Major security risk and their costs/// E-commerce security environment
Internet is a vulnerable network Costs: 1. Cost of the actual crime 2. costs required to recover from cyber attcaks 3.reputation damage 4. reduce trust in online activities 5. loss of ponentional sensitive info
Most costly cybercrimes
malware
web-based attacks
Denial of service
Malicious insiders
Dimensions of e-commerce security
3 points of vulnerability ///
Most common of most damaging threats of security
client//server// communication pipeline
////////////////////////////////////////////////////////////////////////
1. Malicious code
Include threats as viruses, worms, ransonware, trojan
horses
* Exploit kit
* malvertising
Only adevertising that use malicious code
* drive by download
* backdoor
* bots
* Botnet2. Potentially Unwanted Programs Program that installs itself on a Computer usually without the users consent * Adware *Browser parasite *Cryptojacking *Spyware
5. hacker
cracker
Cyvervandalism
Hactivism
6. Data breach
Credential stuffingCLOUD security issues
INTERNET OF THINGS SECURITY ISSUES
Technology solutions
Encryption
Cipher text.
Text encrypted only can be read by the sender and receiver
substitution cipher
Transposition cipher
Symmetric Key cryptographic
Public key cryptographic
Hash function
Digital Signature
Digital envelope
Digital certificates and Public key infrastructure
Pretty good privacy
Secure channels of communication
Secure sockets layer (SSL)
Transport layer security (TLS)
HTTPS
Session Key
Virtual Private network (VPN)
Firewalls
Proxy servers
Major payment methods
xxxx