Comprehensive Guide to Information Security and Cryptography

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/50

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 9:16 PM on 9/10/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

51 Terms

1
New cards

What is the main objective of information security?

To protect the confidentiality, integrity, and availability of information.

2
New cards

Define confidentiality in information security.

ensures that private information is not made available to unauthorized parties.

3
New cards

Give an example of information that requires confidentiality.

Social Security Numbers (SSN), bank account details, and personal healthcare records.

4
New cards

What does integrity refer to in the context of information security?

guarding against improper data modification.

5
New cards

Provide an example of integrity in action.

Using digital signatures to verify the authenticity of financial documents.

6
New cards

What does availability mean in information security?

ensure that information delivery is guaranteed to authorized users.

7
New cards

Name an example of a system that requires high availability.

Internet access and critical infrastructure like the power grid.

8
New cards

What is a security attack?

Any action that compromises the security of information.

9
New cards

What are passive attacks?

Attacks aimed at obtaining information about confidential data without disrupting operations.

10
New cards

Give an example of a passive attack.

Packet sniffing or eavesdropping on communications.

11
New cards

What are active attacks?

Attacks that involve modifications of the data stream.

12
New cards

List some examples of active attacks.

Replay attacks, man-in-the-middle attacks, DDoS/DoS, spoofing, and malware injection.

13
New cards

What are security mechanisms?

Processes designed to detect, prevent, or recover from security attacks.

14
New cards

Name some examples of security mechanisms.

Encryption, authentication, firewalls, backups, anti-virus software, and digital signatures.

15
New cards

What is the relationship between plaintext and ciphertext in symmetric cryptosystems?

Plaintext is transformed into ciphertext through encryption, and ciphertext is reverted to plaintext through decryption.

16
New cards

What is Kerckhoffs's principle?

The principle that the security of a cryptographic system should not rely on keeping the encryption/decryption algorithm secret, only the key.

17
New cards

Why is it easier to change a key than to redesign an algorithm?

Changing a key is simpler and more practical than implementing a new encryption algorithm.

18
New cards

What is a substitution cipher?

A cipher that replaces each letter in the plaintext with a letter from a fixed permutation of the alphabet.

19
New cards

What is a one-time pad?

An unbreakable cryptosystem that uses a random key that is as long as the message.

20
New cards

What is the significance of proving independence between plaintext and ciphertext?

It ensures that observing the ciphertext provides no information about the plaintext.

21
New cards

What does frequency analysis reveal in cryptography?

It can reveal the plaintext by analyzing the frequency of letters or pairs of letters in the ciphertext.

22
New cards

What is the modulo operation in the context of encryption?

A mathematical operation used to ensure that results wrap around within a certain range, such as the alphabet in ciphering.

23
New cards

How is decryption typically performed in symmetric encryption?

Decryption is performed by reversing the encryption process using the same key.

24
New cards

What is the worst-case scenario for a brute-force attack?

The worst-case scenario is the maximum number of attempts needed to guess the key.

25
New cards

What is the purpose of digital signatures?

To verify the authenticity and integrity of a message or document.

26
New cards

What is the primary limitation of a symmetric cryptosystem?

The key must be as large as the plaintext, leading to calculation overhead.

27
New cards

What is the one-time pad in cryptography?

It is the most optimal encryption method that requires a key as long as the message.

28
New cards

What does the proof by contradiction demonstrate in symmetric cryptosystems?

It shows that the length of the key must be as long as the message to maintain independence between plaintext and ciphertext.

29
New cards

What is the goal of a symmetric cryptosystem?

To ensure that plaintext cannot be inferred from ciphertext.

30
New cards

What is the Feistel cipher?

A method to reduce the key length of the one-time pad encryption protocol.

31
New cards

What is DES?

Data Encryption Standard, a symmetric-key algorithm for the encryption of digital data.

32
New cards

How many rounds does DES use?

16 rounds.

33
New cards

What is the key length used in DES?

56 bits.

34
New cards

What is the purpose of the substitution step in DES?

To introduce diffusion, ensuring that a change in any plaintext bit affects many ciphertext bits.

35
New cards

What is AES?

Advanced Encryption Standard, a successor to DES, approved for protecting classified information.

36
New cards

What are the criteria for AES?

Security, implementation complexity, key size, simplicity, low memory requirement, and practical application.

37
New cards

What is the block length for AES?

128 bits.

38
New cards

How many rounds does AES use for a 128-bit key?

10 rounds.

39
New cards

What is the purpose of the round key in AES?

To create a unique key for each round of encryption.

40
New cards

What happens when an adversary observes ciphertext in a symmetric cryptosystem?

They may try all possible keys to decrypt the ciphertext.

41
New cards

What is the significance of changing one bit of the secret key in a symmetric cryptosystem?

It affects, on average, 35 bits of the ciphertext.

42
New cards

What is the expansion permutation in DES?

It expands a 32-bit input to 48 bits for processing.

43
New cards

What is the role of the substitution step in DES?

To replace 6-bit words with 4-bit words based on a predefined table.

44
New cards

What is the main advantage of using different round keys in encryption?

To introduce confusion, making the relationship between the secret key and ciphertext complex.

45
New cards

What does the term 'confusion' refer to in cryptography?

The complexity of the relationship between the secret key and ciphertext.

46
New cards

What is the purpose of the permutation step in DES?

To rearrange the bits of the output from the substitution step.

47
New cards

What is the significance of the key being circularly shifted in DES?

It helps in generating different keys for each round of encryption.

48
New cards

What is the main security concern with shorter keys in cryptography?

They may compromise the security of the encryption.

49
New cards

What is the output of the substitution step in DES?

A 4-bit word derived from a 6-bit input based on a substitution table.

50
New cards

What is the primary function of the Feistel structure in ciphers?

To allow for the use of shorter keys while maintaining security.

51
New cards

What is the relationship between plaintext and ciphertext in a secure cryptosystem?

There should be no direct inference possible from ciphertext to plaintext.