Saturday, November 16, 2019
Factors Contributing to Road Accidents
Factors Contributing to Road Accidents Road accident is the global tragedy with ever-raising trend. In Malaysia, it represents a major public problem because of the high number of victims involved and also the seriousness of the consequences for the victim themselves and to their families as well. There are many factors that can contribute to the road accidents. Some researchers have made several researches and agreed that the major factors that contributing to the road accidents is because of the bad weather, condition of road, human behavior when driving, condition of the vehicle and the leniency of the law enforcement. Relating to the previous researches, the focus of our study is to identify the trend of road accidents in Shah Alam and the factors that contributing to the accidents. Besides that, the study also focuses on the strategies and ways to reduce the rate of road accidents in Shah Alam. The study will be conducted in Shah Alam which the respondents are among the road users including pedestrians, motorcyclists, car drivers and etc. Contributing Factors Bad Weather According to a report from the Institute for Road Safety Research (SWOV) in Netherland, the term weather can be described as the state of atmosphere in term of air pressure, temperature, humidity, clouds, wind and precipitation. The weather conditions will affect the accident rates and exposure to the traffic hazards. A layer of water on the road surface due to rain can cause the vehicles to lose contact with the road surface and to skid. Besides that, Ellinghaus (1983) has stated that the object carried due to the strong wind, fallen trees and broken branches can also cause the traffic disturbance. Gusts of wind can push the high vehicles such as busses and vans especially when they are on the bridges. A study from Saudi Arabia (Al-Ghamdi, 2009) reports the number of crash being higher during the fog compared to the other weather condition. The crash happened because of the limited visibility during driving due to the fog. In a fog, the droplets of water are so small and light that they remain floating in the air. This will lead to limited visibility to the drivers because the light is diffused by the fog droplets. As a result ofà bad weather, road surfaces may become slippery or slick. Accumulation of water, slush, ice and snow can present hazards to motorists. The manner in which other drivers react to the weather, whether through an extreme excess of caution or a disregard of the dangers posed by the weather conditions, can also contribute to the probability of an accident. When weather conditions render driving unsafe, drivers should attempt to find a safe place to get off the road and wait for the weather to improve. If you are driving at a time of year when you are likely to have your windshield splattered with dirty water, mud, slush, or salt, before driving make sure that you have a good supply of windshield solvent. In Malaysia, The majority of the investigated cases occurred during fine weather. The proportion of investigated cases during fine weather for 2008 is over presented, with more than 70%, and is significantly higher than those that occurred in any other weather condition, especially in 2009 and 2010. Based on MIROS the data in terms of lighting condition show that for the total number of investigated cases from 2007 through 2010, crashes that occurred during daylight, when it is safe to say that visibility is not a major concern. However, crashes during dark condition and without lighting, which is related to the said issue, are also significant and come in second place after daylight in all four years in terms of the number of investigated cases. Through report by MIROS, the KSI and fatality indexes according to the environmental components of the crashes, namely the vicinity area, weather conditions and lighting conditions. In terms of the environmental components of the crashes, fatality index is recorded highest for crashes happening at agricultural areas (2.86), during drizzling condition (4.84) and when the surrounding is dark without any lighting (2.67). Meanwhile, KSI index is highest for crashes that occurred at agricultural areas (3.97), during rainy day (7.56), and during dawn or dusk (7.44). This shows that bad condition of weather and surrounding may affect the driver view which can make a higher tendency of accident to occur during that particular situation. Driving attitude Whilst commercial vehicles have frequently been found to have high accident involvement rates, only one commercial driver training program has been identified so far in this Asia region. As part of the two year input in Pakistan funded by DFID in the early 1980s, a two week bus driver re-training program was provided. Bus driving standards are observed before and after the course and while bus driving standards showed improvement when drivers knew they were being observed, this improvement did not carry over to other times. This demonstrated the difference between driving skill and driving behavior and the need of enforcement and incentive schemes to encourage good driving standards. Surveys in driver knowledge and driver behavior were undertaken in several countries worldwide including Pakistan, Indonesia, Thailand and Sri Lanka. Driver behavior was assessed at pedestrian crossing, traffic signals and priority junctions. As a follow up driver knowledge surveys were conducted in Pakistan and Thailand and both these studies have been published as separate Transport Research Laboratory (TRL) reports. While the Central Road Research Institute (CRRI) also worked on the area of private knowledge with drivers surveyed on sign comprehension and traffic awareness, the CRRI has spent much effort in developing a driver reflexes testing system (DRTS) which seeks to eliminate human bias and includes psycho physical tests. Work in this area has continued over the past decade with a few DRTS systems in use in India. Human errors play an important role in