Tuesday, June 17, 2008

The threat of online security: How safe is your data? by katrina

Nowadays, threat of online security around the world in greater numbers than ever before such as virus attack, unauthorized access, theft of proprietary information, and denial of service(DOS)attack. All these attack action are targeting to overload the computers' resources in stealing credit card information, bank account passwords, and other personal information. Safety of our data in e-commerce are depended on:-
  • Confidentiality
  1. assurance of data privacy and accuracy
  2. keeping private or sensitive information from being disclosed to unauthorized individuals, entities, or processes
  • Integrity
  1. assurance that stored data has not been modified without authorization
  2. a message that was sent is the same message that was received
  • Availability
  1. assurance that access to data, the web site or the EC data service is timely, available , reliable and restricted to authorized users
  • Authentication
  1. assurance the real identity of an individual , computer, computer program or EC web site
  2. verifies the sender of the message is who the person or organization claims to be in transmissionns
  3. requires evidence in the form of credentials, which can take a variety of forms, including something known(e.g:password), something possessed(e.g:a smart card), or something unique(e.g:signature)
  • Authorization
  1. a process of determining what the authenticated entity is allowed to access and what operation it is allowed to perform
  • Nonrepudiation
  1. assurance that online customers or trading partners cannot falsely deny their purchase of transaction including providing:-
  • (a.) the sender (customer) of data with proof of delivery
  • (b.) the recipient (EC company) with proof of the sender's identity
  • (C.) the protect and ensure trust in EC transaction with digital signatures are used to validate the sender and time stamp of the transaction so it cannot be later claimed that the transaction was unauthorized or invalid

No comments: