1/50
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
What is the main objective of information security?
To protect the confidentiality, integrity, and availability of information.
Define confidentiality in information security.
ensures that private information is not made available to unauthorized parties.
Give an example of information that requires confidentiality.
Social Security Numbers (SSN), bank account details, and personal healthcare records.
What does integrity refer to in the context of information security?
guarding against improper data modification.
Provide an example of integrity in action.
Using digital signatures to verify the authenticity of financial documents.
What does availability mean in information security?
ensure that information delivery is guaranteed to authorized users.
Name an example of a system that requires high availability.
Internet access and critical infrastructure like the power grid.
What is a security attack?
Any action that compromises the security of information.
What are passive attacks?
Attacks aimed at obtaining information about confidential data without disrupting operations.
Give an example of a passive attack.
Packet sniffing or eavesdropping on communications.
What are active attacks?
Attacks that involve modifications of the data stream.
List some examples of active attacks.
Replay attacks, man-in-the-middle attacks, DDoS/DoS, spoofing, and malware injection.
What are security mechanisms?
Processes designed to detect, prevent, or recover from security attacks.
Name some examples of security mechanisms.
Encryption, authentication, firewalls, backups, anti-virus software, and digital signatures.
What is the relationship between plaintext and ciphertext in symmetric cryptosystems?
Plaintext is transformed into ciphertext through encryption, and ciphertext is reverted to plaintext through decryption.
What is Kerckhoffs's principle?
The principle that the security of a cryptographic system should not rely on keeping the encryption/decryption algorithm secret, only the key.
Why is it easier to change a key than to redesign an algorithm?
Changing a key is simpler and more practical than implementing a new encryption algorithm.
What is a substitution cipher?
A cipher that replaces each letter in the plaintext with a letter from a fixed permutation of the alphabet.
What is a one-time pad?
An unbreakable cryptosystem that uses a random key that is as long as the message.
What is the significance of proving independence between plaintext and ciphertext?
It ensures that observing the ciphertext provides no information about the plaintext.
What does frequency analysis reveal in cryptography?
It can reveal the plaintext by analyzing the frequency of letters or pairs of letters in the ciphertext.
What is the modulo operation in the context of encryption?
A mathematical operation used to ensure that results wrap around within a certain range, such as the alphabet in ciphering.
How is decryption typically performed in symmetric encryption?
Decryption is performed by reversing the encryption process using the same key.
What is the worst-case scenario for a brute-force attack?
The worst-case scenario is the maximum number of attempts needed to guess the key.
What is the purpose of digital signatures?
To verify the authenticity and integrity of a message or document.
What is the primary limitation of a symmetric cryptosystem?
The key must be as large as the plaintext, leading to calculation overhead.
What is the one-time pad in cryptography?
It is the most optimal encryption method that requires a key as long as the message.
What does the proof by contradiction demonstrate in symmetric cryptosystems?
It shows that the length of the key must be as long as the message to maintain independence between plaintext and ciphertext.
What is the goal of a symmetric cryptosystem?
To ensure that plaintext cannot be inferred from ciphertext.
What is the Feistel cipher?
A method to reduce the key length of the one-time pad encryption protocol.
What is DES?
Data Encryption Standard, a symmetric-key algorithm for the encryption of digital data.
How many rounds does DES use?
16 rounds.
What is the key length used in DES?
56 bits.
What is the purpose of the substitution step in DES?
To introduce diffusion, ensuring that a change in any plaintext bit affects many ciphertext bits.
What is AES?
Advanced Encryption Standard, a successor to DES, approved for protecting classified information.
What are the criteria for AES?
Security, implementation complexity, key size, simplicity, low memory requirement, and practical application.
What is the block length for AES?
128 bits.
How many rounds does AES use for a 128-bit key?
10 rounds.
What is the purpose of the round key in AES?
To create a unique key for each round of encryption.
What happens when an adversary observes ciphertext in a symmetric cryptosystem?
They may try all possible keys to decrypt the ciphertext.
What is the significance of changing one bit of the secret key in a symmetric cryptosystem?
It affects, on average, 35 bits of the ciphertext.
What is the expansion permutation in DES?
It expands a 32-bit input to 48 bits for processing.
What is the role of the substitution step in DES?
To replace 6-bit words with 4-bit words based on a predefined table.
What is the main advantage of using different round keys in encryption?
To introduce confusion, making the relationship between the secret key and ciphertext complex.
What does the term 'confusion' refer to in cryptography?
The complexity of the relationship between the secret key and ciphertext.
What is the purpose of the permutation step in DES?
To rearrange the bits of the output from the substitution step.
What is the significance of the key being circularly shifted in DES?
It helps in generating different keys for each round of encryption.
What is the main security concern with shorter keys in cryptography?
They may compromise the security of the encryption.
What is the output of the substitution step in DES?
A 4-bit word derived from a 6-bit input based on a substitution table.
What is the primary function of the Feistel structure in ciphers?
To allow for the use of shorter keys while maintaining security.
What is the relationship between plaintext and ciphertext in a secure cryptosystem?
There should be no direct inference possible from ciphertext to plaintext.