contributing to the increasing numbers of accident rates. People keen to ignore this factor as they feel they can handle the situation and avoid accidents. There are many types of human errors during driving such as excessive speeding and deviant behavior, taking alcohol during driving and failed to obey the rules and regulations of the road. All of these can be categorized as the risky driving attitudes which may cause road accidents. Many of accidents that were reported are caused by human errors. According to Nasasira (2009), there are about 80% of the road accidents reported in Uganda are related to the attitude and behavior of the drivers. This data shows that the driving attitude is the major cause of road accidents. According to Sabey and Taylor (1980), 95% of the accidents caused by the human factors. Driving attitude was identified as the most central of these factors. Besides that, research by Jashua and Garber (1992) also stated that the most common accident type have resulted from drivers faults. Driving attitudes also include the behavior to excessive speeding. Vehicle speed is often credited as being an important cause and contributory factor of road accidents. This behavior may cause danger not only for the driver himself but also for other drivers. Most drivers tend to speed exceed the limit fixed by the government. For example, the National Speed Limits is 90km/h but drivers tend to speed exceed the limit which may cause danger to themselves and others. According to Solomon (1964), Munden (1967) and Bohlin (1967), all claimed that the probability of serious injury or death are greater at high impact speeds. This shows that the impact of excessive speeding may not only cause accident but may also cause a serious injury and death. Road Condition Geometric design standards are often taken from motorized countries and thus are not always appropriate given the presence of pedestrians and other vulnerable road users and non-motorised vehicles in the road traffic stream. There has been much effort in safety engineering research to minimise the risk of accidents and DFID sponsored the development and publication of Towards Safer Roads (TSR) which was the first major manual to address safety engineering and planning in developing countries. TSR also introduced the practice of safety audits (a standardized procedure for checking the safety concerns of road projects from the feasibility stage through to final construction and operation). Formal safety audits have also begun to be used recently in Nepal, Malaysia, Fiji and a number of other developing countries including Bangladesh. Identifying safety impacts of geometric design modifications was a research focus in PNG and was recently reviewed for the latest version of the Highway Design and Maintenance Programme (HDM4). Recent research funded by Sweroad included the development of a traffic safety effects catalogue to include the various findings of the impact of geometric design and traffic control features on road accidents and accident rates. Several projects both on implementation and the research side have focused on traffic engineering and traffic management issues with applied road safety benefits. For example, Australian Aid projects in Papua New Guinea and Western Samoa follow this pattern as does the past research in CRRI on roadside development and road signs. The research recently started on the design and implementation issues of median installation for example are illustrative of the types of research being undertaken in this area. In Malaysia, it was reported that many of the cases of road collision involve the vehicle leaving the roadway and hits the fixed objects along the roadside such as the trees and guardrails. This may cause by the slippery road due to the rain and even because of the poorly designed and constructed roads. Most of the roads in Malaysia are pavement designed. In pavement design, there are several characteristics that need to be considered such as skid resistance and the texture depth. These characteristics will determine the condition of the road whether it is risky or not. According to Davis (2001), the moisture on the pavement surface may prevent vehicle tires from making adequate contact with the road surface. This will increase the level of slippery on the road which may cause road accident. Vehicles condition Vehicles are one of the factors which can contribute to the road accidents. This is because the vehicle that we ride is a medium for us that put us in the road and if the vehicles itself are not in a good shape and condition, the tendency for the accident to occur is more likely compare to a well manage vehicle condition. A well-designed and well-maintained vehicle, with good brakes, tires and well-adjusted suspension will be more controllable in an emergency and thus be better equipped to avoid collisions. Based on the statistics which have been produced by MIROS, during 2007-2010, the brake defects in vehicle have recorded 20 cases while tires defect have recorded 14 cases. So, that is why some mandatoryà vehicle inspectionà schemes include tests for some aspects of roadworthiness have been conduct by the JPJ in order to make sure that the vehicles that is going to be used are in a good condition, The design of vehicles has also evolved to improve protection after collision, both for vehicle occupants and for those outside of the vehicle. For example, in modern day car, a lot of safety features have been include likes Anti-lock braking system (ABS)à to prevent skidding allowing the driver to remain in control. The vehicle stops more quickly as theres more friction between the road and tires, traction controlà to prevents skidding while accelerating so the car can quickly escape a dangerous situation and safety cageà to strengthens the cabin section to protect people in a roll-over accident. Much of this work was led by automotive industry competition and technological innovation. Some crash types tend to have more serious consequences,à Rolloversà have become more common in recent