Font size
WorksheetsCAMBRIDGE - A Level - IT - Network Security
Total questions: 15
Worksheet time: 8mins
Network Security - Issues - What is Malware?
Malware is short for Maladjusted Hardware.
Malware is the alternative to software.
Malware is a a play on words meaning Microsoft I aware.
Malware is software that is designed to cause damage to a computer system.
Network Security - Issues - What is hacking?
Hacking is the process of installing malicious software on a computer system.
Hacking is the response to having a terribly sore throat.
Hacking is unauthorised access to a computer or computer network.
Hacking is a positive test for a networked computer system.
Network Security - Issues - What is Spyware?
Spyware is malicious software that is installed on a computer or computer network to record what a user is doing.
Spyware is a colloquial term for the software used to install 'S'uper 'Py'thon soft'ware'.
Spyware is used to see what a user is doing using their cameras.
Spyware is a term for technical officers of the FBI.
Keyloggers record key presses through which they gain user information.
Network Security - Issues - How does a virus work?
Email viruses arrive attached to email and are triggered by opening the documents.
Viruses are designed to cause damage to data or cause problems on a computer system. Worms spread automatically through connected computers therefore are a real concern for networks.
Trojan Horses are disguised as legitimate software, if run, causing damage to the computer system.
Parasitic viruses attach themselves to other files on a computer and are triggered by a computer event; certain date or time for example.
Macro viruses attach themselves within macro enabled software.
Network Security - Issues - What is a Denial of Service Attack?
Distributed denial of service attacks (DDoS) are an upgrade to Dos attacks and utilise many network connections to disable a single computer.
A DoS attack is designed to send more requests to a server than it can cope with, easy to launch and difficult to track.
A Denial of Service attack is an example of the 'Just Say No' protocol.
Most websites only require 50 requests per second to prevent them form working properly. To exceed 50RPS is the target rate of a DoS attack.
Network Security - Security Methods - How can access rights be used to secure a computer network?
Giving verbal authority to a user to use certain areas of a network, morally users are obliged to only access areas that they have rights to.
Access rights are created as soon as you purchase a new computer. They are the same on all networks.
By implementing access rights, network access and access to applications can be restricted to certain users. This is done by using a users login details to allocate them access rights.
Access rights are chosen by the user and no other user can use them.
Network Security - Security methods - Other than passwords, how else can access rights be restricted to a computer network?
Biometrics could be used to identify a user.
Using a doorbell will prevent intruders from entering unnoticed.
Accounts can be suspended on certain days or for certain times.
Physical swipecards could be used.
Two factor authentication could be used - This may require not only a password but a second way of authenticating a users identification; mobile number, authentication app for example.
Network Security - Security methods - Identify some common biometric methods of identification.
Retina recognition
Facial recognition
Voice recognition
Fingerprints
Ear Wax
Network Security - Security methods - Firewalls; What are they and how do they work?
A fire wall controls traffic into and out of a network. It is effectively a barrier between the network and external traffic.
A firewall can often include a proxy server. This makes requests to the internet on behalf of the network computers.
A firewall makes it impossible to infiltrate a computer network.
Firewalls use an access control list (ACL) that uses a technique called packet filtering. An ACL controls which packets can travel through the firewall.
Network Security - Backups - Why are they required?
A backup prevents hacking and stops unauthorised access.
Backups are not required.
A backup is a copy of the original data. Should anything go wrong, the data can be reinstated to a historic save point.
A backup is the sole means of protecting data from hackers.
Network Security - Encryption - Why is it required?
Encryption is not required. Users can be trusted to use the network appropriately.
Encryption provides a backup of the data should it be compromised or lost.
Encryption is the process of scrambling data so that it is unreadable without authorisation. It can prevent data being read but it cannot stop data being destroyed.
Encryption ensures total protection of data.
Network Security - What is Malware security?
Malware security is in two main forms: to monitor and stop malicious software from being installed on a system and; to check for Malware on a system and alert a user to it's presence.
Malware security is the element of safety when you are shopping. It protects you from unwanted attention.
Malware security ensures that legal applications run without issues across any network.
Malware security is another name for software that prevents malicious attacks on a network, adware, spyware and virus attack for example.
Network Security - Identify physical security methods to protect a network.
Server rooms should be protected from fires or floods.
Security guards may be employed to protect a building or a specific room.
Power supplies should be protected from power surges. UPS (Uninterruptible power supply) units should be provided on servers. These are basically battery packs that provide power in the time of a power cut.
Physical locks can be placed in doors and on computer hardware: these can include swipe cards, keypads, biometric locks.
Network Security - Data Protection Act Principles - Identify some of the Data Protection Act 1998 key areas.
Data must be used fairly and lawfully and only for limited, stated purposes. It must be used in a way that is relevant and not excessive.
Data must be kept safe and secure and handled according to people's data protection rights. It must not be transferred outside of the European Economic Area.
Data must be accurate and not kept for longer than is absolutely necessary.
All countries must employ a data protection policy prior to data being released to the network.
Network Security - The Data Protection Act 1988 - Why do we need law to protect data?
Data subjects have the right to expect data to be kept up to date, accurate and relevant. Data kept should only allow for the intended use and should be protected from third parties.
Failure to protect a user's data could result in a company being sued with reference to the terms of the Data protection Act.
We do not need a data protection act. In some countries, data is freely available and it the responsibility of the individual to protect their data. A system with rules or protocols is a fair system.
People have a right to know what information is being stored and how it will be used. The data protection act gives legal statute by which companies must comply.
