Tuesday, 12 March 2019

Essay.

Cyber security is the action of protecting any digital object such as computers, smartphones, tablets, networks, software packages,......, from digital attacks in other words known as cyber attacks.
The best cyber security is attained when the 3 main pillars, which are people, process and technology, are strong. For example, people  should be trained and be aware of how to surf safely and how to avoid dubious sites... . Moreover, process are also vital in cyber security, such as the effectiveness of organizations to counter cyber attacks and how to adapt to new kinds of attacks, how they research
and learn from their mistakes, and more importantly their counter plans. Finally, what kind of technology the organization is using  to protect itself against cyber attacks and how are they using it.

On the other hand we have the complete opposite of cyber security, which are  cyber attacks. Cyber attacks are malicious attacks done mainly through computer to steal, exploit, destroy..., other platforms such as other computers, networks, devices, bank credentials.... . Cyber attacks are very threatening and damaging to society, banks, organizations, governments,....... .For example, according to FireEye.com(2015), the global expenditure on damage caused by cyber attacks was 71 billions dollars on 2014 and was estimated to reach 101 billion in 2018. Moreover, Equifox(2017) states that 147.9 million people were affected by a breach in the system. Cyber attacks are also very dangerous to average users as they have a high chance of being a victim of cyber bullying, which eventually might lead to them to commit suicide.

Hackers use numerous of hacking methods and threats. The list below briefly lists them and explains them briefly.
1. Phishing: Phishing is a type of cyber attack in which the attacker conducts himself as a legitimate person or as a person working from a firm and then contacts the victim commonly through phone, e-mail or text message, to get his credentials.

2. Key logging: key logging is basically the hacker tracking every key struck by the user. This makes it easier for the hacker to get passwords, usernames and other credentials.

3. Cookies theft: cookies theft is done by hidden sites, who steal data from unencrypted surfing and then that data is used to impersonate the victim and exploit the situation.

4.  Password cracking: Password cracking is a broad topic and includes various ways in how a hacker cracks the user's password, including guessing, dictionary attacks and even sometimes type of phishing.

5. Ransomware: Ransomware is when the hacker gets a control of someone's device and then blocks the access of the user to their own data, and then user has to pay ransom, which is mainly through online payments, to restore his own access.

6. Social engineering: Social engineering is malicious activities which are mainly through human interaction in which the attacker tricks the victim psychologically to gain access to their data.

7. Outdated software: Using outdated software packages is dangerous to the user or organizations. Because outdated software packages might be very vulnerable and weak, and these vulnerabilities might not exist in updated software packages.

8. Botnet attack: Botnet attack is a malicious attack that uses a web of connected computers which all combine to attack a certain network or computer.


What can be concluded from these hacks and other cyber attacks is that almost all attacks are due to the ignorance of the user on cyber security and how to surf safely on the web or the organization's fault because of their internal mistakes or faults and vulnerabilities in their software packages and applications. Many organizations don't take sufficient measures to protect their data after being hacked. According to Clark(2017), only 28% of  firms, which are victims to cyber attacks , take enough measures such as rebuilding the software again to ensure that there aren't any weaknesses in the software.

To be protected from cyber attacks and hackers is the responsibility of both the user and the organizations or the providers. For example, firms  are responsible for providing  the option of TWO-STEP VERIFICATION to ensure more security, and users are responsible to use it to.
Organizations have to update their software packages against vulnerabilities and users have to patch their devices so they receive the updated versions, hence, being more protected than before. Users should not share too much personal information on the web and also, firms should make sure they keep user's information safe and away from hackers.
Users should also use VPNs and should make sure to encrypt their information. Moreover, easy ways are to use vpns, anti-malware/virus software, avoid clicking dubious sites and avoid connecting to dubious sites. 


To conclude, although hackers are becoming smarter everyday, the unity of the organizations and the users will eventually lead to their disappearance. People should have common sense and a bit of knowledge on computers and how they work before they are allowed to own a PC. 











Dictionary 


case study (Why I chose ?)

I chose shahmeer amir because he mostly taught himself about coding and he has helped more than 400 firms in terms of finding vulnerabilities and bugs in their systems and platforms. His actions relate directly to my study because cyber security is all about finding mistakes in systems and fixing them so they don't get exploited.  Shahmeer has posted many writings on how he hacked the firms and how he found the bugs, which can benefit both the customers and firms in terms of security.
Shahmeer amir was the main inspiration to my research because he is a great pride for Pakistan and especially that he is in a field that I am interested in. My research includes most of the info given by shahmeer on his sites, such as types of cyber threats and hacking and how to protect oneself from it.

