p>\n<p><strong>Security Services<\/strong><\/p>\n<p>&nbsp;<\/p>\n<ul>\n<li>A security service is a service provided by the protocol layer of a communicating system (X.800)<\/li>\n<\/ul>\n<ul>\n<li>5 Categories\n<ul>\n<li>\u00a0Authentication<\/li>\n<li>\u00a0Access Control<\/li>\n<li>\u00a0Data confidentiality<\/li>\n<li>\u00a0 Data Integrity<\/li>\n<li>\u00a0 Nonrepudiation (and Availability)<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Authentication (Peer entity authentication and Data origin authentication)\n<ul>\n<li>Ensuring the proper identification of entities and origins of data before communication<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Access control\n<ul>\n<li>Preventing unauthorized access to system resources<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Confidentiality\n<ul>\n<li>\u00a0 Preventing disclosure to unauthorized parties<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<div>\n<p><strong>34.5. Anatomy of Web Attacks<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>1.\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>Attacker breaks into a legitimate website and posts malware<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify\">Malware is no longer exclusive to malicious Web sites.Today it is common place for legitimate mainstream Web sites to act as parasitic hosts that serve up malware to their unsuspecting visitors.<\/p>\n<p>&nbsp;<\/p>\n<p>2.\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>Attacking end-user machines.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify\">Malware on a Web site makes its way down on to a user\u2019s machine when that user visits the host Web site. \u201cDrive-by-download\u201d \u2013 happens automatically with no user interaction required. Additional techniques which do require some input from the user, but in practice are equally, if not more so, effective.<\/p>\n<\/div>\n<ol start=\"3\">\n<li><strong>Leveraging end user machines for malicious activity.<\/strong><\/li>\n<\/ol>\n<p>The most malicious activities begin once new malware has established a presence on a user\u2019s machine.<\/p>\n<p>&nbsp;<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-424 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129.jpg\" alt=\"\" width=\"621\" height=\"275\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129.jpg 621w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129-300x133.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129-65x29.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129-225x100.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-129-350x155.jpg 350w\" sizes=\"auto, (max-width: 621px) 100vw, 621px\" \/><\/p>\n<p><strong>How Do Websites Get Infected?<\/strong><\/p>\n<ul>\n<li>It used to be malware was only on illicit sites such as adult material and pirated software\n<ul>\n<li>Targeted users looking with short-term needs<\/li>\n<\/ul>\n<\/li>\n<li>Today legitimate and mainstream websites are targets\n<ul>\n<li>Complexity<span style=\"text-align: initial;font-size: 1em\"> of websites &#8211; <\/span>combination<span style=\"text-align: initial;font-size: 1em\"> of many different Web content sources, dynamically constructed using many different scripting technologies, plug-in components, and databases<\/span><\/li>\n<\/ul>\n<\/li>\n<li>Web advertisements\n<ul>\n<li>\u00a0Usually third<span style=\"text-align: initial;font-size: 1em\"> party<\/span><\/li>\n<li>\u00a0A webpage can have content coming from 10-20 different domains<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<div>\n<p><strong>How are legitimate Web sites compromised?<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>1.\u00a0 SQL Injection Attacks<\/p>\n<ul>\n<li>\u00a0Finding flaws in Web sites that have databases running behind them.<\/li>\n<li>A poorly validated input field in a Web input form may allow an attacker to insert additional SQL instructions which may then be passed directly into the backend database<\/li>\n<li>\u00a0Trojan.Asprox and IFRAME Tag<\/li>\n<\/ul>\n<\/div>\n<ol start=\"2\">\n<li>Malicious Advertisements<\/li>\n<\/ol>\n<ul>\n<li>Many Web sites today display advertisements hosted by third-party advertising sites<\/li>\n<li>\u00a0Volume of ads published automatically makes detection difficult<\/li>\n<li>\u00a0Random appearances further compounds the detection<\/li>\n<\/ul>\n<ol start=\"3\">\n<li>Search Engine Result Redirection<\/li>\n<\/ol>\n<ol start=\"4\">\n<li>Attacks on the backend virtual hosting companies<\/li>\n<\/ol>\n<ol start=\"5\">\n<li>Vulnerabilities in the Web server or forum hosting software<\/li>\n<\/ol>\n<ol start=\"6\">\n<li>Cross-site scripting (XSS) attacks<\/li>\n<\/ol>\n<p>GETTING ONTO A USER\u2019S COMPUTER<\/p>\n<p>&nbsp;<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-425 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130.jpg\" alt=\"\" width=\"570\" height=\"363\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130.jpg 570w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130-300x191.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130-65x41.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130-225x143.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-130-350x223.jpg 350w\" sizes=\"auto, (max-width: 570px) 100vw, 570px\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><strong>34.6. Automatic Attack Exposure<\/strong><\/p>\n<ul>\n<li>Techniques used to deliver malware from Websites to a users computer.