Risk Integrity Violations and Confidentiality Breaches
Key security risks are integrity violations and confidentiality breaches.
KEY POINT
Integrity violations can occur when an attacker attempts to change sensitive data without proper authorization.
An example of an integrity violation is when an attacker obtains permission to write to sensitive data and then changes or deletes it. The owner of the data might not detect such a change until it is too late, perhaps when the change has already resulted in tangible loss. Because of the difficulty of detecting changes and the possible cascading consequences of late detection, many businesses treat integrity violations as the most serious threat to their business.
KEY POINT
Confidentiality breaches can occur when an attacker attempts to read sensitive data without proper authorization.
Confidentiality attacks can be extremely difficult to detect because the attacker can copy sensitive data without the owner's knowledge and without leaving a trace.
The risks of both integrity violations and confidentiality breaches are usually managed by enforcing access control in various ways, including the following:
■ Limiting access to network resources using network access control, such as physical separation of networks, restrictive firewalls, and VLANs.
■ Limiting access to files and objects using operating system-based access controls, such as UNIX host security and Windows domain security.
■ Limiting users' access to data by using application-level controls, such as different user profiles for different roles.
■ Using cryptography to protect data outside the application. Examples include encryption to provide confidentiality, and secure fingerprints or digital signatures to provide data authenticity and integrity. (These methods are described in the later "Secure Connectivity" section.)
Figure 10-2 illustrates potential confidentiality and integrity risks to network resources that an outside attacker might exploit. In this sample network, an attacker might do the following if adequate protection is not in place:
■ Access an internal server and copy confidential data (a confidentiality breach)
■ Deface (change) the corporate web page (an integrity breach)
■ Intercept data sent over the Internet between a branch office and the central site, and change or read it in transit (a confidentiality or integrity breach)
Figure 10-2 Integrity and Confidentiality Threats
Public Servers
Data Flow
Figure 10-2 Integrity and Confidentiality Threats
Public Servers
Data Flow

- Core Servers
Continue reading here: NAC Framework and Cisco NAC Appliance
Was this article helpful?
Readers' Questions
-
David1 year ago
- Reply
-
Leslie1 year ago
- Reply
-
mary1 year ago
- Reply
-
asmara omar1 year ago
- Reply
-
Sancho1 year ago
- Reply
-
cora1 year ago
- Reply
-
fethawit1 year ago
- Reply
-
J1 year ago
- Reply