wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

Vulnerability Assessment

profile
17_Priyanka Hadpad
Aug 17, 2022
0 Likes
0 Discussions
100 Reads

Vulnerability:

vulnerability in networking are the security weeknesses or loop holes that gives threats the opportunity to compromises assests, like software, hardware, or organizational processes can result in a security breach.

 

Types of vulnerability:

 

Hardware:

Outdated Computer: The problem with old outdated computers is that a lot of it's equipment doesn't have built-in security features, self-healing basic input/output system (BIOS), preboot authentication, self-encrypting drivers and the like.

Old routers: Routers that manufactured in 2011 and earlier- can have serious vulnerabilities.

Drivers that don't self-encrypt: Self encrypt drivers requires a password in addition to the OS login password, and the technology automatically encrypts and decrypts data on the drive. 

 

Software:

Unpatched or out-of-date Operating systems: The OS that does not have automatic updates or technical assistance, latest security updates and the OS that has fewer security features than more modern OSes are prone to attack easier.

Malicious code: A common vulnerability is the potential for remote code execution when a user opens or previews a maliciously prepared files or visits a website containing content that exploits the vulnerability. 

Missing or weak Authorization Credentials: A common tactic that attackers use is to gain access to systems and networks through brute force like guessing employee credentials. That is why it is crucial that employees be educated on the best practices of cybersecurity so that their login credentials are not easily exploited.

Social engineering attacks: Social engineering attack that fool users into giving up personal information such as a username or password.

 

Vulnerability assessments Life Cycle:

 

 

  • Creating Baseline: In this phase it will find out the details of hosts, network, application and other open services. It maps the infrastructure, learns about security controls, policies, and standards followed by organizations. Basline helps to plan the process, schedule the tasks, and manage then with respect to priorty.
  • Vulnerability Assessment: In this phase it collect all founded or detected vulnerabilities of the system, vulnerabilities scope and priorities.
  • Risk Assessment: Here it defines the impact of vulnerabilities to an organization.
  • Remediation:  Here prioritize and fix vulnerabilities in order according to business risk. High priority vulnerabilities are addressed first because they can cause a huge impact.
  • Verification: Here verifying that all vulnerabilities have been eliminated on organizations.
  • Monitor: The end always must monitoring the network and system to avoid unsuspected attacks.

 

 


Comments ()


Sign in

Read Next

Street foods

Blog banner

Things You Should Leave Behind In 2025, Whilst In 2026

Blog banner

Data Acquisition in Cyber Forensics

Blog banner

File management

Blog banner

(Input/Output) in os

Blog banner

Steps to create an Ubuntu EC2 Instance with GUI in AWS

Blog banner

Data Lake

Blog banner

Improving defences Proxy Device(defense in depth)

Blog banner

Social media

Blog banner

Access management

Blog banner

Deadlock and Starvation

Blog banner

MEMORY MANAGEMENT FILE

Blog banner

Direct Memory Access

Blog banner

Rain

Blog banner

The 60-Minute Window: What to Do (And What NOT to Do) When You Knock Out a Tooth

Blog banner

How to Grow Your Brand on YouTube Without a Big Budget

Blog banner

The most common internet security threats

Blog banner

FIREWALL

Blog banner

Deadlocks in operating system

Blog banner

From Loom to Luxury: How Patola Elevates Modern Wardrobes

Blog banner

DBMS and various career options related to it.

Blog banner

HubSpot

Blog banner

objectives and functions of operating system

Blog banner

Outlook mail

Blog banner

Functions of operating system

Blog banner

Why Inconel 625 and Monel 400 Remain Unbeatable in Refinery Applications?

Blog banner

5 People who claimed to have Time Traveled

Blog banner

Session Vulnerabilities

Blog banner

INTERNET SECURITY

Blog banner

Thumb Sucking: When It’s Normal and When It Becomes a Dental Problem

Blog banner

Dr. Venkadavarahan

Blog banner

MYNTRA

Blog banner

Caching windows

Blog banner

DATA WRANGLING

Blog banner

Does School Infrastructure Really Matter For Learning?

Blog banner

Brilliant WhatsApp Features Upcoming in 2023

Blog banner

India Digital Personal Data Protection Act, 2023

Blog banner

How India made the GIS its Own, and its Use in Infrastructural Developments

Blog banner

A buffer overflow

Blog banner

Europe Through My Lens

Blog banner

Starting Android Activity Using Intent

Blog banner

Inventory management software system

Blog banner