Explain why a zero-day attack is potentially so harmful.
(Computer Security II)
Ans-> When user make a software then use so many language and codes of other language , through which we can hacker hacked software
The means in short ,” hacker attack weak part of code “
User use in programming so many plug-in, he don’t which part of leak my information, that’s main reason
Hacker know a week code and sale it also ,
Zero-day is a flaw in software, hardware or firmware that is unknown to the party or parties responsible for patching or otherwise fixing the flaw. The term zero day may refer to the vulnerability itself, or an attack that has zero days between the time the vulnerability is discovered and the first attack. Once a zero-day vulnerability has been made public, it is known as an n-day or one-day vulnerability.
Ordinarily, when someone detects that a software program contains a potential security issue, that person or company will notify the software company (and sometimes the world at large) so that action can be taken. Given time, the software company can fix the code and distribute a patch or software update.
Even if potential attackers hear about the vulnerability, it may take them some time to exploit it; meanwhile, the fix will hopefully become available first. Sometimes, however, a hacker may be the first to discover the vulnerability. Since the vulnerability isn't known in advance, there is no way to guard against the exploit before it happens. Companies exposed to such exploits can, however, institute procedures for early detection.
Zero-day exploit detection
Zero-day exploits tend to be very difficult to detect. Antimalware software and some intrusion detection systems
(IDSes) and intrusion prevention systems (IPSes) are often ineffective because no attack signature yet exists.
This is why the best way to detect a zero-day attack is user behavior analytics. Most of the entities authorized
to access networks exhibit certain usage and behavior patterns that are considered to be normal.
Activities falling outside of the normal scope of operations could be an indicator of a zero-day attack.
Explain why a zero-day attack is potentially so harmful. (Computer Security II)
A large hospital is the recent target of a zero-day attack. The attack enabled additional payloads, which appear to be originating from multiple countries, to be dropped. The hospital's information security department has deployed only endpoint antivirus software so far. The hospital wants to mitigate similar attacks in the future. Which of the following would be the best action to take NEXT? A Deploy perimeter firewalls to block the originating IP addresses of the recent attacks. B Integrate antivirus modules...
computer security for the attack, “Steal Credit Card Number from online user" 1- Develop an attack tree 2- tree should have at least four levels with tree boxes on each 3- draw the attack in a drawing tool
Is a sequence number a preventive or detective countermeasure? Explain your answer. (Computer Security II)
Information Security Systems Describe the phases of a computer attack. Describe two tools and techniques to detect and prevent attacks.
Network security 1. explain succinctly how a Denial of Service attack may occur on an implementation of the TCP protocol's 3 way handshake? 2. Suggest solutions on your own on how such a Denial of Service attack on TCP 3-way handshake can potentially be prevented or mitigated? Note that you are being asked to think through this answer on your own. You are however allowed to research on the Internet for potential solutions. Please make sure you understand the solution...
Computer Security: Give three reasons why computer crime is so hard to prosecute and provide an explanation of each of them. Give at least one example of the difference in cyber law between the United States and Europe. Also give one example of how this has already created a problem for the United States (or how it could lead to problems in the future).
Computer Security: What is the Computer Fraud and Abuse Act? Why was it introduced? What does it say? What purpose does it serve? Why is it so important?
why was the colonial appropriation of land so harmful to indigenous people
2. A successful format string unauthorized memory. Answer the followings with proper explanation: [2 points a. This attack will lead to violation of which security policies? Explain your attack attempted to steal user account information by reading from answer
2. A successful format string unauthorized memory. Answer the followings with proper explanation: [2 points a. This attack will lead to violation of which security policies? Explain your attack attempted to steal user account information by reading from answer
Describe at least three ways computer viruses can spread. Explain why computer worms are bigger threat to computer security than computer viruses.