⚔️ Common Network Attacks (Man-in-the-Middle, DoS & DDoS)
Not every cyberattack targets files or passwords. Some attacks focus on intercepting communication or making online services unavailable. In this lesson, we'll cover three common network attacks:
🕵️ Man-in-the-Middle (MITM) 🚫 Denial of Service (DoS) 🌍 Distributed Denial of Service (DDoS)
🕵️ 1. Man-in-the-Middle (MITM) Attack A Man-in-the-Middle (MITM) attack occurs when an attacker secretly places themselves between two parties that are communicating. Instead of data flowing directly: User ➜ Website It becomes: User ➜ Attacker ➜ Website The attacker attempts to intercept or modify the communication.
🎯 Real-Life Example Imagine sending a sealed letter to your bank. A thief intercepts the letter, reads it, reseals it, and forwards it to the bank without either side realizing. That's the basic idea behind a MITM attack.
🛡️ How to Reduce the Risk • Use HTTPS websites • Avoid sensitive activities on untrusted public Wi-Fi • Keep devices updated • Use VPNs on untrusted networks • Verify website certificates when appropriate
🚫 2. Denial of Service (DoS) A Denial of Service (DoS) attack attempts to make a website or service unavailable by overwhelming it with traffic or requests from a single source.
🎯 Example A small online store receives far more requests than it can handle from one attacking system. Legitimate users struggle to access the website.
🌍 3. Distributed Denial of Service (DDoS) A Distributed Denial of Service (DDoS) attack is similar to DoS, but the traffic comes from many compromised devices instead of one. These devices may be part of a botnet controlled by an attacker.
🎯 Example Thousands of compromised computers send requests to the same website simultaneously. The website may slow down significantly or become unavailable to legitimate users.
📊 DoS vs DDoS DoS | DDoS One attacking source | Multiple attacking sources Easier to identify | Harder to mitigate Lower attack scale | Much larger attack scale Targets service availability | Targets service availability
🛡️ How Organizations Defend Against These Attacks • Firewalls • Web Application Firewalls (WAF) • DDoS protection services • Load balancing • Traffic monitoring • Rate limiting • Intrusion Detection and Prevention Systems (IDS/IPS)
🌍 Real-Life Scenario A ticket booking website launches sales for a major event. Suddenly, it receives an enormous volume of malicious traffic. Without protection: ❌ The website may become unavailable. With DDoS protection: ✅ Suspicious traffic can be filtered, helping legitimate users continue to access the service.
📝 Quick Task Think about your favorite shopping or streaming website. Ask yourself: • What would happen if millions of fake requests were sent to it? • How would that affect real customers? • Why is high availability important for businesses?
💡 Easy Trick to Remember 🕵️ MITM = Someone secretly intercepts communication 🚫 DoS = One attacker overwhelms a service 🌍 DDoS = Many attackers overwhelm a service together
🚀 Pro Tip Cybersecurity isn't only about protecting data—it's also about ensuring that systems remain available. Maintaining availability is one of the three pillars of the CIA Triad (Confidentiality, Integrity, Availability).
Double Tap ❤️ For More