<\/li>\n<\/ul>\n<ul>\n<li>Exposure\n<ul>\n<li>\u00a0Browsing a website<\/li>\n<li>\u00a0No user interaction is required<\/li>\n<li>\u00a0Executable content is automatically downloaded<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<p><strong>34.7. Typical Sequence of Events<\/strong><\/p>\n<ul>\n<li>Attacker compromises a good website<\/li>\n<\/ul>\n<ul>\n<li>Visit website<\/li>\n<\/ul>\n<ul>\n<li>Redirected to a bad website<\/li>\n<\/ul>\n<ul>\n<li>Corrupt code is downloaded<\/li>\n<\/ul>\n<ul>\n<li>Installed on the computer<\/li>\n<\/ul>\n<ul>\n<li>Corrupt software takes control<\/li>\n<\/ul>\n<p><strong>34.8. Attack Toolkits<\/strong><\/p>\n<ul>\n<li>Profiling the victim\n<ul>\n<li>Based on the Specific Operating System<\/li>\n<li>Browser Type<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Timing the attack\n<ul>\n<li>Attack only once every hour<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Geographical variances\n<ul>\n<li>\u00a0 Regional attacks on users<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Selective use of vulnerabilities\n<ul>\n<li>Based on the protection of the users<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li>Random attacks\n<ul>\n<li>\u00a0 No pattern, no reason, unpredictable<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<p><strong>\u00a0 \u00a0\u201cClick Jacking\u201d<\/strong><\/p>\n<ul>\n<li>The click of link executes the attacker\u2019s code<\/li>\n<\/ul>\n<ul>\n<li>Often leading the person to a malicious website.<\/li>\n<\/ul>\n<p><strong>Frequency of Attacks<\/strong><\/p>\n<ul>\n<li>Thousands of times every day<\/li>\n<\/ul>\n<ul>\n<li>In 2008\n<ul>\n<li>18 million infection attempts<\/li>\n<li>\u00a0 Continues to increase<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<div>\n<p><strong>Social Engineering<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>People are tricked into performing actions they would not otherwise want to perform<\/strong><\/p>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-426 aligncenter\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131.jpg\" alt=\"\" width=\"551\" height=\"390\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131.jpg 551w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131-300x212.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131-65x46.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131-225x159.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-131-350x248.jpg 350w\" sizes=\"auto, (max-width: 551px) 100vw, 551px\" \/><\/p>\n<p><strong>34.9. Types of Social Engineering Attacks<\/strong><\/p>\n<ul>\n<li>Fake Codec<\/li>\n<li>Malicious Peer-to-Peer (P2P) Files<\/li>\n<li>Malicious Advertisements<\/li>\n<li>Fake Scanner Web Page<\/li>\n<li>Blog Spam<\/li>\n<li>Other Attack Vectors<\/li>\n<\/ul>\n<p><strong>\u00a0 \u00a0Fake Codec<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-427\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-132.jpg\" alt=\"\" width=\"305\" height=\"186\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-132.jpg 305w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-132-300x183.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-132-65x40.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-132-225x137.jpg 225w\" sizes=\"auto, (max-width: 305px) 100vw, 305px\" \/><\/p>\n<ul>\n<li>User is prompted to install a missing codec<\/li>\n<li>Codec is actually malware code\n<ul>\n<li>\u00a0Usually a trojan horse<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<div>\n<p><strong>Malicious Peer-to-Peer (P2P) Files<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify\">Malware authors bind content into popular applications. Files named after celebrities, popular bands. Uploaded to popular P2P sites where they are downloaded by unsuspecting users which are openly available how-to materials on the internet. Details how to build and distribute malware Pay-Per-Install malware is available.<\/p>\n<\/div>\n<p><strong>Malicious Advertisements<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify\">Malware authors advertise their fake codecs to unsuspecting users by using legitimate advertising channels and Sponsored links pointed to pages masked as legitimate downloads for official versions of software. Advertising providers have taken notice, but this is difficult to mitigate owing to volume<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Fake Scanner Web Page<\/strong><\/p>\n<ul>\n<li>Create a web site or product that misrepresents the truth\n<ul>\n<li>\u00a0JavaScript pop-ups notifying of false need to install operating system updates<\/li>\n<li>Tools that claim to scan for and remove images, etc.<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-428 alignleft\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133.jpg\" alt=\"\" width=\"356\" height=\"182\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133.jpg 356w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133-300x153.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133-65x33.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133-225x115.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-133-350x179.jpg 350w\" sizes=\"auto, (max-width: 356px) 100vw, 356px\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<div>\n<p>&nbsp;<\/p>\n<p style=\"text-align: left\"><strong>Other Attack Vectors<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Spam<\/p>\n<p>&nbsp;<\/p>\n<p>Emails contain links directing people to drive by download, fake scanner\/codec, and malware sites<\/p>\n<p>&nbsp;<\/p>\n<p>\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Pirated software sites<\/p>\n<p>&nbsp;<\/p>\n<p>Pirated versions of software are bundled with or comprised solely of trojan horses<\/p>\n<\/div>\n<p><strong>What happens to your computer?