Fill in the Blanks
SECTION 5: INTERNET AND ITS USES - 5.3 SOLUTIONS AND PREVENTIONSOnline version
5.3 SECTION OF SYLLABUS
Access
levels
In
many
computer
systems
,
user
control
a
user
?
s
.
This
often
involves
having
different
of
access
for
different
people
.
For
example
,
in
a
hospital
it
would
not
be
appropriate
for
a
cleaner
to
have
to
medical
data
about
a
patient
.
However
,
a
consultant
would
need
access
to
this
vital
.
Proxy
servers
act
as
an
intermediate
between
the
user
and
a
web
server
:
Features
of
proxy
servers
:
»
allows
internet
traffic
to
be
filtered
;
it
is
possible
to
access
to
a
website
if
necessary
»
keeps
users
?
IP
addresses
which
improves
security
»
if
the
internet
traffic
is
valid
,
access
to
the
web
server
is
allowed
»
if
the
internet
traffic
is
invalid
,
access
to
the
web
server
is
»
it
is
possible
to
block
requests
from
certain
addresses
»
prevents
direct
to
a
web
server
by
sitting
between
the
user
and
the
web
server
»
if
an
attack
is
launched
,
it
hits
the
proxy
server
instead
?
this
helps
to
prevent
,
DoS
,
and
so
on
»
used
to
direct
invalid
traffic
away
from
web
servers
which
gives
additional
»
by
using
the
feature
known
as
a
,
it
is
possible
to
speed
up
access
to
information
/
data
from
a
website
;
when
the
website
is
first
visited
,
the
home
page
is
stored
on
the
proxy
server
;
when
the
user
next
visits
the
website
,
it
now
comes
from
the
proxy
server
cache
instead
,
giving
much
faster
access
.
»
proxy
servers
can
also
act
as
.
An
area
where
access
levels
are
very
important
is
in
networks
with
this
type
of
application
,
there
are
usually
four
levels
:
1
public
access
(
this
refers
to
the
data
from
the
general
public
can
access
)
2
friends
(
only
people
as
?
friends
?
by
the
owner
of
the
data
can
see
certain
data
)
3
custom
(
this
allows
the
user
to
further
refine
what
data
can
be
seen
by
?
friends
?
allowing
them
to
exclude
certain
from
selected
people
)
4
data
owner
(
this
is
data
only
the
owner
of
the
data
can
see
)
.
In
this
type
of
application
,
users
are
allowed
to
use
settings
rather
than
to
decide
the
level
of
access
(
for
more
on
this
see
later
in
this
section
)
.
Anti
-
spyware
software
and
removes
spyware
programs
illegally
on
a
user
?
s
computer
system
.
The
software
is
based
on
one
of
the
following
methods
:
»
rules
?
in
this
case
,
the
software
looks
for
typical
features
which
are
usually
with
spyware
thus
identifying
any
potential
issues
»
file
structures
?
in
this
case
,
there
are
certain
file
structures
associated
with
spyware
which
allows
them
to
be
by
the
software
.
The
general
features
of
anti
-
spyware
are
:
»
and
remove
spyware
already
installed
on
a
device
»
prevent
a
user
from
spyware
»
files
to
make
the
data
more
secure
in
case
it
is
?
spied
?
on
»
encryption
of
keyboard
strokes
to
help
remove
the
risk
posed
by
the
aspects
of
some
spyware
»
access
to
a
user
?
s
webcam
and
microphone
(
the
software
stops
the
spyware
taking
over
the
control
of
a
user
?
s
webcam
and
microphone
which
can
be
used
to
collect
without
the
user
?
s
knowledge
)
»
for
signs
that
the
user
?
s
personal
information
has
been
stolen
and
warns
the
user
if
this
has
happened
.
Authentication
refers
to
the
ability
of
a
user
to
prove
who
they
are
.
There
are
three
common
factors
used
in
authentication
:
»
something
you
(
for
example
,
a
password
or
code
)
»
something
you
(
for
example
,
a
mobile
phone
or
)
»
something
which
is
to
you
(
for
example
,
)
.
Passwords
are
used
to
access
to
data
or
systems
.
They
should
be
hard
to
and
changed
to
retain
any
real
level
of
security
.
Passwords
can
also
take
the
form
of
for
example
,
on
a
mobile
phone
.
