Logic bombs - attacks information security, Computer Network Security

Assignment Help:

Example 3: Logic bombs

In the year 2000, Timothy Lloyd was found responsible of causing $10 million and $12 million of damage to Omega Engineering, an American company specializing in the precision engineering for clients, comprising the US Navy and NASA. The Lloyd had been employed with Omega for eleven years, increasing to the post of system administrator, and was not only responsible for the day to day operation of the company’s computers but also for the process of disaster recovery.

In the year 1996, Lloyd became aware that he was to be sacked and wrote a logic bomb – a 6-line destructive program – which he installed on Omega’s servers. After ten days later, Lloyd was dismissed and his logic bomb exploded, destroying all the company contracts and proprietary software which was used by Omega’s manufacturing tools. Although Omega had a backup procedure, Lloyd’s account had allowed him to disable these recovery systems. The damage which was done by his logic bomb was permanent.

When the logic bomb exploded it wiped out information that was required for the company to operate. Due to the result of lost business, Omega was mandatory to lay off some 80 employees and found itself rewriting the software which had once given it a competitive edge over its rivals. In effect, which Lloyd managed to do, in most decisive manner possible, was to prevent the vital information which was being shared. Now we will define information security several ways. Some of them are stated below

Def1: Information security means protecting information and information systems from the unauthorized disclosure, access, disruption, modification, use, or destruction. The terms computer security, information security and information assurance, are often used interchangeably. These fields are related internally and share the common goals of protecting the integrity, confidentiality and availability of information; although, there are some subtle differences between them. These differences primarily lie in the approach to subject, methodologies used, and areas of concentration. Information security can be concerned with integrity, confidentiality, and availability of data regardless of the form the data may take: print, electronic, or other forms.

Def2: The protection of data against unauthorized access. Programs and data can be secured by using passwords and digital certificates to authorized users. However, passwords validate only that a correct number has been entered, not that it is the genuine person. Digital certificates and techniques which are biometric (fingerprints, voice, eyes, etc.) and authentication provide a more secure method. When a user has been authenticated, the sensitive data can be encrypted to prevent eavesdropping by using cryptography technique.


Related Discussions:- Logic bombs - attacks information security

Explain the random key distribution, Q. Explain the random key distribution...

Q. Explain the random key distribution? The triple key management mechanisms ensure a better and complete security solution using the random key distribution mechanism. In this

Distinguish between authorization and authentication, Question : (a) D...

Question : (a) Distinguish between authorization and authentication. (b) SSO (Single Sign On) implies a user logs in once and can access resources for a defined period of

Explain transposition ciphers and substitution cipher, What do you understa...

What do you understand by cryptanalysis? Discuss about the transposition ciphers substitution cipher, and onetime pads. The messages which are intended to transmit secretly and

Typical network management system, Problem 1: List measurable entities ...

Problem 1: List measurable entities on which the quality of service in a data communication network depends Problem 2: Show the features of a typical Network Management

Need assignemnt help in information security assignemnt, Need Assignemnt he...

Need Assignemnt help in Information security assignemnt

Network protocol hierarchy , This assignment aims to enhance students' unde...

This assignment aims to enhance students' understanding of the network protocol hierarchy and flow control and error control techniques by implementing a sliding window protocol in

Enterprise information security policy (eisp), Enterprise Information Secur...

Enterprise Information Security Policy (EISP) EISP also known as security policy directly supports the mission of the organization and sets the strategic direction, scope, and t

Explain how the diffie-hellman key agreement protocol works, (a) Using Fer...

(a) Using Fermat's theorem, find 3 201 mod 11. (b) Explain how the Diffie-Hellman key agreement protocol works and what its purpose and main properties are. Consider a Dif

Describe des encryption, (a) Describe DES encryption with a block diagram a...

(a) Describe DES encryption with a block diagram and brief steps. (b) How does triple DES improve security. What is the effective key length of triple DES? How can 3DES be compa

Estimate the average throughput, Question (a) Estimate the average thr...

Question (a) Estimate the average throughput between two hosts given that the RTT for a 100 bytes ICMP request-reply is 1 millisecond and that for a 1500 bytes is 2 millisecon

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd