vulnerability_assessment_part_1.docx

Part 1: Vulnerability Assessment

Nambo Francis

Network Security

October 3, 2016

Introduction

Every computer network is a target for attack by virtue of being on. It is therefore necessary that every organization understand where it stands on matters of network security. A vulnerability assessment is done to provide an organization with the state of its network components. The assessment also identifies potential points of weakness within the network infrastructure and the extent to which those vulnerabilities could be exploited. While some attacks on an organization can be targeted specifically to it, others could be as a result of a vulnerability that was identified by attackers after scouring for vulnerable networks. Any exploitable vulnerability in a network no matter how small can cause significant damage to the network. This necessitates the vulnerability assessment that should be a regular activity. A vulnerability assessment will enable the organization to rank the gravity of the danger posed by all vulnerabilities and allocate the appropriate resources to its handling.

Network Vulnerability Assessment

Network backdoors – a backdoor within a system is an access point whose existence is unknown by a network administrator and users of that system. A backdoor can be implemented on a software running in the network or even to hardware devices that are connected to the network. A hacker then uses that backdoor to access the network and collect data without the knowledge anyone involved with the network. A backdoor can grant the hacker administrator level access privileges and as such their activities within the network can go unnoticed [1].

Security loopholes in software and hardware components – while the above backdoors are usually created by a hacker, security loopholes are as a result of the manufacturer delivering unpatched components. A piece of software or hardware equipment could have been developed and shipped to users without being checked for those loopholes. These unpatched loopholes can then be exploited by hackers to enter a network [1].

Distributed denial of service attacks – networks are made to handle a certain amount of requests to function properly. A hacker the above attacks will exploit by presenting the network with a large number of illegitimate requests. In a bid to service these requests, the network resources will be overwhelmed to the point of the network shutting down after failing to do so. This attack will then lock out legitimate users and their requests. [1]

Mobile and non-firm devices – a lot more companies are implementing a program where employees get to bring their devices to work. The firms are also issuing their employees with mobile devices like tablets and smartphones for conducting their tasks. Bringing personal devices to do work on present a potential vulnerability. As these are personal devices, they are secured the same way as other company devices. They could be used to introduce viruses into the network and jeopardize the company’s information. As for company-issued mobile devices, they cannot be secured with the same capabilities as PCs. They have different form factors and also different underlying infrastructure [2]. Given that their use within the workplace is recent, then it means that there isn’t an acceptable method to secure them. This makes them very vulnerable.

Removable media – just as employees are bringing their mobile devices to work, so are they also bringing removable USB media. This includes thumb drives and external hard disks. Most of these devices are usually used across many computers and this increases the chances of them getting infected with viruses. Allowing these devices with questionable history to be plugged into company computers creates the risk that viruses and other malware might get introduced into the network [2].

Wireless networks – while wired networks can be physically secured by limiting access to ports, this can’t be said of wireless networks. All that is required is proximity. A hacker with a laptop would only have to be near the company premises to view their wireless network. Unsecured wireless networks can be viewed and access with any Wi-Fi connection. It is also possible that a user on a neighboring network could be able to access the network. This open wireless network then exposes the company’s entire network to not just unauthorized users but malicious ones as well [1].

Operating system platform between the Windows operating system from Microsoft and Mac operating system from Apple, it has been found that the latter has lesser chances of being a target for attacks than the former. Windows OS as the dominant and ubiquitous platform makes that hackers will lean more towards developing ways to access the systems. Mac OS devices on the other hand are also developed by Apple and the security implementation is usually far much superior to Windows OS. So, if the company has chosen to use Windows devices, then it has to contend with the fact that it has increased the chances of being a target [1].

False sense of security in defense in depth – this company will have a firewall, intrusion detection system and anti-virus programs as part of its network security strategy. On the face of it, it is a recommended one as it provides multiple security layers. However, it is important to note that this strategy is only effective if those different aspects of security are all operating at peak level. Even with all of them present, if they are poorly configured and maintained, they become liabilities instead of assets as they create multiple points of vulnerability for the network [1].

References

[1] D. Jacobson and J. Idziorek, Computer security literacy: Staying safe in a digital world. CRC Press, 2016. 

[2] G. Held, G, Network design: Principles and applications. Boca Raton: Auerbach, 2014.