Side Panel Expand side panel Table of Contents Module Three 3-1 Discussion: Denying DoS Attacks 3-1 Discussion: Denying DoS Attacks Previous Next Listen One of the biggest assets of an organization is information. Stopping the flow of that information can be detrimental to a business. If your organization experiences a denial-of- service (DoS) attack, it may be at risk to lose customers, revenue, and reputation. It is challenging for organizations to report a cyber incident and, even when they do, what they publish can be missing key facts to understanding the full attack picture. For your initial post: · Find a resource outside of your assigned reading that describes a recent DoS attack. Post the link and summarize the attack for your peers. · Identify possible missing information from the resource that would help you prevent similar attacks in your organization. · Explain why there is no incentive for organizations to
report these types of attacks. Rubrics . Discussion Rubric: Undergraduate Start a New Thread Discussion Filter by: All Threads In your response posts, is there any other missing information you can identify? Alternatively, what other steps could you take to protect an organization's data from a DoS attack? To complete this assignment, review the Discussion Rubric. Sort by: Most Recent Activity Least Recent Activity Newest Thread Oldest Thread Author First Name A-Z Author First Name Z-A Author Last Name A-Z Author Last Name Z-A Subject A-Z Subject Z-A · Professor Ostering Week 3 Kick Off Post Contains unread posts Albert Ostering posted Nov 5, 2023 6:46 PM Subscribe Welcome once again to week 3. This week we are focusing on DoS Attacks (And by extension DDoS attacks) We are in an interesting time for Cyber Attacks. Recent Events in Ukraine show how cyber can be used to cause havoc, in a kinetic war situation.
https://www.reuters.com/world/europe/ukrainian- websites-under-nonstop-attack-cyber-watchdog-agency- 2022-03-05/ https://www.helpnetsecurity.com/2022/02/24/cyber- attacks-ukraine/ https://www.zdnet.com/article/ukrainian-govt-sites-banks- disrupted-by-ddos-amid-invasion-fears/ Here are a few articles showing this. MCAs are using multiple techniques to help shape the battlefield, and also cover tracks on their other goals. One big part of this situation, is it is often higher levels that can take actions against these attacks. I mean as a network defender I can apply rate limiting and other defensive measures (Blocking inbound non-established connections that are not creating a new connection for example) but there are a lot of other ways for the MCA to accomplish this. Why companies don't report this? That is a good question. Some things to consider for your replies are: How does this impact our reputation? Could the public misinterpret the release as a loss of customer data? Did we lose any customer data? Is it targeted or was it a collateral damage situation? Is there any regulatory requirements to report this? more 0 Unread 0 Unread 0 Replies 0 Replies 3 Views 3 Views