Cyber Security
Overview
Cyber Security is a crucial topic in the Computer Knowledge section of MPESB Group 1/2/3 exams. With increasing digitization of government services and the push toward e-Governance in Madhya Pradesh, questions on online threats, protection mechanisms, and safe computing practices appear regularly. This topic tests your awareness of how malicious software works, how to defend against online attacks, and best practices for maintaining digital hygiene.
For exam success, focus on understanding the types of malware and their characteristics, how protective tools like antivirus and firewalls function, recognizing social engineering attacks like phishing, and memorizing password security guidelines. Questions are typically direct and definition-based, though scenario-based questions testing practical awareness are increasingly common.
Key Concepts
- Cyber Security refers to the practice of protecting computer systems, networks, and data from digital attacks, unauthorized access, damage, or theft.
- Malware (malicious software) is the umbrella term for any software intentionally designed to cause harm—includes viruses, worms, trojans, ransomware, and spyware.
- Virus is a program that attaches itself to legitimate files and spreads when the infected file is executed; it requires human action to propagate.
- Worm is self-replicating malware that spreads automatically across networks without needing a host file or user intervention.
- Trojan Horse disguises itself as legitimate software but performs malicious actions once installed; unlike viruses, it does not self-replicate.
- Firewall acts as a security barrier between a trusted internal network and untrusted external networks, filtering incoming and outgoing traffic based on security rules.
- Phishing is a social engineering attack where attackers impersonate trusted entities through fake emails or websites to steal sensitive information like passwords and credit card details.
- Authentication verifies user identity before granting access; strong authentication combines something you know (password), something you have (OTP token), and something you are (biometric).
Formulas / Key Facts
| Term | Definition / Key Point |
|---|---|
| Virus | Requires host file; spreads through infected files; needs user action |
| Worm | Self-replicating; spreads via networks automatically; no host needed |
| Trojan | Disguised as useful software; does not replicate; creates backdoors |
| Ransomware | Encrypts victim's files and demands payment for decryption key |
| Spyware | Secretly monitors user activity and collects personal information |
| Adware | Displays unwanted advertisements; may track browsing habits |
| Antivirus | Detects, prevents, and removes malware using signature and heuristic methods |
| Firewall | Monitors and controls network traffic; can be hardware or software based |
| Phishing | Fake emails/websites mimicking trusted sources to steal credentials |
| HTTPS | Secure web protocol with encryption; look for padlock icon in browser |
| Two-Factor Authentication (2FA) | Adds second verification layer beyond password |
| CERT-In | Indian Computer Emergency Response Team—nodal agency for cyber security |
Worked Examples
Example 1: Identifying Malware Type
Question: A program that appears to be a useful PDF reader but secretly installs a backdoor allowing remote access to your computer is called: (A) Virus (B) Worm (C) Trojan Horse (D) Adware
Solution:
- Step 1: The program disguises itself as useful software (PDF reader)—this is characteristic of a Trojan.
- Step 2: It does not replicate itself, ruling out virus and worm.
- Step 3: It creates unauthorized access (backdoor), not advertisements, ruling out adware.
- Answer: (C) Trojan Horse
Example 2: Recognizing Phishing
Question: You receive an email from "support@statebankofindla.com" asking you to click a link and verify your account details urgently. What type of attack is this?
Solution:
- Step 1: Check the sender domain—"indla" instead of "india" is a deliberate misspelling.
- Step 2: Urgent language pressuring immediate action is a phishing tactic.
- Step 3: Legitimate banks never ask for credentials via email links.
- Answer: Phishing attack
Example 3: Firewall Function
Question: Which of the following is NOT a function of a firewall? (A) Blocking unauthorized access (B) Filtering network traffic (C) Removing viruses from files (D) Monitoring data packets
Solution:
- Step 1: Firewalls control network traffic (A, B, D are correct functions).
- Step 2: Removing viruses is the job of antivirus software, not firewalls.
- Answer: (C) Removing viruses from files
Common Mistakes
- Confusing virus and worm → Wrong: "Worms need infected files to spread." Correct: Worms are self-replicating and spread automatically through networks without host files; viruses require a host and user action.
- Thinking firewall removes malware → Wrong: "Firewall will clean my infected computer." Correct: Firewall only blocks/filters network traffic; you need antivirus software to detect and remove existing malware.
- Assuming HTTPS means a website is trustworthy → Wrong: "The site has a padlock, so it's safe." Correct: HTTPS only means the connection is encrypted; phishing sites can also use HTTPS. Always verify the domain name.
- Using same password everywhere → Wrong: "One strong password is enough for all accounts." Correct: If one site is compromised, all your accounts become vulnerable. Use unique passwords for different services.
- Ignoring software updates → Wrong: "Updates are just new features I don't need." Correct: Updates often patch security vulnerabilities; delaying them exposes your system to known exploits.
Quick Reference
- Virus needs host file + user action; Worm self-replicates across networks automatically.
- Trojan = deception (looks useful, acts harmful); does NOT replicate.
- Firewall = network traffic filter; Antivirus = malware detector and remover.
- Phishing signs: misspelled domains, urgent language, requests for sensitive data via links.
- Strong password: minimum 8 characters, mix of uppercase + lowercase + numbers + symbols, no personal info.
- Enable Two-Factor Authentication (2FA) wherever available for critical accounts.
- CERT-In is India's national nodal agency for responding to cyber security incidents.