The best cyber security is attained when the 3 main pillars, which are people, process and technology, are strong. For example, people should be trained and be aware of how to surf safely and how to avoid dubious sites... . Moreover, process are also vital in cyber security, such as the effectiveness of organizations to counter cyber attacks and how to adapt to new kinds of attacks, how they research
and learn from their mistakes, and more importantly their counter plans. Finally, what kind of technology the organization is using to protect itself against cyber attacks and how are they using it.
On the other hand we have the complete opposite of cyber security, which are cyber attacks. Cyber attacks are malicious attacks done mainly through computer to steal, exploit, destroy..., other platforms such as other computers, networks, devices, bank credentials.... . Cyber attacks are very threatening and damaging to society, banks, organizations, governments,....... .For example, according to FireEye.com(2015), the global expenditure on damage caused by cyber attacks was 71 billions dollars on 2014 and was estimated to reach 101 billion in 2018. Moreover, Equifox(2017) states that 147.9 million people were affected by a breach in the system. Cyber attacks are also very dangerous to average users as they have a high chance of being a victim of cyber bullying, which eventually might lead to them to commit suicide.
Hackers use numerous of hacking methods and threats. The list below briefly lists them and explains them briefly.
1. Phishing: Phishing is a type of cyber attack in which the attacker conducts himself as a legitimate person or as a person working from a firm and then contacts the victim commonly through phone, e-mail or text message, to get his credentials.
2. Key logging: key logging is basically the hacker tracking every key struck by the user. This makes it easier for the hacker to get passwords, usernames and other credentials.
3. Cookies theft: cookies theft is done by hidden sites, who steal data from unencrypted surfing and then that data is used to impersonate the victim and exploit the situation.
4. Password cracking: Password cracking is a broad topic and includes various ways in how a hacker cracks the user's password, including guessing, dictionary attacks and even sometimes type of phishing.
5. Ransomware: Ransomware is when the hacker gets a control of someone's device and then blocks the access of the user to their own data, and then user has to pay ransom, which is mainly through online payments, to restore his own access.
6. Social engineering: Social engineering is malicious activities which are mainly through human interaction in which the attacker tricks the victim psychologically to gain access to their data.
7. Outdated software: Using outdated software packages is dangerous to the user or organizations. Because outdated software packages might be very vulnerable and weak, and these vulnerabilities might not exist in updated software packages.
8. Botnet attack: Botnet attack is a malicious attack that uses a web of connected computers which all combine to attack a certain network or computer.
Finally, I would like to stress on some basic ways to prevent being a victim of such attacks, these ways include patching your device, malware protection software, using strong passwords, using VPNs,...... .