Reference no: EM133955995
Assignment:
With 30% of phishing attacks targeted at businesses with fewer than 250 employees, small and medium-sized businesses are a major target for cybercriminals looking to steal identities and credit card information with high spending limits.
Despite this growing threat, most small businesses (SMBs) are not taking proactive measures to protect against cybercriminals. In fact, for every 10 SMBs, at least three are not taking any measures to protect their business against security threats, leaving private data exposed to cybercriminal activity. With the median fraud loss for a small to medium-sized business coming in at about $200,000, many SMBs that are breached have no other option but to close up shop. And disturbingly, only 12% of SMBs have a breach preparedness plan in place.
To demonstrate just how effortlessly cybercriminals are targeting and exploiting SMBs, CSID reinforced the need for data breach mitigation by executing an experiment. The idea? Develop a mock business, build its presence online and watch as it becomes a target for real cybercriminals to hack. And thus, Jomoco was born, a fictitious coconut water company with two fabricated employees, Rachel and Richard. CSID established the virtual presence of Jomoco in a similar way a start-up would: buy a URL, set up a web server and create employee business email addresses. The team developed additional personal profiles for Jomoco's two employees - an Xbox Live account for Rachel, a Facebook account for Richard, and personal emails for both - to mimic the cyber footprints that might exist for genuine small business owners.
Questions
1. Explain phishing attacks with an example.
2. List and explain four security threats that Jomoco may face.
3. Jomocco started up by purchasing a URL, web server and emails. A website is designed and built for the organization. What security measures can be implemented to protect the website vigorously. List and explain two security measures.