In
addition
to
protecting
access
levels
to
computer
systems
,
passwords
are
frequently
used
when
accessing
the
internet
.
It
is
important
that
passwords
are
protected
;
some
ways
of
doing
this
are
described
below
:
»
run
anti
-
spyware
software
to
make
sure
that
your
passwords
aren
?
t
being
back
to
whoever
put
the
spyware
on
your
computer
»
change
passwords
on
a
basis
in
case
they
have
come
into
the
possession
of
another
user
,
illegally
or
accidentally
»
passwords
should
not
be
to
crack
(
for
example
,
your
favourite
,
name
of
a
or
favourite
music
artist
)
;
passwords
are
grouped
as
either
strong
(
hard
to
crack
or
guess
)
or
weak
(
relatively
easy
to
crack
or
guess
)
»
strong
passwords
should
contain
:
?
at
least
one
letter
?
at
least
one
value
?
at
least
one
other
keyboard
(
such
as
@
,
*
,
&
,
etc
.
)
?
an
example
of
a
strong
password
would
be
:
Sy12@#TT90kj
=
0
Biometrics
can
be
used
in
much
the
same
way
as
passwords
as
a
way
of
a
user
.
Biometrics
relies
on
certain
characteristics
of
beings
;
examples
include
:
»
scans
»
retina
scans
»
face
recognition
»
recognition
.
Images
of
fingerprints
are
against
previously
scanned
fingerprint
images
stored
in
a
;
if
they
match
,
then
a
user
has
been
correctly
recognized
.
The
system
compares
patterns
of
?
ridges
?
and
?
valleys
?
that
are
.
The
accuracy
of
the
scan
is
about
around
1
in
5000
.
Fingerprint
scanning
techniques
have
the
following
benefits
as
a
form
of
security
:
»
fingerprints
are
unique
,
therefore
this
technique
can
improve
security
since
it
would
be
difficult
to
a
person
?
s
fingerprints
»
other
security
devices
(
such
as
magnetic
cards
to
gain
entry
to
a
building
)
can
be
or
even
stolen
which
makes
them
less
effective
»
it
would
be
impossible
to
?
sign
in
?
for
somebody
else
since
the
would
match
with
only
one
person
on
the
database
»
fingerprints
can
?
t
be
;
a
person
always
has
them
!
What
are
the
drawbacks
of
fingerprint
scanning
?
»
it
is
relatively
to
install
and
set
up
»
if
a
person
?
s
fingers
are
damaged
through
an
injury
,
this
can
have
an
effect
on
the
scanning
»
some
people
may
regard
any
biometric
device
as
an
of
civil
liberties
.
Retina
scans
use
light
to
scan
the
pattern
of
blood
vessels
in
the
retina
(
at
the
back
of
the
eye
)
;
it
is
a
rather
unpleasant
technique
requiring
a
person
to
sit
totally
still
for
10
to
15
seconds
while
the
scan
takes
place
;
it
is
very
since
nobody
has
yet
found
a
way
to
the
blood
vessels
patterns
.
The
accuracy
is
about
1
in
10
million
.
Two
-
step
verification
requires
two
methods
of
to
verify
who
a
user
is
.
It
is
used
predominantly
when
a
user
makes
an
purchase
using
a
credit
/
debit
card
as
payment
method
.
For
example
,
suppose
Kate
wishes
to
buy
a
new
camera
from
a
website
.
She
logs
into
the
website
using
her
computer
.
This
requires
her
to
enter
a
name
and
a
password
,
which
is
step
1
of
the
authentication
process
.
To
improve
security
,
an
eight
-
digit
(
called
a
one
-
time
pass
code
)
is
sent
back
to
her
either
in
an
email
or
as
a
text
message
to
her
mobile
phone
(
the
mobile
phone
has
already
been
by
Kate
on
the
website
as
the
second
stage
of
the
authentication
process
)
.
Kate
now
enters
this
eight
-
digit
PIN
into
her
computer
and
she
is
now
to
buy
the
camera
.
In
summary
:
Automatic
software
mean
software
on
computers
and
mobile
phones
/
tablets
is
kept
up
-
to
-
.
Sometimes
this
is
done
overnight
or
when
you
log
off
the
device
.
These
updates
are
since
they
may
contain
patches
that
update
the
software
(
to
protect
against
malware
)
or
improve
the
software
performance
(
for
example
,
removal
of
bugs
and
addition
of
new
features
)
.
