Protecting Data - SY0-601 CompTIA Security+ : 2.1

Sdílet
Vložit
  • čas přidán 31. 05. 2024
  • Security+ Training Course Index: professormesser.link/sy0601
    Professor Messer’s Course Notes: professormesser.link/601cn
    Professor Messer's Practice Exams: professormesser.link/601ytpe
    Discount Exam Vouchers: professormesser.com/vouchers/
    Professor Messer Recommended Study Materials: professormesser.link/601rs
    - - - - -
    There are many different ways to protect our application data. In this video, you’ll learn about data sovereignty, data masking, encryption, tokenization, and more.
    - - - - -
    Subscribe to get the latest videos: professormesser.link/yt
    Calendar of live events: professormesser.com/calendar/
    Frequently Asked Questions: professormesser.link/faq
    FOLLOW PROFESSOR MESSER:
    Professor Messer website: professormesser.com/
    Discord chat: professormesser.com/discord
    Twitter: professormesser.com/twitter
    Facebook: professormesser.com/facebook
    Instagram: professormesser.com/instagram
    LinkedIn: professormesser.com/linkedin
  • Věda a technologie

Komentáře • 23

  • @mr.e9778
    @mr.e9778 Před rokem +2

    when it comes to IRM, deos this relate to the Zero-trust, RBAC and other similar access control concepts ?

  • @Brandoncollins-dp8op
    @Brandoncollins-dp8op Před rokem +5

    what if the attacker knows about the token (in the video it's 4545 ...) and then just sends that to the merchant payment server so then it goes step 6 and 7 to gain approval, wouldn't that allow the attacker to use the person's credit card by knowing his/her token is?

    • @professormesser
      @professormesser  Před rokem +18

      The tokens are only good for one use, so any transactions using a previous token would be rejected.

  • @tatertotbot
    @tatertotbot Před 11 měsíci +7

    After learning about these attacks from your videos, it seems like Target is quite the target!

  • @Kovar99YT
    @Kovar99YT Před rokem

    so is tokenization, spoofing the plain text basically ?, because its still plain text and its not encrypted but it is just something else

  • @theirresistableE
    @theirresistableE Před rokem +3

    so tokenization can only be used with a phone or similar device to interact with the token service server? It won't work when using the chip or slide on a plastic card itself, for example?

    • @professormesser
      @professormesser  Před rokem +5

      That's correct, the card is going to use the actual card numbers for the transaction instead of a token.

  • @slyvax3359
    @slyvax3359 Před 3 lety +8

    With tokenization, does the token server give a new token once it is used, or does it wait for you to attempt a purchase?

  • @mohammadbrazi7272
    @mohammadbrazi7272 Před 3 lety +7

    Is the process of tokenization the same if we used the credit card directly to pay instead of our phones?

    • @professormesser
      @professormesser  Před 3 lety +23

      Nope. If you use your credit card, then you're sending your actual credit card information through the system.

    • @mohammadbrazi7272
      @mohammadbrazi7272 Před 3 lety +1

      @@professormesser Thank you Professor!

  • @tomkozlowski5205
    @tomkozlowski5205 Před 2 lety +1

    Thanks

  • @MetaphoricMinds
    @MetaphoricMinds Před 9 měsíci +1

    @ 9:14, couldn't you just capture the token and replay it? What prevents that from being successful? Or is it a new token every time?

    • @professormesser
      @professormesser  Před 9 měsíci +1

      A token can't be reused, so even if it was somehow captured it would be worthless.

  • @halo2bullseye922
    @halo2bullseye922 Před 4 měsíci

    Thanks for vid!

  • @littlemarduk22
    @littlemarduk22 Před 21 dnem

    Professor Messer... you gotta do cissp one day

  • @cwaydeeznutz
    @cwaydeeznutz Před rokem +2

    So with tokenization, does that mean it is safer to pay with a phone than with an actual credit card?

    • @professormesser
      @professormesser  Před rokem +4

      In many ways, using a mobile payment service is often more secure than using a physical credit card.