ScholarQuill logoScholarQuillUniversity Notes
  • Notes
  • Past Papers
  • Blogs
  • Todo
Login
ScholarQuill logoScholarQuillUniversity Notes
Login
NotesPast PapersBlogsTodo
More
SubjectsDiscussionCGPA CalculatorGPA CalculatorStudent PortalCourse Outline
About
About usPrivacy PolicyReportContact
Notes
Past Papers
Blogs
Todo
Analytics
    Current Subject
    🧩
    Network Security
    ITEC4147
    Progress0 / 24 topics
    Topics
    1. Introduction to network security2. Networking Concepts and Protocols3. Network Threats and Vulnerabilities4. Network Security Planning and Policy5. Access Control6. Defense against Network Attacks7. DOS and DDOS detection and prevention8. Firewalls9. Intrusion Detection and Prevention Systems10. Antivirus Filtering11. Naming and DNS Security, DNSSEC12. IP security13. Secure Sockets Layer14. VPN15. Packet Sniffing and spoofing16. Honeypot17. Ethernet Security18. Wireless Security and Wireless Attacks19. Wireless LAN Security with 802.11i20. Wireless Security Protocols21. Wireless Intrusion Detection22. Physical access and Security23. Tor Network24. Network Forensics
    ITEC4147›Defense against Network Attacks
    Network SecurityTopic 6 of 24

    Defense against Network Attacks

    3 minread
    556words
    Beginnerlevel

    📘 Defense Against Network Attacks — Exam Notes (Network Security)


    🔐 1. Definition

    Defense against network attacks refers to the methods, tools, and strategies used to detect, prevent, and respond to cyber attacks on a network.

    👉 Simple idea: It is about protecting systems and data from hackers, malware, and other threats.


    🎯 2. Objectives of Defense Mechanisms

    • Prevent unauthorized access
    • Detect attacks quickly
    • Minimize damage
    • Ensure data confidentiality, integrity, and availability (CIA)
    • Maintain normal network operations

    🧱 3. Types of Defense Strategies

    🔸 1. Preventive Controls

    • Stop attacks before they happen

    • Examples:

      • Firewalls
      • Encryption
      • Access control

    🔸 2. Detective Controls

    • Identify attacks in progress or after occurrence

    • Examples:

      • Intrusion Detection Systems (IDS)
      • Log monitoring

    🔸 3. Corrective Controls

    • Fix damage after an attack

    • Examples:

      • System recovery
      • Patching vulnerabilities

    🛡️ 4. Common Security Tools

    🔹 Firewall

    • Filters incoming/outgoing traffic.
    • Blocks unauthorized access.

    🔹 Intrusion Detection System (IDS)

    • Monitors network for suspicious activity.

    🔹 Intrusion Prevention System (IPS)

    • Detects and actively blocks attacks.

    🔹 Antivirus / Anti-malware

    • Detects and removes malicious software.

    🔹 Virtual Private Network (VPN)

    • Creates secure, encrypted communication over public networks.

    🔐 5. Encryption and Secure Communication

    🔸 Encryption

    • Converts data into unreadable form.

    🔸 HTTPS

    • Secure web communication using encryption.

    🔑 6. Network Defense Techniques

    🔹 Patch Management

    • Regularly update software to fix vulnerabilities.

    🔹 Network Segmentation

    • Divide network into smaller parts to limit attack spread.

    🔹 Strong Authentication

    • Use multi-factor authentication (MFA).

    🔹 Access Control

    • Limit user permissions.

    🔹 Backup and Recovery

    • Maintain backups to restore data after attacks.

    ⚠️ 7. Defense Against Common Attacks

    🔸 Malware Defense

    • Use antivirus
    • Avoid suspicious downloads

    🔸 Phishing Defense

    • User awareness training
    • Email filtering

    🔸 DoS/DDoS Defense

    • Traffic filtering
    • Load balancing

    🔸 MITM Defense

    • Use encryption (HTTPS, VPN)

    🔸 Password Attack Defense

    • Strong passwords
    • Account lockout policies

    🧠 8. Defense Principles

    🔹 Defense in Depth

    • Multiple layers of security.

    🔹 Least Privilege

    • Minimum required access.

    🔹 Zero Trust Model

    • “Never trust, always verify.”

    📊 9. Important Rule

    🔸 Security Layer Concept

    Security = Multiple Layers (Not Single Control)
    

    👉 No single tool can provide complete security.


    🖼️ 10. Diagram Descriptions

    📌 Defense in Depth Diagram

    • Multiple layers:

      • Firewall → IDS → Antivirus → Data protection

    📌 Network Segmentation

    • Divide network into zones (e.g., internal, DMZ).

    📌 Attack Detection Flow

    • Attack → Detection → Response → Recovery

    🧾 11. Real-Life Examples

    • 🏦 Banks use MFA and encryption for secure transactions
    • 🏢 Companies use firewalls and IDS to protect networks
    • 🌐 Websites use HTTPS to secure communication
    • 💾 Organizations keep backups to recover from ransomware

    📝 Likely Exam Questions

    1. Define defense against network attacks.
    2. Explain preventive, detective, and corrective controls.
    3. What is a firewall? Explain its role.
    4. Differentiate between IDS and IPS.
    5. Explain defense in depth principle.
    6. How can DDoS attacks be prevented?
    7. What is network segmentation?
    8. Explain VPN and its importance.
    9. Describe methods to defend against phishing attacks.
    10. Write short notes on:
    • Antivirus
    • Encryption
    • MFA

    📌 Quick Summary / Conclusion

    • Defense against network attacks involves prevention, detection, and recovery.
    • Tools like firewalls, IDS/IPS, and antivirus provide protection.
    • Techniques such as encryption, segmentation, and MFA strengthen security.
    • Principles like defense in depth and zero trust are essential.

    👉 In short: Effective network defense requires multiple layers of security working together to protect against various cyber threats.


    Previous topic 5
    Access Control
    Next topic 7
    DOS and DDOS detection and prevention

    Past Papers

    Open this section to load past papers

    Click on Show Past Papers to see past papers.
    On This Page
      Reading Stats
      Est. reading time3 min
      Word count556
      Code examples0
      DifficultyBeginner