The
only
downside
to
this
is
the
potential
for
updates
to
disrupt
your
device
following
installation
.
If
this
happens
,
the
user
either
has
to
wait
for
another
patch
to
put
this
right
,
When
emails
are
sent
to
you
,
there
are
several
actions
you
always
need
to
take
before
opening
them
or
activating
any
links
in
them
.
1
.
The
email
address
itself
;
no
company
will
use
an
email
address
such
as
:
@gmail
.
com
Carefully
check
the
part
of
the
address
after
the
?
@
?
which
should
the
company
?
s
name
;
2
.
The
of
the
email
and
bad
of
words
is
a
clear
indication
of
a
potential
scam
.
3
.
Misspelling
of
names
in
a
link
are
very
common
errors
found
in
emails
sent
by
scammers
and
fraudsters
.
4
.
This
is
known
as
typo
squatting
where
names
close
to
the
genuine
are
used
to
you
.
5
.
Suspicious
links
;
destination
addresses
should
the
rest
of
the
email
.
A
firewall
can
be
either
software
or
hardware
.
It
sits
between
the
user
?
s
computer
and
an
external
(
for
example
,
the
internet
)
and
information
in
and
of
the
computer
.
This
allows
the
user
to
decide
whether
or
not
to
allow
communication
with
an
external
source
and
it
also
a
user
that
an
external
source
is
trying
to
access
their
computer
.
The
main
tasks
carried
out
by
a
firewall
include
:
»
to
the
?
traffic
?
between
user
?
s
computer
(
or
internal
network
)
and
a
public
network
(
for
example
,
the
internet
)
»
checks
whether
incoming
or
outgoing
data
meets
a
given
set
of
»
if
the
data
fails
the
criteria
,
the
firewall
will
the
?
traffic
?
and
give
the
user
(
or
network
manager
)
a
warning
that
there
may
be
a
security
issue
»
the
firewall
can
be
used
to
all
incoming
and
outgoing
?
traffic
?
to
allow
later
interrogation
by
the
user
(
or
network
manager
)
»
criteria
can
be
set
so
that
the
firewall
access
to
certain
undesirable
sites
;
the
firewall
can
keep
a
of
all
undesirable
IP
addresses
»
it
is
possible
for
firewalls
to
help
prevent
or
hackers
entering
the
user
?
s
computer
(
or
internal
network
)
Privacy
settings
are
the
available
on
web
browsers
,
social
networks
and
other
websites
that
are
designed
to
who
can
access
and
see
a
user
?
s
personal
profile
.
They
were
discussed
earlier
in
the
section
on
access
rights
.
Privacy
settings
can
refer
to
:
»
a
?
do
not
track
?
setting
;
the
intention
here
is
to
stop
websites
and
using
browsing
data
which
leads
to
improved
security
»
a
check
to
see
if
payment
methods
have
been
saved
on
websites
;
this
is
a
useful
safety
feature
which
prevents
the
need
to
type
in
payment
details
again
(
every
time
you
have
type
in
financial
details
,
there
will
be
a
risk
of
data
)
»
safer
browsing
;
an
alert
is
given
when
the
browser
encounters
a
potentially
dangerous
(
the
undesirable
website
will
be
in
a
?
blacklist
?
stored
on
the
user
?
s
computer
)
»
web
browser
privacy
options
(
e
.
g
.
storing
browsing
history
,
storing
cookies
)
»
website
advertising
opt
-
outs
;
a
website
may
be
tracked
by
any
number
of
third
parties
who
gather
about
your
browsing
behaviour
for
advertising
purposes
.
»
apps
;
for
instance
,
the
sharing
of
data
in
map
apps
can
be
switched
off
.
Secure
Layer
(
SSL
)
is
a
type
of
?
a
set
of
rules
used
by
computers
to
communicate
with
each
other
across
a
network
.
This
allows
data
to
be
sent
and
received
over
the
internet
.
When
a
user
logs
onto
a
website
,
SSL
the
data
?
only
the
user
?
s
computer
and
the
web
server
are
able
to
make
sense
of
what
is
being
transmitted
.
A
user
will
know
if
SSL
is
being
applied
when
they
see
or
the
small
in
the
status
bar
at
the
top
of
the
screen
.
The
address
window
in
the
browser
when
https
protocol
is
being
applied
,
rather
than
just
http
protocol
,
is
quite
different
:
|