Common Types Of Network Security Vulnerabilities | PurpleSec

Sdílet
Vložit
  • čas přidán 14. 06. 2024
  • Network security vulnerabilities are constantly evolving as threat actors seek new and intuitive ways to gain access to a business’s network. In this video, I’m going to breakdown the most common types of network vulnerabilities that threaten the security of your systems in 2022.
    Video Chapters
    ------------------------------
    00:00 - Introduction
    00:17 - What Is A Network Vulnerability?
    01:34 - What Are The Types Of Network Vulnerabilities?
    02:34 - Malware (Malicious Software)
    09:12 - Social Engineering Attacks
    16:16 - Outdated Or Unpatched Software
    17:33 - Misconfigured Firewalls And Operating Systems
    20:50 - Conclusion
    About The Author
    ------------------------------
    Jason Firch, MBA
    purplesec.us/cyber-security-e...
    Related Videos
    -------------------------
    ► What Is Vulnerability Management? (Explained By Experts)
    • What Is Vulnerability ...
    ► 7 Data Loss Prevention Best Practices
    • 7 Data Loss Prevention...
    ► The 3 Types Of Security Controls
    • The 3 Types Of Securit...
    ► Red Team VS Blue Team: What’s The Difference?
    • Red Team VS Blue Team:...
    ► What Is A Security Operations Center?
    • What Is A Security Ope...
    ► What Are The Types Of Penetration Testing?
    • What Are The Types Of ...
    ► Firewall Penetration Testing: Steps, Methods, & Tools:
    • Firewall Penetration T...
    Resources & Links
    ------------------------------
    What Is A Network Vulnerability?
    purplesec.us/network-vulnerab...
    50 Free Information & Cyber Security Policy Templates
    purplesec.us/resources/cyber-...
    What Is A Network Vulnerability?
    A network vulnerability is a weakness or flaw in software, hardware, or organizational processes, which when compromised by a threat, can result in a security breach.
    Nonphysical network vulnerabilities typically involve software or data. For example, an operating system (OS) might be vulnerable to network attacks if it’s not updated with the latest security patches. If left unpatched a virus could infect the OS, the host that it’s located on, and potentially the entire network.
    Physical network vulnerabilities involve the physical protection of an asset such as locking a server in a rack closet or securing an entry point with a turnstile.
    Servers have some of the strongest physical security controls in place as they contain valuable data and trade secrets or perform a revenue-generating function like a web server hosting an eCommerce site. Often stored in off-site data centers or in secure rooms, servers should be protected with personalized access cards and biometric scanners.
    Prior to investing in security controls, a vulnerability risk assessment is performed to quantify the cost and acceptable loss of the equipment and its function. As with all things in cyber security it’s a balancing act of resources vs functionality that makes for the most practical solutions.
    ► If you need help securing your business from cyber attacks then feel free to check out: purplesec.us
    ► Follow us on Twitter: / purple_sec
    ► Find us on Pinterest: / purple_sec
    #networksecurity #vulnerabilities #cybersecurity
  • Věda a technologie

Komentáře • 42

  • @PurpleSec
    @PurpleSec  Před 3 lety +6

    👋 If you're new here, then consider subscribing to our weekly newsletter featuring the top cybersecurity minds in the industry:
    www.linkedin.com/newsletters/ai-cybersecurity-insights-7058517055238504448/

  • @chatsifieds
    @chatsifieds Před 17 dny

    good lesson, thank you

  • @galladite4924
    @galladite4924 Před 3 lety +6

    Thank you so much! This really helped with my revision :)

    • @PurpleSec
      @PurpleSec  Před 3 lety

      Glad to hear this was useful!

  • @jayneengelgau8452
    @jayneengelgau8452 Před 4 měsíci +1

    Thank you for making this video! It's exactly what I was looking for.

    • @PurpleSec
      @PurpleSec  Před 4 měsíci

      Glad you found this to be valuable’

  • @jmcybersecurity
    @jmcybersecurity Před rokem +2

    Very well laid out. Interesting.

  • @biyafaysalfaisal6635
    @biyafaysalfaisal6635 Před 3 lety +3

    Very Informative video

    • @PurpleSec
      @PurpleSec  Před 3 lety

      Thrilled to hear this was a valuable resource!
      - Jason

  • @RM-gm7lu
    @RM-gm7lu Před 2 lety +2

    Really good presentation! Thanks for sharing

    • @PurpleSec
      @PurpleSec  Před 2 lety

      Thrilled to hear this was useful for you!
      - Jason

  • @rohan8758
    @rohan8758 Před 2 lety +4

    Awesome content & explanation, on you tube , Thanks sir, Keep it up

    • @PurpleSec
      @PurpleSec  Před 2 lety

      Really do appreciate the feedback. More to come soon! Let us know if there are any topics you’d like us to focus on in the future.
      - Jason

    • @rohan8758
      @rohan8758 Před 2 lety

      Sure sir

  • @chrisuk1000
    @chrisuk1000 Před 2 lety +1

    Very clear and concise information, very helpful thanks

    • @PurpleSec
      @PurpleSec  Před 2 lety

      Glad this was useful for you!
      - Jason

  • @TheodoreRavindranath
    @TheodoreRavindranath Před 3 lety +5

    Please boost the volume up in future videos. Thanks!

