wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

How To Secure Operating Systems ?

profile
45_Vandita Gosavi
Aug 17, 2022
0 Likes
0 Discussions
191 Reads

The operating system is the environment where your system’s applications run. In the operating system any kind of cyber-attacks could compromise the security of the application. Today's operating systems are more technically advanced and feature-rich than ever before, which makes them very much useful to the consumers but also adds to security vulnerability. To put it in the most basic terms, a computer system vulnerability is a flaw or weakness in a system or network that could be exploited to cause damage, or allow an attacker to manipulate the system in some way.

 

Accounts

There should be limitations on the number of user accounts on the server computers. All users should log on with user accounts that has the absolute minimum permissions which are necessary to perform the simple tasks and nothing more. Doing so provides protection against malicious attacks. For information security principle of least privilege is best idea. In the principle of least privilege is the idea that any user, programmer, or process have only enough and minimum privilege necessary to perform its functions.It applies to end users, systems, processes, networks, databases, applications, and every other aspect of an IT environment.

For eg., with the principle of least privilege, there is an employee whose job is to enter information into a database. If malware attacks into that employee’s computer or if the employee clicks on some random links or a phishing email then the malicious attack is limited to making database entries. If that employee has been using root access privileges then  the infection can spread system-wide.

 

Network Service

Using multi-factor authentication. Segmented networks enable the setup of least privileged access across zone boundaries. For eg., a company may create a subnet for its printers, or make a segment reserved for storing data. 

Isolating parts of a network limits a threat’s ability to move freely through the system. If a section of the network gets breached, other segments are not compromised.

A data loss prevention solution is an essential part of email security. spam filters can separate the spam messages from regular mail and delete them eventually, this will take time.

 

File System

Access to resources is denied for everyone except for the users to whom access is granted explicitly. You can deny read and write permissions for all directory structures for all users. Only users to whom these permissions are granted explicitly have access to the directories and files. This also protects any resources that were overlooked by an administrator.

 

System Integrity

Build production systems from a known and repeatable process to ensure system integrity. A multilevel security allows the classification of data and users based on a system of hierarchical security levels combined with a system of non-hierarchical security categories.

A multilevel-secure security has two goals first is, the controls must prevent unauthorized individuals from accessing information at a higher classification than their authorization. Second, the controls must prevent individuals from declassifying information.

Use available third-party auditing software to check the system integrity.

Back up the system resources on a regular basis.


Comments ()


Sign in

Read Next

Memory heirchy

Blog banner

Web browser forensics:Tools,Evidence collection and analysis

Blog banner

What is a geographic information system (GIS)?

Blog banner

Session Vulnerabilities

Blog banner

HOW CAN SOCIAL MEDIA MAKE YOU HAPPIER?

Blog banner

Power of words

Blog banner

Hubspot

Blog banner

Types of Hackers

Blog banner

What is Vishing?

Blog banner

Thumb Sucking: When It’s Normal and When It Becomes a Dental Problem

Blog banner

Memory management

Blog banner

Microsoft Windows Overview

Blog banner

Importance of Website

Blog banner

Metasploit

Blog banner

Smartsheet

Blog banner

VIRUS

Blog banner

Exploring Human Factors in Cyber Forensics Investigations.

Blog banner

Predictive Analytics: How Data Science Predicts Trends(Weather ,Stock Market,Sales Forecasting ).

Blog banner

Security requirements for Safe E-Payments

Blog banner

Malware Detection Techniques for Mobile Devices

Blog banner

ADIDAS

Blog banner

Advantage of freedom

Blog banner

Use case of K-means clustering

Blog banner

What is Virtual Memory

Blog banner

Topic: Sessions in Operating system

Blog banner

Cyber Security Control

Blog banner

Introduction to Virtual Memory - 080

Blog banner

The Five Steps of Data Science

Blog banner

The Psychology of Diversity, Equity & Inclusion: How Inclusive Workplaces Boost Productivity

Blog banner

Trello ( management software)

Blog banner

The Importance of Data Quality Management in Data Science

Blog banner

LINUX VSERVER VIRTUAL MACHINE ARCHITECTURE

Blog banner

Blog name

Blog banner

TEAMWORK

Blog banner

SQL Injection practice on DVWA

Blog banner

Predictive Analysis - Ek Overview

Blog banner

HTML vs HTML5

Blog banner

Electronic data interchange

Blog banner

Data Science in Everyday Life (like a phone, shopping cart, or social media icons)

Blog banner

Deadlock

Blog banner

Smart Shoephone: Is that technology overdose!?

Blog banner

DIGITAL ECONOMY

Blog banner