years, perhaps due to increased popularity of tallerà SUVs,à people carriers, and minivans, which have a higherà center of gravityà than standard passenger cars. Rollovers can be fatal, especially if the occupants are ejected because they were not wearingà seat beltsà (83% of ejections during rollovers were fatal when the driver did not wear a seat belt, compared to 25% when they did). à After a new design ofà Mercedes Benzà notoriously failed a moose test (sudden swerving to avoid an obstacle), some manufacturers enhance suspension usingà stability controlà linked to anà anti-lock braking systemà to reduce the likelihood of rollover. After retrofitting these systems to its models in 1999-2000, Mercedes saw its models involved in fewer crashes. Now about 40% of new US vehicles, mainly the SUVs, vans and pickup trucks that are more susceptible to rollove r, are being produced with a lowerà center of gravityà and enhanced suspension withà stability controlà linked to itsà anti-lock braking systemà to reduce the risk of rollover and meet US federal requirements that mandate anti-rollover technology by September 2011. According to the research by Chin Shu Pei (2009), she has stated that the relationship between the road surface and the type of tire, tread pattern, tire pressure and tire condition may affect the road surface friction and cause the vehicles to skid off the road. She also added that tires in poor condition will not have adequate braking friction on any pavement surface. Motorcyclists have little protection other than theirà clothing; this difference is reflected in the casualty statistics, where they are more than twice as likely to suffer severely after a collision. In 2005 there were 198,735 road crashes with 271,017 reported casualties on roads in Great Britain. This included 3,201 deaths (1.1%) and 28,954 serious injuries (10.7%) overall. Of these casualties 178,302 (66%) were car users and 24,824 (9%) were motorcyclists, of whom 569 were killed (2.3%) and 5,939 seriously injured (24%). In Malaysia, it is recorded thatà 4,067 motorcyclists died in 2010 by MIROS. This represents about 60 per cent of the 6,745 road fatalities. In 2008, 3,898 motorcyclists were killed out of a total of 6,527 fatalities. Motorcyclist deaths on average accounted for 60 per cent of the total road fatalities in the last decade. MIROSà road safetyà engineering and environmentà researchà director, Jamilah Mohd Marjan said the spike in deaths was due toà the riseà of theà number of riders. As we can see in the another country where both Transport Research Laboratory (TRL) in United Kingdom and Indian Institute of Technology (ITT) IN India have conducted a research into vehicle design and injury control. In Papua New Guinea the MAAP system identified many casualties occurring in run-off accidents in open top pickups. Open top pickups are a common public transport mode and are often heavily loaded with passengers in Papua New Guinea. TRL concluded research into vehicle design to minimize such injuries. IIT have modeled crash impacts of bus fronts and three wheeler motorized scooter taxis to determine how the design can be altered to reduce injury severity to pedestrians hit by buses and the Three Wheeler Scooter Taxi (TST) drivers, passengers and pedestrians in TST crashes. TSTs are found to be unsafe for all three user groups (drivers, pedestrians and passengers at velocity impacts as low as 15 to 20 kilometers per hour). Minor modifications were found to make a significant difference in the safety to all three user groups in crashes up to speeds of 25 to 30 kilometers per hour. IIT research also identifies structural weakness in motor cycle helmet design. Earlier work had identified a majority of head impacts and two wheel crashes to be sustained on the side of the head yet VIS standards did not include a side impact test. IIT devised and implemented a side impact test and when all helmets in general were found to be inadequate in side impact, BIS amended the motorcycle helmet standards. Delhi Police have sponsored this research and later publicized the findings and distributed guidelines for customers and the relative rankings of the different helmets. Around the same time that ITT was studying the relative safety of motorcycle helmets in Delhi, Central Road Research Institute (CRRI) was also studying the use of motorcycle helmets and conducting opinion surveys on the use of motorcycle helmets in several metropolitan cities where motorcycle helmet usage was mandatory. These studies all helped to influence road safety policy in India. Leniency of the Law Enforcement While most if not all countries in Asia and Pacific have revised their road regulations in the past 15 years, little bilateral technical assistance seems to have been provided in this sector nor does there seem to have been local research effort in such countries despite many countries sharing the same base for road regulations (The British Motor Vehicle Code 1939). Little exchange of information and experience has occurred and traffic regulations have generally been revised individually by each country. No regional manual has been produced similar to such manuals that exist in Africa and other regions of the world. Traffic Police training programmes have been developed by the Central Road Research Institute (CRRI) with sponsorship from the Ministry of Surface Transport. National workshops on traffic police training were also organised in 1992 and 93. Traffic police from 23 metropolitan cities were trained before the project was discontinued. Ongoing at the same time was CRRI research project analysing the past 10 years of traffic violations from Delhi covering 1980 to 1990. The analysis revealed misguided priorities with administrative violations being enforced more frequently than the more dangerous moving violations. Highway patrolling was quite effective when it was introduced in Pakistan in the early 1980s as it discouraged overtaking and targeted road safety parking, both of which were known to contribute to road accidents in Pakistan.
