Network Attacks and Countermeasures
An overview of common network attacks and defensive measures, highlighting the importance of network security in organizations.
خلاصه تخصصی مقاله
An overview of common network attacks and defensive measures, highlighting the importance of network security in organizations.
موضوعات اصلی: پشتیبانی شبکه، امنیت شبکه، اطلاعات، حمله، حملات، میکند
What threats threaten a network?
Threats to network security exist in every organization and institution. It does not matter whether the network belongs to a government or a small office; any attempt to intrude into networks, modify and disable services, deliberately damage information, steal data, or gain unauthorized access is considered a network attack.
Two general models of network attacks
- Active attack on the network
Active attacks are those in which the attacker tries to modify the content of the message being transmitted over the network. Active attacks are among the most dangerous because they can modify information traveling over networks such as the Internet or banking networks. The victim usually becomes aware of the attack.
- Passive attack on the network
Passive attacks refer to situations where the attacker observes and copies the content being transmitted. This type of attack leads to information leakage; it is especially dangerous for confidential and classified information. Notably, the attacked system may not suffer damage and the victim may not be aware of the attack.
What security attacks exist for networks?
Network security risk has existed since the advent of computer networks; however, by using rules and guidelines and by implementing infrastructures and configurations, one can prevent attacks effectively.
Types of network threats
- Cyber Attacks
These attacks are carried out broadly with specific objectives. Sometimes the aim is to obtain information or to destroy information. In some cases, countries attack each other’s infrastructures through cyber means rather than direct confrontation.
- Phishing
Phishing is an online fraud where the attacker tries to obtain victim information through the Internet. The most vulnerable part is online payment gateways; if compromised, attackers can steal card and online banking details.
- Social Engineering
In this approach, the attacker uses psychological methods and human error to obtain access or information. Detecting these mistakes is challenging.
- Trojans and Worms
Malware that aims to destroy or steal data; spread via infected emails or removable media and other vectors.
- Hijacking
Hijacking refers to taking control of network sessions or gaining unauthorized access to resources, often leading to data theft or misuse of network resources.
برای ارزیابی پایداری، امنیت و نگهداری این زیرساخت، راهنمای پشتیبانی شبکه را نیز مطالعه کنید.