Computer Science - 9210 OxfordAQA

Cyber Security Threats

Visão Geral

The most effective way into a secure system has never been to defeat its encryption. It is to telephone somebody who works there, sound convincing, and ask. That is not a joke about human weakness; it is a description of how a large proportion of real breaches happen, and it is why the specification begins its list of threats with social engineering rather than with anything technical.

This lesson covers the six threats the specification names, then goes into detail on the two it expands: the four forms of social engineering, blagging, phishing, pharming and shouldering, and the four forms of malware, virus, trojan, spyware and adware. You will learn what each one actually is, how they differ from the ones they are confused with, and how organisations find their own weaknesses before somebody else does, through penetration testing.

Objetivos

  1. Understand and be able to explain the following cyber security threats:
  2. social engineering techniques
  3. malicious code
  4. weak and default passwords
  5. misconfigured access rights
  6. removable media
  7. unpatched and/or outdated software.
  8. Explain what penetration testing is and what it is used for.
  9. Define the term social engineering.
  10. Describe what social engineering is and how it can be protected against.
  11. Explain the following forms of social engineering:
  12. blagging (pretexting)
  13. phishing
  14. pharming
  15. shouldering (or shoulder surfing).
  16. Define the term ‘malware’.
  17. Describe what malware is and how it can be protected against. Describe the following forms of malware:
  18. computer virus
  19. trojan
  20. spyware
  21. adware.

Mapa mental

Este tema esta mapeado para mostrar como as ideias se ligam.

Abra o mapa mental na aplicacao

Nota de Aula

The specification names six cyber security threats and expects you to be able to explain each. They are not variations on one idea: two of them are about people, one is about hostile software, and three are about a system being left in a state that invites trouble.

Apontamento completo disponivel na aplicacao Green Bridge

Instale a aplicacao Green Bridge CBT no telemovel ou computador para aceder a biblioteca IGCSE completa: exames anteriores, criterios de correcao, mapas mentais, cartoes de estudo e licoes em audio.

Notas de aula completas com diagramas
Assistente de aprendizagem com IA
Simulacros cronometrados corrigidos assim que termina
Disponível para Android, Windows, macOS e Linux Aplicacao iOS em breve

Avaliação da Lição

Parabéns por concluir a lição em Cyber Security Threats. Agora que você explorou o conceitos e ideias-chave, é hora de colocar seu conhecimento à prova. Esta seção oferece uma variedade de práticas perguntas destinadas a reforçar sua compreensão e ajudá-lo a avaliar sua compreensão do material.

Irá encontrar uma mistura de tipos de perguntas, incluindo perguntas de escolha múltipla, perguntas de resposta curta e perguntas de redação. Cada pergunta é cuidadosamente elaborada para avaliar diferentes aspetos do seu conhecimento e competências de pensamento crítico.

Use esta secção de avaliação como uma oportunidade para reforçar a tua compreensão do tema e identificar quaisquer áreas onde possas precisar de estudo adicional. Não te deixes desencorajar pelos desafios que encontrares; em vez disso, vê-os como oportunidades de crescimento e melhoria.

  1. What is social engineering? A. Designing a computer network for a group of people B. The art of manipulating people so they give up confidential information C. Software that displays unwanted advertising D. A method of encrypting data before sending it Answer: B
  2. A user types their bank's correct web address and is taken to a convincing fake site. Which threat is this? A. Phishing B. Blagging C. Pharming D. Shouldering Answer: C
  3. Which form of malware is installed willingly by the user because it is disguised as something desirable? A. Computer virus B. Trojan C. Spyware D. Adware Answer: B
  4. Which of these is NOT one of the six threats named in the specification? A. Removable media B. Misconfigured access rights C. Unpatched software D. Power failure Answer: D
  5. A white-box penetration test is designed to simulate which kind of attacker? A. A malicious insider B. An external hacker with no knowledge of the system C. A piece of automated malware D. A careless employee Answer: A

Resolva estas questoes na aplicacao

Resolva estas questoes na aplicacao

Pratique Questões Simuladas

Quer praticar questões simuladas sobre Cyber Security Threats? Descarregue a aplicação Green Bridge CBT para aceder a questões simuladas e avaliações completas sobre este tópico.

Descarregar a aplicação na Google Play Store

Tudo o que precisas para te destacares no JAMB, WAEC e NECO.

Green Bridge CBT Mobile App
Assistente de Chat de Aprendizagem Personalizada com IA
Mais de 200.000 questões de exame do IGCSE, JAMB, WAEC e NECO
Mais de 1200 Notas de Aula
Suporte Offline - Aprenda a Qualquer Hora, em Qualquer Lugar
Horário da Ponte Verde
Resumos de Literatura & Possíveis Perguntas
Acompanhe o Seu Desempenho e Progresso
Explicações Detalhadas para uma Aprendizagem Abrangente