Wednesday, November 13, 2019
Symbols and Symbolism in Nathaniel Hawthornes The Scarlet Letter :: Scarlet Letter essays
Symbolism in The Scarlet Letter In The Scarlet Letter by Nathaniel Hawthorne, the theme revolves around a sin that has been committed. It takes places in the seventeenth century in the Massachusetts Bay Colony. Hester Prynne, who had an affair with the local Reverend Arthur Dimmesdale, commits the sin. Roger Chillingworth is Hester's husband while the affair is taking place. Because of the affair, Hester and Arthur have a daughter named Pearl. The sin that Hester commits is adultery. Hawthorne uses a variety of symbols throughout The Scarlet Letter, and he symbolizes the scarlet letter "A" in several ways. In the Puritan community, "A" is a sign of punishment, and the red "A" is worn on the chest of the offender's clothing. The "A" may mean adultery, Angel and Able. Hester, after years of helping, serving and sympathizing with the townspeople, was viewed by the Puritans to mean Able rather than adulteress; "A" meant Able; "so strong was Hester Prynne, with a woman's strength" (186). For example, when Hester has won some respect from the Puritans, "Such helpfulness was found in her, -so much... that many people refused to interpret the scarlet "A" by its original signification" (186). To the Puritans the letter "A" also symbolizes an Angel. "A great red letter in the sky, Ãâthe letter A..." showed up at Governor Winthrop's death in the sky" (182). "For, as our good Governor Winthrop was made an angel this past night..." (182). The meaning of the "A" is also different to each of the characters. To Hester it is a constant reminder of humiliation and of the sin that she committed. Dimmesdale believes that the "A" reminds him of his own guilt, and there is no way that he can forgive himself. The "A" to Pearl, a young girl, is a bright and mysterious curiosity. Hester Prynne is an English woman who is punished by having to wear the embroidered scarlet letter "A" on the breasts of her clothing receives public humiliation by standing in front of the townspeople of Boston. The "A" that Hester wears is "... in fine red cloth, surrounded with an elaborate embroidery and fantastic flourishes of gold thread..." (58). Hester Prynne, through the eyes of many Puritans, is an extreme sinner; she has gone against the Puritan ways, committing adultery. For this harsh sin, she must wear a symbol of shame for the rest of her life.
Monday, November 11, 2019
UNC Conboy
An International trade theory, grounded In the work of Adam Smith and David Richard, that focuses on the Importance of comparative advantage obtained through differences in natural or acquired economic advantages is referred to as: a. Classical trade theory b. Factor proportion theory c. Product life cycle theory d. Competitive advantage theory 2. Paul German's ââ¬Å"realistâ⬠perspective embraces which of the following conclusions: a. Countries compete with each other much like companies compete with each other ND must therefore engage in similar strategic behaviors b.Government intervention in the market Is often essential due to imperfections that allow for the formation of monopolies and oligopolies In lucrative Industry segments c. Economic growth In one country must come at the expense of economic growth in another, therefore countries must protect domestic Industry in many instances d. Market imperfections due in fact exist, but the prospects for improving the situation through strategic trade policy is overstated by those in favor of government intervention 3.Cluster theory suggests that companies obtain resources as a result of geographic proximity to other related and supportive Industries primarily as a result of: a. Information spillovers b. Lower shipping costs c. Region specific subsidies d. Access to a common labor pools 4. A theory of Internationalization, observed In the wine Industry In the assigned readings, that focuses on the development of relationships between producers, suppliers, competitors, and government to obtain information and resources necessary to complete globally is referred to as: a. Pascal model b. Network model .Innovation model d. Leverage model 5. Michael Porters Diamond Model focuses on all of the following, EXCEPT: a. The Importance of International competition to drive technological Innovation b. C. Sophisticated domestic demand that encourages new product and service development d. The presence of related and su pportive industries in the domestic market 6. Mercantilism refers to policies and practices designed to: a. Encourage international trade through the creation of innovative products and services b. Remove regulatory and economic barriers to international competition c.Create a trade surplus by subsidizing domestic firms and limiting foreign competition d. Discourage all international trade to promote national independence and self- sufficiency 7. An international trade theory, grounded in the work of Wassail Limonite, that focuses on trade cycles emerging from production initially by a parent company, then by a foreign subsidiary, and ultimately by foreign competitors is referred to as: a. Classical trade theory d. Competitive advantage theory 8. Advocates of Porter's Diamond Model believe governments should support mommies industries by engaging in which of the following activities: a.Subordination of industries of national importance to improve their competitive position b. Imposi tion of barriers to prevent foreign competitors from entering domestic markets c. Provision of supportive public infrastructure and education needed to support emerging industries d. The government should play no role in supporting or developing domestic industries 9. Cluster theory focuses primarily on the creation of competitive advantage through: a. Ongoing investment in research and development to encourage innovation b.Intense price competition designed to bring down the cost of products and services c. Transportation costs associated with bringing goods and services to market d. Interactions between geographic concentrations of interconnected companies 10. The case study of wine clusters indicates that firms in this industry located in both Brazil and France have effectively leveraged which of the following cluster resources to facilitate the internationalization process: a. Affordable input costs b. Regional reputation and culture c. Manufacturing expertise d. Labor spillover s
