Module 11 Review Notes
PII: Identifies individuals; used in tech for navigation, purchases, and service improvement. Concerns: control, breaches, profiling.
Cyber Threats:
Virus: Malicious, self-copying program.
Keylogging: Records keystrokes for credential theft.
Malware: Damages/controls systems.
Phishing: Tricks users into revealing personal info.
Rogue APs: Unauthorized network access.
Prevention:
Viruses/Keylogging/Malware: Antivirus, updates, avoid suspicious files.
Phishing: Verify requests, use direct website access.
Rogue APs: Watch for unusual Wi-Fi signals.
Encryption:
Symmetric: Single key for encryption/decryption.
Asymmetric: Public/private key pair.
Encryption Details:
Algorithm: Encryption method (e.g., Caesar cipher).
Key: Specific input for method application.
Encryption Algorithms:
Caesar Cipher: Letter shift, easily cracked.
Random Substitution: Random letter assignment, cracked by frequency analysis.
Vigenere: Key and grid-based shift, vulnerable to modified frequency analysis.
Public Key: Asymmetric, recipient's public key encrypts, private key decrypts; used in RSA.
Cost of Free Services: Exchange data for service.
Internet Security: Packets traverse multiple routers, unencrypted.
Public Key Encryption (Alice, Bob): Alice's keys; Bob encrypts with public, Alice decrypts with private (RSA).
Multifactor Authentication:
Two+ steps (knowledge, possession, inherence).
Pros: Enhanced security.
Cons: Inconvenient, privacy issues.
Diffie-Hellman Key Exchange:
Requires shared prime and generator .
Formulas provided for shared value and secret key calculation.
RSA Encryption:
Recipient selects primes and , calculates , , , .
Public key , private key ; formulas for encryption and decryption.
LSB Steganography:
Hide messages by altering least significant bits.
Reduce LSBs, use detailed cover images for subtlety.
Identification - Authentication - Authorization: Claim identity, verify identity, grant access based on privilege.