Case study (Personality).

So i chose Shahmeer amir for my case study.
Shahmeer amir is a 21 year old from Pakistan who almost learned coding by himself and got in to the field of cyber security. He is currently doing masters in cyber security and owns his own company in Pakistan called Veiliux which is a cyber security consulting company located Dubai. He was also invited to the most famous hacking conference called Def Con. He is ranked in the top 3 bug hunters in the world and is in the list of top 11 hackers in the world.

Monday, 4 March 2019

survey responses.

https://docs.google.com/forms/d/10q8SMV79UaSMj11apL2lda6LbltqJdf24xIbmBsq_W0/edit#responses












Survey.



https://docs.google.com/forms/d/10q8SMV79UaSMj11apL2lda6LbltqJdf24xIbmBsq_W0/edit








Sunday, 10 February 2019

Essay draft.

Cyber security is the action of protecting any digital object such as computers, smartphones, tablets, networks, software packages,......, from digital attacks in other words known as cyber attacks.
The best cyber security is attained when the 3 main pillars, which are people, process and technology, are strong. For example, people  should be trained and be aware of how to surf safely and how to avoid dubious sites... . Moreover, process are also vital in cyber security, such as the effectiveness of organizations to counter cyber attacks and how to adapt to new kinds of attacks, how they research
and learn from their mistakes, and more importantly their counter plans. Finally, what kind of technology the organization is using  to protect itself against cyber attacks and how are they using it.

On the other hand we have the complete opposite of cyber security, which are  cyber attacks. Cyber attacks are malicious attacks done mainly through computer to steal, exploit, destroy..., other platforms such as other computers, networks, devices, bank credentials.... . Cyber attacks are very threatening and damaging to society, banks, organizations, governments,....... .For example, according to FireEye.com(2015), the global expenditure on damage caused by cyber attacks was 71 billions dollars on 2014 and was estimated to reach 101 billion in 2018. Moreover, Equifox(2017) states that 147.9 million people were affected by a breach in the system. Cyber attacks are also very dangerous to average users as they have a high chance of being a victim of cyber bullying, which eventually might lead to them to commit suicide.

Hackers use numerous of hacking methods and threats. The list below briefly lists them and explains them briefly.
1. Phishing: Phishing is a type of cyber attack in which the attacker conducts himself as a legitimate person or as a person working from a firm and then contacts the victim commonly through phone, e-mail or text message, to get his credentials.

2. Key logging: key logging is basically the hacker tracking every key struck by the user. This makes it easier for the hacker to get passwords, usernames and other credentials.

3. Cookies theft: cookies theft is done by hidden sites, who steal data from unencrypted surfing and then that data is used to impersonate the victim and exploit the situation.

4.  Password cracking: Password cracking is a broad topic and includes various ways in how a hacker cracks the user's password, including guessing, dictionary attacks and even sometimes type of phishing.

5. Ransomware: Ransomware is when the hacker gets a control of someone's device and then blocks the access of the user to their own data, and then user has to pay ransom, which is mainly through online payments, to restore his own access.

6. Social engineering: Social engineering is malicious activities which are mainly through human interaction in which the attacker tricks the victim psychologically to gain access to their data.

7. Outdated software: Using outdated software packages is dangerous to the user or organizations. Because outdated software packages might be very vulnerable and weak, and these vulnerabilities might not exist in updated software packages.

8. Botnet attack: Botnet attack is a malicious attack that uses a web of connected computers which all combine to attack a certain network or computer.


Finally, I would like to stress on some basic ways to prevent being a victim of such attacks, these ways include patching your device, malware protection software, using strong passwords, using VPNs,...... .











Dictionary 



Wednesday, 23 January 2019

THE commandment.

Thou shalt not use a computer to harm other people.
Hackers nowadays are becoming smarter which is leading to many negative results on people, companies, organisations, banks....
The first rule for anyone to use a computer is that they should never harm anyone though it.
I have researched in cyber threats and found that people who use computer to harm others are very dangerous and the victim's life ends up getting ruined. Moreover, computers were created to help mankind and make life easier and more productive, so to even think of harming anyone with computer is unethical.

Essay.

Cyber security is the action of protecting any digital object such as computers, smartphones, tablets, networks, software packages,......, f...