Saturday, November 9, 2019
Social Engineering
Identity Theft: Social Engineering December 5, 2011 Daniel Sama & Stacey Smith Sr Computer Ethics CIS-324, Fall 2011 Strayer University Identity Theft: Social Engineering December 5, 2011 Daniel Sama & Stacey Smith Sr Computer Ethics CIS-324, Fall 2011 Strayer University Abstract Social Engineering from the outset may seem like a topic one might hear when talking about sociology or psychology, when in fact it is a form of identity theft. To an information technology (IT) professional, Social Engineering is a form of voluntary, unintentional identity theft. Many victims fail to realize they are being victimized until it is too late, while many others may never know. This paper will provide a definition of social engineering as it applies to information technology while introducing some the pioneers of social engineering; those who have, essentially, written the book on social engineering. We will provide real world examples of how social engineers apply their trade and provide important points to consider with regards to social engineering attacks. In conclusion we will propose counter-measures, which individuals and organizations should take in order to guard against social engineering. Social Engineering as defined by IT professionals is the practice of deceiving someone, either in person, over the phone or using a computer, with the express intent of breaching some level of security, either personal or professional (Ledford, 2011. ) Implementing quality risk analysis solutions while maintaining data integrity is a crucial element of successful system modeling; within the context of social engineering in the workplace, there are several factors that can make implementing those solutions rather challenging. Social engineering is a type of intrusion, which relies heavily on human interaction and usually involves the tricking of other people to break normal, everyday security policies. Social engineers (SE) often prey on the natural helpfulness of other people. When analyzing and attempting to conduct a particular attack, a SE will commonly appeal to vanity or authority as well as simple eavesdropping to acquire the desired information. Social engineering, in a nutshell is a hackerââ¬â¢s clever manipulation of the natural human tendency to trust. This will provide the unauthorized access to the valued information, system or machine. Never interrupt your enemy when he is making a mistakeâ⬠(Bonaparte, n. d. ) This is a mantra for all successful SEââ¬â¢s, as they take any and all information about and from a target for later use against said target. The SE will gather as much information as possible about their target in advance, most of which is readily available online, usually , with just a few keystrokes; anything from hobbies to their favorite lunchtime meal. This information helps build a connection and instills trust with the target. With this trust, seemingly innocuous information will come flooding out of the target. Akin to fictional spies like James Bond and Michael Weston, SEââ¬â¢s assume a persona that is not their own and attempt to establish with their target a reasonable justification to fulfill a request. The aforementioned tactics allow the SE to maintain the facade and leave an out to avoid burning his or her information source. Bottom line; a good SE is a good actor. ââ¬Å"All of the firewalls and encryption in the world will never stop a gifted social engineer from rifling a corporate database or an irate employee from crashing the system,â⬠says pioneer Kevin Mitnick, the worldââ¬â¢s most celebrated hacker who popularized the term. Mitnick firmly states in his two books The Art of Deception and The Art of Intrusion that itââ¬â¢s much easier to trick someone into giving a password for a system than spending the time using a brute force hack or other more traditional means to compromise the integrity of sensitive data. Mitnick who was a world famous controversial computer hacker in the late 1980ââ¬â¢s was sentenced to 46 months in prison for hacking into the Pacific Bell telephone systems while evading the Federal Bureau of Investigation (FBI). The notorious hacker also allegedly wiretapped the California Department of Motor Vehicles (DMV), compromised the FBI and Pentagonââ¬â¢s systems. This led Mitnick to spend the majority of his time incarcerated in solitary confinement due to the governmentââ¬â¢s fear of him attempting to gain control of more sensitive information. Mitnick states in both of his aforementioned books that he compromised computers solely by using passwords and codes acquired as a result of social engineering. As a result, Mitnick was restricted from using any forms of technology upon his release from prison until approximately 5 years ago. Kevin Mitnick is now the CEO of Mitnick Security Consulting, a computer security consultancy. Social engineering awareness is a being addressed at the enterprise level as a vital corporate security initiative. Security experts advise that a properly trained staff, not technology is the best asset against social engineering attacks on sensitive information. The importance placed upon security policies is imperative when attempting to combat this type of attack. Combat strategies require action on both physical and psychological levels. This form appeals to hackers