<\/strong><\/p>\n<ul>\n<li>Leading Malware: Misleading Applications<\/li>\n<\/ul>\n<p>Also referred to as rogueware, scareware<\/p>\n<ul>\n<li>Intentionally misrepresent security issues<\/li>\n<\/ul>\n<ul>\n<li>Social engineering to entice product purchase<\/li>\n<\/ul>\n<ul>\n<li>Malware activities:<\/li>\n<\/ul>\n<p>Prevent users from navigating to legitimate antivirus vendors<\/p>\n<p>&nbsp;<\/p>\n<p>Prevents itself from being uninstalled<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify\">\u00a0 \u00a0 Pops up warnings that the system is infected and that the software needs to be purchased in order to clean system<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Other Malware Activities<\/strong><\/p>\n<ul>\n<li>Stealing personal information<\/li>\n<\/ul>\n<p>Keyloggers<\/p>\n<ul>\n<li>capture username, passwords for various sites<\/li>\n<\/ul>\n<p>Banking, Shopping, Gaming and email accounts<\/p>\n<ul>\n<li>Capture credit card numbers<\/li>\n<\/ul>\n<ul>\n<li>Botnet proliferation<\/li>\n<\/ul>\n<p>Remote control to coordinate large scale attacks<\/p>\n<p>&nbsp;<\/p>\n<div>\n<p><strong>Software Protection<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Update and Patch Software<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Get latest OS, Browser, Application patches<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Browswer Plug-in updates often forgotten<\/p>\n<p>&nbsp;<\/p>\n<p>\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Endpoint Protection Software<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Heuristic File Protection<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Intrusion prevention system \u2013 prevent drive by<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Behavioral monitoring<\/p>\n<p>&nbsp;<\/p>\n<p>\u2022\u00a0\u00a0\u00a0\u00a0\u00a0 Update Protection Software Subscription<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 70000 virus variants possible in a week<\/p>\n<\/div>\n<p><strong>Behavioral Protection<\/strong><\/p>\n<ul>\n<li>Be Suspicious<\/li>\n<\/ul>\n<p>\u2013\u00a0 Avoid things that seem too good to be true<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Use safe search functionality in browsers<\/p>\n<p>&nbsp;<\/p>\n<ul>\n<li>Adopt Strong Password Policy<\/li>\n<\/ul>\n<p>\u2013\u00a0 Use mixture of letters, number, and symbols<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Change passwords frequently<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Use unique passwords for different sites<\/p>\n<p>&nbsp;<\/p>\n<ul>\n<li>Prevention is the key<\/li>\n<\/ul>\n<p>\u2013\u00a0 Reduce or Eliminate the Vulnerability<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Adaptive experienced based techniques<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Be proactive in protecting systems<\/p>\n<p>&nbsp;<\/p>\n<p>\u2013\u00a0 Cheaper to prevent than the repair infected systems<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Summary<\/strong><\/p>\n<ul>\n<li>Understood concept of attacks in network security<\/li>\n<li>Discussed about various web attacks<\/li>\n<li>Learnt about Social Engineering and its vulnerabilities<\/li>\n<li>Illustrated the various protection mechanisms<\/li>\n<\/ul>\n<table>\n<tbody>\n<tr>\n<td><strong>you can view video on Security Attacks<\/strong><\/td>\n<td><a href=\"https:\/\/youtu.be\/cfZmlLyRECE\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-120\" src=\"http:\/\/epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/2018\/11\/download.png\" alt=\"\" width=\"36\" height=\"36\" \/><\/a><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-429\" src=\"http:\/\/csp11.epgpbooks.inflibnet.ac.in\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134.jpg\" alt=\"\" width=\"547\" height=\"440\" srcset=\"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134.jpg 513w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134-300x242.jpg 300w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134-65x52.jpg 65w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134-225x181.jpg 225w, https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-content\/uploads\/sites\/55\/2018\/07\/Capture-134-350x282.jpg 350w\" sizes=\"auto, (max-width: 547px) 100vw, 547px\" \/><\/p>\n","protected":false},"author":3,"menu_order":33,"template":"","meta":{"_acf_changed":false,"pb_show_title":"on","pb_short_title":"","pb_subtitle":"","pb_authors":[],"pb_section_license":""},"chapter-type":[],"contributor":[],"license":[],"class_list":["post-421","chapter","type-chapter","status-publish","hentry"],"part":3,"_links":{"self":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/chapters\/421","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/chapters"}],"about":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/wp\/v2\/types\/chapter"}],"author":[{"embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/wp\/v2\/users\/3"}],"version-history":[{"count":7,"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/chapters\/421\/revisions"}],"predecessor-version":[{"id":619,"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/chapters\/421\/revisions\/619"}],"part":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/parts\/3"}],"metadata":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/chapters\/421\/metadata\/"}],"wp:attachment":[{"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/wp\/v2\/media?parent=421"}],"wp:term":[{"taxonomy":"chapter-type","embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/pressbooks\/v2\/chapter-type?post=421"},{"taxonomy":"contributor","embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/wp\/v2\/contributor?post=421"},{"taxonomy":"license","embeddable":true,"href":"https:\/\/ebooks.inflibnet.ac.in\/csp11\/wp-json\/wp\/v2\/license?post=421"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}