wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

Vulnerability Assessment

profile
17_Priyanka Hadpad
Aug 17, 2022
0 Likes
0 Discussions
100 Reads

Vulnerability:

vulnerability in networking are the security weeknesses or loop holes that gives threats the opportunity to compromises assests, like software, hardware, or organizational processes can result in a security breach.

 

Types of vulnerability:

 

Hardware:

Outdated Computer: The problem with old outdated computers is that a lot of it's equipment doesn't have built-in security features, self-healing basic input/output system (BIOS), preboot authentication, self-encrypting drivers and the like.

Old routers: Routers that manufactured in 2011 and earlier- can have serious vulnerabilities.

Drivers that don't self-encrypt: Self encrypt drivers requires a password in addition to the OS login password, and the technology automatically encrypts and decrypts data on the drive. 

 

Software:

Unpatched or out-of-date Operating systems: The OS that does not have automatic updates or technical assistance, latest security updates and the OS that has fewer security features than more modern OSes are prone to attack easier.

Malicious code: A common vulnerability is the potential for remote code execution when a user opens or previews a maliciously prepared files or visits a website containing content that exploits the vulnerability. 

Missing or weak Authorization Credentials: A common tactic that attackers use is to gain access to systems and networks through brute force like guessing employee credentials. That is why it is crucial that employees be educated on the best practices of cybersecurity so that their login credentials are not easily exploited.

Social engineering attacks: Social engineering attack that fool users into giving up personal information such as a username or password.

 

Vulnerability assessments Life Cycle:

 

 

  • Creating Baseline: In this phase it will find out the details of hosts, network, application and other open services. It maps the infrastructure, learns about security controls, policies, and standards followed by organizations. Basline helps to plan the process, schedule the tasks, and manage then with respect to priorty.
  • Vulnerability Assessment: In this phase it collect all founded or detected vulnerabilities of the system, vulnerabilities scope and priorities.
  • Risk Assessment: Here it defines the impact of vulnerabilities to an organization.
  • Remediation:  Here prioritize and fix vulnerabilities in order according to business risk. High priority vulnerabilities are addressed first because they can cause a huge impact.
  • Verification: Here verifying that all vulnerabilities have been eliminated on organizations.
  • Monitor: The end always must monitoring the network and system to avoid unsuspected attacks.

 

 


Comments ()


Sign in

Read Next

E-commerce

Blog banner

Are Social Media Paid Campaigns Worth It?

Blog banner

Blockchain Security Technique

Blog banner

Unlocking the Secrets: Basic Operations of Computer Forensic Laboratories

Blog banner

Indian Culture and Tradition

Blog banner

Best password managers: Reviews of the top products

Blog banner

CYBER FORENCIS: PAST, PRESENT AND FUTURE.

Blog banner

Patola Outfits for the Modern Wardrobe: Reviving Indian Handloom in Style

Blog banner

Starting Android Activity Using Intent

Blog banner

Demystifying Cryptography: A Beginner's Guide

Blog banner

Texting is actually better than talking in person

Blog banner

What is Brute Force Attack? How to defend against it?

Blog banner

Short note on expert system

Blog banner

What is service level Agreement?

Blog banner

Pro-Tips On How To Keep your Foot Healthy

Blog banner

LINUX VSERVER VIRTUAL MACHINE ARCHITECTURE

Blog banner

Memory management

Blog banner

Building Confidence in Children Through Daily Routines and Play

Blog banner

Zero Trust Security Model: Revolutionizing Cybersecurity in the Digital Age

Blog banner

Importance of modern technology era

Blog banner

MAILFENCE

Blog banner

Ransomware

Blog banner

Memory Management

Blog banner

A BLOG ON MYSQL

Blog banner

TOP 5 GAMING GADGETS (2024)

Blog banner

Service Catalogue Management

Blog banner

21ST CENTURY PATRIARCHY

Blog banner

GIS Bharat Maps

Blog banner

Virtual Memory

Blog banner

File management -disha parekh

Blog banner

SQL Injection practice on DVWA

Blog banner

Traditional UNIX Scheduling

Blog banner

Deadlock in operating system

Blog banner

Buffering

Blog banner

What is the point of living if we can die at any moment of our lives ?

Blog banner

Importance Of Blockchain

Blog banner

Starvation and Deadlock.

Blog banner

Deadlock and Starvation

Blog banner

Cache memory

Blog banner

Health and fitness

Blog banner

How Schools Can Reduce Exam Stress in Students?

Blog banner

10 Types of Friends in every friend group

Blog banner