because the Internet is so widely used and it evades all intrusion detection systems. Social engineering is also a desirable method for hackers because of the low risk and low cost involved. There are no compatibility issues with social engineering; it works on every operating system. Thereââ¬â¢s no audit trail and if executed properly its effects can be completely devastating to the target. These attacks are real and staggering to any company, which is why strong corporate policies should be measured by access control and implementing specific procedures. One of the advantages of having such policies in place is that it negates the responsibility of an employee having to make a judgment call or using discretion regarding a social engineerââ¬â¢s request. Companies and their subsequent staffs have become much too relaxed as it pertains to corporate security initiative. These attacks can potentially be costly and unnerving to management as well as the IT department. Social engineering attacks commonly take place on two different levels: physical and psychological. Physical settings for these attacks can be anything from your office, your trash, over the telephone and even online. A rudimentary, common form of a social engineering attack is social engineering by telephone. Clever social engineers will attempt to target the companyââ¬â¢s help desk while fooling the help desk representative into believing they are calling from inside the company. Help desks are specifically the most vulnerable to social engineering attacks since these employees are trained to be accommodating, be friendly and give out information. Help desk employees are minimally educated and get paid a below average salary so it is common for these individuals to answer one question and move right along to the next. This can potentially create an alarming security hole when the proper security initiative is not properly set into place. A classic example of this would be a SE calling the company operator and saying something like ââ¬Å"Hi, Iââ¬â¢m your AT&T rep; Iââ¬â¢m stuck on a pole. I need you to punch a few buttons for me. â⬠This type of attack is directed at the companyââ¬â¢s help desk environment and nearly always successful. Other forms attack target those in charge of making multi-million dollar decisions for corporations, namely the CEOââ¬â¢s and CFOââ¬â¢s. A clever SE can get either one of these individuals to willingly offer information pertinent to hacking into a corporationââ¬â¢s network infrastructure. Though cases such as these are rarely documented, they still occur. Corporations spend millions of dollars to test for these kinds of attacks. Individuals who perform this specialized testing are referred to as Social Engineering Auditors. One of the premier SE Auditors in the industry today is Chris Hadnagy. Hadnagy states that on any given assignment, all he has to do is perform a bit of research on the key players in the company before he is ready to strike. In most cases he will play a sympathy card, pretending to be a member of a charity the CEO or CFO may belong to and make regular donations to. In one case, he called a CEO of a corporation pretending to be a fundraiser for a charity the CEO contributed to in the past. He stated they were having a raffle drawing and named off prizes such as major league game tickets and gift cards to a few restaurants, one of which happened to be a favorite of the CEO. When he was finished explaining all the prizes available he asked if it would be alright to email a flier outlining all the prizes up for grabs in a PDF. The CEO agreed and willingly gave Hadnagy his corporate email address. Hadnagy further asked for the version of Adobe Reader the company used under the guise he wanted to make sure he was sending a PDF the CEO could read. The CEO willingly gave this information up. With this information he was able to send a PDF with malicious code embedded that gave him unfettered access to the CEOââ¬â¢s machine and in essence the companyââ¬â¢s servers (Goodchild, 2011). Not all SE attacks occur completely over the phone. Another case that Hadnagy reports on occurred at a theme park. The back story on this case is he was hired by a major theme park concerned about software security as their guest check-in computers were linked with corporate servers, and if the check-in computers were compromised a serious data breach may occur (Goodchild, 2011). Hadnagy started this attack by first calling the park posing as a software salesman, peddling newer PDF-reading software which he was offering free on a trial basis. From this phone call he was able to obtain the version of PDF-reader the park utilized and put the rest of his plan in action. He next headed to the park with his family, walking up to one of the employees at guest services asking if he could use one of their terminals to access his email. He was allowed to access his email to print off a coupon for admission to the park that day. What this email also allowed was to embed malicious code on to the servers and once again gained unfettered access to the parks servers. Hadnagy proposes six points to ponder in regards to social engineering attacks: * No information, regardless of it personal or emotional nature, is off limits for a SE seeking to do harm. It is often the person who thinks he is most secure who poses the biggest vulnerability to an organization. Executives are the easiest SE marks. * An organizations security policy is only as good as its enforcement. * SEââ¬â¢s will often play to the employees good nature and desire to be helpful * Social Engineering should be a part of an organizations defense strategy. * SEââ¬â¢s will often go for the low- hanging fruit. Everyone is a target if security is low. The first countermeasure of social engineering prevention begins with security policies. Employee training is essential in combating even the most cunning