    • @PurpleSec
      @PurpleSec  Před 3 lety

      Will do. Appreciate the feedback!
      - Jason

  • @CarolinaCowgirl951
    @CarolinaCowgirl951 Před rokem +1

    This is very helpful; thank you!

    • @PurpleSec
      @PurpleSec  Před rokem

      Glad you found value in this!
      - Jason

  • @simonwalker8170
    @simonwalker8170 Před rokem +2

    at 19:42 he should say "The longer a password is USED ..."

  • @llereoj_Seralom
    @llereoj_Seralom Před 3 lety +2

    salamat bro

    • @PurpleSec
      @PurpleSec  Před 3 lety

      Glad this was helpful!
      - Jason

  • @jacquelinemacdonald2036
    @jacquelinemacdonald2036 Před rokem +1

    Thank you for posting this - it's a great video! Well laid out and explained. I would love to use this in my Intro to Computers class, but it's a little too long all on its own. For layout reasons, it would be great to be able to cut out each section to embed it in the course. But CZcams only allows an extraction of a minute of video at a time and our LMS won't render the HTML code with a start and stop time correctly : ( I could just give them the time stamps to start and stop at but these are people just learning how to use computers so I'm really trying to keep it simple. Any recommendations? I could just screen record the sections and cite you with the entire video link beneath the clip, but I would like your permission before doing that (if there's not a better way)!
    -
    I also had a question about Phishing vs. Spear Phishing. Does Phishing become Spear Phishing because the email was only sent to Amy in your example or because she actually has a Bank of America account or both?
    Thanks again!

    • @PurpleSec
      @PurpleSec  Před rokem +1

      Hey Jacqueline! Shoot me an email with this request. I have the slides available as well and we can get your class set up!
      Jason@purplesec.us
      Thanks!
      -Jason

  • @dominiquejoycerivera6549
    @dominiquejoycerivera6549 Před 3 lety +2

    What's the difference between type of cybersecurity threats and types of vulnerabilities

    • @PurpleSec
      @PurpleSec  Před 3 lety +3

      Vulnerabilities are weaknesses or flaws in software or hardware that can be exploited by threat actors. Threats are the mechanisms used to exploit a vulnerability.
      An example of a threat might be a ransomware malware delivered via a phishing email. A vulnerability is exploited when the malware infects a system and locks out authorized users.
      - Jason

  • @CS-wi3ff
    @CS-wi3ff Před 2 lety +2

    what are the skills needed to be a blue teamer ? i want to start from the scratch i dont know where to start ? please help

    • @PurpleSec
      @PurpleSec  Před 2 lety +2

      Start reading books and consuming CZcams videos. I would also recommend getting familiar with Linux and the command console. Be familiar with PowerShell and Python as well. In terms of certifications, the Certified Enterprise Defender (GCED) is solid. Wish you the best of luck!
      - Jason

    • @CS-wi3ff
      @CS-wi3ff Před 2 lety +1

      @@PurpleSec thank you brother

    • @PurpleSec
      @PurpleSec  Před 2 lety +2

      @@CS-wi3ff anytime!
      - Jason

  • @acchitahalgaranna
    @acchitahalgaranna Před 2 měsíci

    Vulnerabilities meant weakpoints and attackers can exploit them so attack types are malwares spoofing ddos social engineering
    Are we taking those attacks also as vulnerabilities
    Please someone explain me
    It means a lot🙏❤️.

  • @beverlysantarelli650
    @beverlysantarelli650 Před 3 lety +3

    Good content but slow down. You talk too fast

    • @PurpleSec
      @PurpleSec  Před 3 lety

      Appreciate the feedback, Beverly!
      - Jason

    • @margaretschachte489
      @margaretschachte489 Před 3 lety +1

      That's funny, I literally just set the video to 1.25x speed because it was too slow. Just shows that everyone absorbs information differently!

    • @PurpleSec
      @PurpleSec  Před 3 lety +1

      @@margaretschachte489 I like looking at it that way vs assuming "everyone's a critic" :)
      - Jason