Entries by Brendon Feole

SEC 410 – Discussion – Week 2

What is the value of the Common Vulnerabilities and Exposure (CVE) standard?

Before CVE, different Cybersecurity tools had their own databases of information. Sometimes they would refer to the same problem by different ID and therefor hard to compare databases. There were also not standards for identifying threats so different tools were providing different reports on the same problems. Due to these problems, CVE compatible tools allow for better security.

https://cve.mitre.org/about/index.html

 

How can the CVE be used to improve an organization’s network security?

 View Full Post

SEC 410 – Discussion – Week 1

What are today’s most significant threats to network security?

Phishing is pretty common. It’s a type of social engineering. Social engineering gets people to do what you want them to, thereby allowing an attack to proceed regardless of security.

https://www.youtube.com/watch?v=pnaoUEVx9wI

Poor passwords –

https://www.youtube.com/watch?v=7U-RbOKanYs

Not having two-factor authentication on wireless access points leaves them more vulnerable to attack. While not so common, I think it will become more common once more criminals figure out how easy it can be to exploit a wireless access point regardless of the password used. 

 View Full Post

SEC 410 – Network Defense and Countermeasures – Report 1

Part One:

Research the following bulleted items below, using the relevant reading resources for this week and supplementary ones you may come up with:

  • What should a Firewall protect against?
    • Most threats that can travel over the network. For example, denial of service attacks, access from unauthorized locations (outside of the network and inside), vulnerable type of traffic like ptp sharing.

    What can’t a Firewall protect against?

    • Non-network related security problems. They also aren’t 100% effective. So that’s why a layered security approach is necessary.

    Why would you want firewalls at various locations of your network?

    • I would want them in places where I need to manage things separately (because there are typically routing capabilities combined with firewalls), to isolate part of a network, or even to connect different locations over vpn.

    Where would you locate them?

    • One would be where the internet connection terminates. For example, Comcast has their modem, then the firewall goes after that. Others could be connected to switches throughout the building where appropriate.

    What information did you gain learn from using Nmap about the effectiveness of the Windows Firewall?

    • You can see what ports are open by default

    Could the Windows Firewall be made as secure as the ZoneAlarm Firewall? What would you need to do to accomplish that?

SEC 340 – Patching Policy in a Windows Environment

Draft a Corporate Policy on how patching will be implemented on the Windows Operating Environment. Be sure to include the Servers, Clients, and any associated devices (i.e printers). The policy should be as detailed as possible.

Please read before applying patches and updates to software used by the company’s computers, peripherals, and networking equipment. Due to potential security risks and quality-of-life changes it’s important to keep things to up-to-date. However, updates can introduce unexpected problems.

 View Full Post