and sly social engineers. Just like social engineering itself, training on a psychological and physical basis is required to alleviate these attacks. Training must begin at the top with management. All management must understand that social engineering attacks stem from both a psychological and physical angle therefore they must implement adequate policies that can mitigate the damage from an attacker while having a robust, enforceable penalty process for those that violate those policies. Access control is a good place to start when applying these policies. A competent system administrator and his IT department should work cooperatively with management in hashing out policies that control and limit userââ¬â¢s permission to sensitive data. This will negate the responsibility on the part of an average employee from having to exercise personal judgment and discretion when a potential attack may occur. When suspicious calls for information occur within the company, the employee should keep three questions in mind: 1. Does the person asking deserve this information? 2. Why is she/he asking for it? 3. What are the possible repercussions of giving up the requested information? If there is a strong policy in place with enforceable penalties in place, these questions will help to reduce the potential for a SE attack (Scher, 2011). Another countermeasure against a social engineering attack is to limit the amount of information easily available online. With Facebook, Twitter, Four-Square and the like, there is an overabundance of information readily available at any given moment online. By just drastically limiting the amount of information available online it makes the SEââ¬â¢s task of information gathering that much more difficult. Throughout all of the tactics and strategies utilized when cultivating social engineering expertise, itââ¬â¢s extremely difficult to combat human error. So when implementing employee access control and information security, it is important to remember that everyone is human. This type of awareness can also be costly so itââ¬â¢s important to adopt a practical approach to fighting social engineering. Balancing company morale and pleasant work environment is a common difficulty when dealing with social engineering prevention and awareness. It is vital to keep in perspective that the threat of social engineering is very real and everyone is a potential target. References Bonaparte, N. (n. d. ). BrainyQuote. com. Retrieved December 6, 2011, from BrainyQuote. com Web site: http://www. brainyquote. com/quotes/authors/n/napoleon_bonaparte_3. html Goodchild, J. (2011). Social Engineering: 3 Examples of Human Hacking. Retrieved November 28, 2011 Retrieved from www. csoonline. om Web site: http://www. csoonline. com/article/663329/social-engineering-3-examples-of -human-hacking Fadia, A. and Manu, Z. (2008). Networking Intrusion Alert: An Ethical Hacking Guide to Intrusion Detection. Boston, Massachusetts. Thompson Course Technology. 2008. Ledford, J. (2011). Identity Theft 101, Social Engineering. Retrieved from About. com on December 1, 2011. Retrieved from: http://www. idtheft. about. com/od/glossary/g/Social_Enginneering. htm Long, J. and Mitnick, K. (2008. ) No Tech Hacking: A Guide to Social Engineering, Dumpster Diving and Shoulder Surfing. Burlington, Massachusetts. Syngress Publishing Inc. 2008. Mann, I. Hacking the Human. Burlington, Vermont: Gower Publishing, 2008. Mitnick, K. and Simon, W. The Art of Deception. Indianapolis, Indiana: Wiley Publishing Inc. 2002. Mitnick, K. and Simon, W. (2006. ) The Art of Intrusion. Indianapolis, Indiana: Wiley Publishing Inc. 2006. Scher, R. (2011). Is This the Most Dangerous Man in America? Security Specialist Breaches Networks for Fun & Profit. Retrieved from ComputerPowerUser. com on November 29, 2011. Retrieved from: http://www. social-engineer. org/resources/CPU-MostDangerousMan. pdf
Wednesday, November 6, 2019
Greek and Latin Elements essays
Greek and Latin Elements essays When given an assignment to make-up a word for a Latin Elements class, one would think that the assignment could be very stressful. When sitting down and trying to accomplish it, you can see it is fun and enjoyable. The word Propassible is a word that you will not see in the English Dictionary, for is one that was put together, based on real life experiences. The word Propassible means to be able to endure. Its etymological history is as follows. The prefix, Pro comes from the Latin word Pro. The base, pass, comes from the Latin word Passus. The suffix, which is ible, comes from the Latin word. The meanings of these elements are as follows: The base Pro means to be for something. The base pass means to endure or suffer. The Suffix ible means to be able to. There are many ways in which this word may be used in context. It can be used when describing someone that was able to go through life, getting passed a lot of things that life gave to them, such as dealing with Cancer. This is a great word to be used when describing someone having an illness and that person being able to deal with it. When somebody is diagnosed with an illness, one that is also treatable, although they know and realize that they will be OK. They also must know that there are boundaries that they are going to have to go through before they get well again. So you can see how this word can tie into everyday life. Its obvious where this word may not be able to be used. In cases where someone that goes through a traumatic time, but at the same time, all that one did was complain and give off negative energy based on whatever it was that they were going through at the time. There are many sentences that may be looked at in which you are able to see the word in context. One would be: Susan became a very propassible person after her illness. You are able to see in this sentence how the word, is being used. For one, it doesnt sound...
