Four major approaches and corresponding policies for network intrusion

Source: Internet
Author: User

Computer Virus intrusion mainly involves four methods: source code embedding attack type, Code replacing attack type, system modification type, and shell additional type. For network intrusion, I personally think it mainly includes active intrusion and Passive intrusion.

Active intrusion mainly refers to the user's active execution of viruses and trojan programs, such as Browsing webpages with malicious viruses and trojan programs embedded in the website. These trojan programs (viruses) most of these vulnerabilities are exploited by users. When users access a webpage, they will actively download and execute such Trojans. There is also a popular USB flash drive virus that can be spread and executed through USB flash drives. This type of attack is very concealed and hard to detect. When users connect to the Internet, Trojans (viruses) the client can control the server that is infected with Trojans (viruses.

Passive intrusion mainly refers to attacks initiated by intruders, such as scanning system passwords, using remote overflow vulnerabilities in the system for overflow attacks, and SQL injection attacks. If you have security awareness, the chances of successful intrusion are low.

Through analysis and research, the following measures for network computers will greatly reduce security risks:

(1) Update OS patches in a timely manner. After the system is installed, do not connect to the Internet immediately. Instead, install the latest security patches for the operating system, especially those for high-risk vulnerabilities, many Web pages use these vulnerabilities to execute Trojans.

(2) install anti-virus software and firewall, and update the virus database in a timely manner. The virus database of anti-virus software can be updated in time to effectively detect and kill viruses and Trojans.

(3) carefully download the software. Currently, many programs run on computers are pirated and cannot be used for source verification. Many download programs are bundled with Trojans, so do not run programs with unknown origins, download software from a large official website as much as possible.

(4) back up the system and data. After the system is installed, you must back up data and the operating system. It is best to create a Ghost file to restore the system or data immediately after a problem occurs.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.