Glossary of cybersecurity
able to communicate information
about themselves connecting to other
objects and users. The objective is to
ensure that the Internet traces a map
of the real world, giving an electronic
identity to things and places in the
physical environment. The potential
applications of the IoT are multiple:
from the industrial applications
(productive processes), to logistics
and info mobility, up to the energetic
efficiency, remote assistance and
environment protection.
to access a false website. The phisher
uses the data it gets to acquire goods,
transfer money or only as a “bridge”
for further attacks.
Reverse engineering
An analysis designed to understand the
functioning of hardware and software
products in order to reengineer
them, for example, to enhance their
functions or in order to use them for
different and further aims with respect
to the original ones.
SCADA – Supervisory Control and Data
Acquisition
Systems employed in the monitoring
and control of plants and equipment in
sectors such as traffic control (air, rail,
automobile), the control of systems
of fluid stransportation (aqueducts,
pipelines, etc.), of the distribution
of the electrical energy, managing
production lines that realize industrial
processes and remote environmental
detection surveys.
ISP – Internet Service Provider
A company that provides commercial
internet access and other services
through a telephone line such as
Dialup and ISDN or broadband
connections like optical fibers or DSL.
Malware
Contraction of “Malicious software”.
A program injected in a computer
system, generally surreptitiously, with
the intention of compromising privacy,
integrity or the availability of data, of
the applications or of the operative
systems of the target. To this general
category belong, for example: viruses,
worm, trojans, backdoor, spyware,
dialer, hijacker, rootkit, scareware,
rabbit, keylogger, logic bombs, etc.
SOC – Security Operations Center
A center that provides services aimed
at the security of computer systems
in firms (internal SOC) or external
clients. A SOC can also supply
incident response services: in this case
it acts as a Computer Security Incident
Response Team(CSIRT), even if this
function often depends on a separate
entity within the firm.
Phishing
A cyber attack having, generally, as
objective the wheedling of sensitive
information (user-id, password, credit
card numbers, PIN) by sending false
emails to a large number of addresses.
The emails are designed to convince
the receivers to open an attachment or
TCP/IP – Transmission Control Protocol/
Internet Protocol
A set of standard protocol developed
in the second half of the' 70s by the
Defence Advanced Research Project
43