Monday, November 4, 2019
The surface below Ai's handcuff Essay Example | Topics and Well Written Essays - 750 words
The surface below Ai's handcuff - Essay Example The ââ¬Å"Jade Handcuffsâ⬠represents superb creativity and aesthetic taste of Ai, but more significantly, it is a powerful indictment to the injustice imposed on him by the government that suppresses liberty and democracy. The complex issues behind the simple-looking craftwork are noteworthy and deserve to be reflected upon. Ai Weiwei was born in 1957, Beijing. He is always recognized as a reputable artist who has been crafting a variety of art works throughout his career and also a cultural arbiter in terms of his heavy condemnation of the Chinese Communist Party by the public media. ââ¬Å"The Jade handcuffsâ⬠is fairly small in scale, has nine serrates, and it was carved out from black Jade stone. According to Lisson gallery, this art piece was initially sold for 70,000 Euros in 2013 and subsequently made its debut in Aiââ¬â¢s first retrospective show: According To What? This craftwork signifies Aiââ¬â¢s 81 days in detention by Chinese government in 2011. After his release, he used the exact image of the handcuff used on him in jail to create this piece which was carved from jade stone which is a precious Chinese material that is often used as family heirlooms in ancient China. Jade is also a symbolic stone because it is used to represent and reminiscent of the prosperous and Chinaââ¬â¢ s imperial past. The sublime quality of black jade gives the artwork a warm smooth touch. His brilliant choice of medium recalls an ancient artistic heritage while at the same time referring to the repressive nature of the current political system.2 Regardless of the simple appearance of Aiââ¬â¢s handcuff, the craftsmanship involved in its production is quiet complicated. Ai worked with a highly skillful carver while making his handcuffs. The carversââ¬â¢ skill is particularly evident in the interlocking rings that form the chain, which were neither joined nor glued, but rather cut of the same single
Saturday, November 2, 2019
Technologies for Business Research Proposal Example | Topics and Well Written Essays - 1500 words
Technologies for Business - Research Proposal Example 5. It is critical to note that success and failure of such technologies also depends upon the way you project yourself and your company. Normally, small and start up businesses are largely dependent upon the person who is running the whole show therefore the business vision as well as strategic direction of the company which it is going to take. 6. The available technologies which can serve the basic purpose functionality as well as advanced functionalities for the firm include operating systems, PHP, .NET, Java Beans, J2EE, Java Scripting, FLASH, MySQL, ORACLE, SQL SERVER, SAAS and AJAX. 7. These technologies are easily available at relatively low expect few technologies such as Oracle etc. Start up businesses can easily integrate them into viable information technology solutions to remain competitive. 8. It is also important to note that these technologies offer different opportunities however, on the other hand there are associated risks with using such technologies also and start up businesses, due to their lack of expertise in each area, may find it difficult to utilize all such technologies to their fullest advantage. "The purpose of an operating system is to organize and control hardware and software so that the device it lives in behaves in a flexible but predictable way."(http://computer.howstuffworks.com).1 There are normally two types of operating system which are in use. These are: MS -Windows Operating System 1. Microsoft Windows Operating system is one of the most widely used operating systems in the world. 2. It is used in more than 90% of the computers in use. 3. It is based on graphical user interface technology. 4. There are different versions of this operating system as from time, Microsoft has made changes to its system in order to accommodate new and more demanding technological requirements. 5. It is not that much costly and can run on any machine regardless of hardware configuration. Other operating systems such as Apple Mac can only run on the PCs made by Apple itself. Linux 1. Linux is the only open source freeware operating system in the world which is easily available. 2. It is technically one of the most sophisticated operating system and is mostly run on the servers meant for networking and storage requirements. 3. Linux is based on UNIX based operating system and support different programming languages. 4. This operating system however would be only suitable if business is willing to run some online services and require on-going server support. Other Technologies PHP 1. PHP is one of the scripting languages which are used for writing dynamic and interactive websites. 2. PHP is highly flexible and robust and can be imbedded into HTML. 3. This is an easy to use language and can be used for developing dynamic websites such as online web stores, shopping carts etc. 4. One of
Subscribe to:
Posts (Atom)