Computer Science - 9210 OxfordAQA

Cyber Security Threats

Übersicht

The most effective way into a secure system has never been to defeat its encryption. It is to telephone somebody who works there, sound convincing, and ask. That is not a joke about human weakness; it is a description of how a large proportion of real breaches happen, and it is why the specification begins its list of threats with social engineering rather than with anything technical.

This lesson covers the six threats the specification names, then goes into detail on the two it expands: the four forms of social engineering, blagging, phishing, pharming and shouldering, and the four forms of malware, virus, trojan, spyware and adware. You will learn what each one actually is, how they differ from the ones they are confused with, and how organisations find their own weaknesses before somebody else does, through penetration testing.

Ziele

  1. Understand and be able to explain the following cyber security threats:
  2. social engineering techniques
  3. malicious code
  4. weak and default passwords
  5. misconfigured access rights
  6. removable media
  7. unpatched and/or outdated software.
  8. Explain what penetration testing is and what it is used for.
  9. Define the term social engineering.
  10. Describe what social engineering is and how it can be protected against.
  11. Explain the following forms of social engineering:
  12. blagging (pretexting)
  13. phishing
  14. pharming
  15. shouldering (or shoulder surfing).
  16. Define the term ‘malware’.
  17. Describe what malware is and how it can be protected against. Describe the following forms of malware:
  18. computer virus
  19. trojan
  20. spyware
  21. adware.

Mindmap

Dieses Thema ist als Karte dargestellt, damit die Zusammenhange sichtbar werden.

Mindmap in der App offnen

Lektionshinweis

The specification names six cyber security threats and expects you to be able to explain each. They are not variations on one idea: two of them are about people, one is about hostile software, and three are about a system being left in a state that invites trouble.

Vollstaendige Lernnotiz in der Green Bridge App

Holen Sie sich die Green Bridge CBT App auf Handy oder Computer fuer die komplette IGCSE-Bibliothek: fruehere Pruefungen, Bewertungsschemata, Mindmaps, Lernkarten und Audiolektionen.

Vollständige Lernnotizen mit Diagrammen
KI-gestützter Lernassistent
Pruefungssimulationen auf Zeit, sofort nach Abgabe bewertet
Verfügbar für Android, Windows, macOS und Linux iOS-App demnachst verfugbar

Unterrichtsbewertung

Herzlichen Glückwunsch zum Abschluss der Lektion über Cyber Security Threats. Jetzt, da Sie die wichtigsten Konzepte und Ideen erkundet haben,

Sie werden auf eine Mischung verschiedener Fragetypen stoßen, darunter Multiple-Choice-Fragen, Kurzantwortfragen und Aufsatzfragen. Jede Frage ist sorgfältig ausgearbeitet, um verschiedene Aspekte Ihres Wissens und Ihrer kritischen Denkfähigkeiten zu bewerten.

Nutzen Sie diesen Bewertungsteil als Gelegenheit, Ihr Verständnis des Themas zu festigen und Bereiche zu identifizieren, in denen Sie möglicherweise zusätzlichen Lernbedarf haben.

  1. What is social engineering? A. Designing a computer network for a group of people B. The art of manipulating people so they give up confidential information C. Software that displays unwanted advertising D. A method of encrypting data before sending it Answer: B
  2. A user types their bank's correct web address and is taken to a convincing fake site. Which threat is this? A. Phishing B. Blagging C. Pharming D. Shouldering Answer: C
  3. Which form of malware is installed willingly by the user because it is disguised as something desirable? A. Computer virus B. Trojan C. Spyware D. Adware Answer: B
  4. Which of these is NOT one of the six threats named in the specification? A. Removable media B. Misconfigured access rights C. Unpatched software D. Power failure Answer: D
  5. A white-box penetration test is designed to simulate which kind of attacker? A. A malicious insider B. An external hacker with no knowledge of the system C. A piece of automated malware D. A careless employee Answer: A

Bearbeiten Sie diese Fragen in der App

Bearbeiten Sie diese Fragen in der App

Übungsklausuren üben

Möchten Sie Übungsklausuren zu Cyber Security Threats üben? Laden Sie die Green Bridge CBT App herunter, um Übungsklausuren und vollständige Prüfungssimulationen zu diesem Thema zu erhalten.

Lade die App im Google Playstore herunter.

Alles, was du brauchst, um in JAMB, WAEC & NECO zu glänzen.

Green Bridge CBT Mobile App
Personalisierter KI-Lern-Chat-Assistent
Über 200.000 Prüfungsfragen für IGCSE, JAMB, WAEC und NECO.
Über 1200 Unterrichtsnotizen
Offline-Unterstützung - Lernen jederzeit und überall
Fahrplan der Grünen Brücke
Literaturzusammenfassungen & Potenzielle Fragen
Verfolgen Sie Ihre Leistung und Ihren Fortschritt
Detaillierte Erklärungen für umfassendes Lernen