{"id":141,"date":"2025-05-28T00:59:22","date_gmt":"2025-05-28T00:59:22","guid":{"rendered":"https:\/\/sites.wp.odu.edu\/cyberimpact1\/?page_id=141"},"modified":"2025-06-27T01:25:21","modified_gmt":"2025-06-27T01:25:21","slug":"cyse-300","status":"publish","type":"page","link":"https:\/\/sites.wp.odu.edu\/williamjohnson\/cyse-300\/","title":{"rendered":"CYSE 300"},"content":{"rendered":"<h1 class=\"p1\" style=\"text-align: center\">Introduction to Cybersecurity<\/h1>\n<p>This course provides an overview of the field of cybersecurity. It covers core cybersecurity topics including computer system architectures, critical infrastructures, cyber threats and vulnerabilities, cryptography, information assurance, network security, and risk assessment and management. Students are expected to become familiar with fundamental security concepts, technologies, and practices. This course provides a foundation for further study in cybersecurity.<\/p>\n<p data-start=\"428\" data-end=\"786\">I completed a research paper titled \u201cMarriott Under Fire,\u201d which examined the 2018 data breach involving Marriott International and the Starwood hotel chain. This attack compromised the personal data of approximately 500 million guests due to vulnerabilities in outdated reservation systems and poor data management during the merger.<\/p>\n<p class=\"p1\" style=\"text-align: center\"><strong>Marriot Under Fire<\/strong><\/p>\n<p class=\"p1\" style=\"text-align: left\">\nData breaches are increasingly common in today&#8217;s digital landscape. According to IBM, a<br \/>\ndata breach is any security incident where unauthorized parties gain access to sensitive or<br \/>\nconfidential information, such as personal data (e.g., Social Security numbers, bank account<br \/>\ndetails, healthcare data) and corporate data (e.g., customer records, intellectual property,<br \/>\nfinancial information). A significant cybersecurity breach occurred in 2018 when Marriot<br \/>\nInternational experienced an external malware attack that exposed personal information of<br \/>\napproximately 500 million guests.<br \/>\nMarriott International bought Starwood in 2016. In 2018, the Starwood Preferred Guest<br \/>\nprogram merged with the Marriott loyalty program. However, the attack on the Starwood<br \/>\ndatabase occurred due to trojan malware exploiting vulnerabilities in their outdated Microsoft<br \/>\npoint-of-sales reservation system, highlighting the system&#8217;s security weaknesses. Hackers would<br \/>\nattack a hotels system because of its details dealing with personal information (names, dates of<br \/>\nbirths, credit card info, and addresses of their customers) and the simple fact that most customers<br \/>\nuse the same password for multiple accounts it makes it easier for a hacker to access other<br \/>\naccounts. Another vulnerability of the hospitality industry is their relaxed security mechanisms<br \/>\nmaking it easy for hackers to get inside their systems.\u201d On September 7, 2018, a contractor<br \/>\nnamed Accenture, who supports and manages the databases of Starwood Hotels and Resorts for<br \/>\nMarriott International, noticed an unusual SQL query\u201d (Amanulla, Niyaz 2024). This<br \/>\nobservation prompted them to let Marriott International know.<br \/>\nThe aftermath of this monstrous attack led to Marriotts\u2019 brand going through great losses<br \/>\nthat affected their revenue and reputation due to the corporation\u2019s negligence in discovering the<br \/>\nincident in the first stages of the merger which led to them being victims of the second largest<br \/>\nJohnson 3<br \/>\ndata breach. Marriot ended up paying a huge fine due to the implementation of the General Data<br \/>\nProtection Regulation (Manglani 2024). Meanwhile the Customers lost trust in the luxurious<br \/>\ncompany once they were informed of the data breach, and the fact that Starwood has had<br \/>\nexperience with data being leaked to the Darknet.<br \/>\nSecurity measures that could have been used to prevent the attack from happening are<br \/>\ndeploying data leak prevention and prevention mechanisms where UpToDate servers and<br \/>\nequipment could have been installed to better prepare for an attack. Marriot could have<br \/>\nconducted a background check on Starwood and seen they have been attacked before and could<br \/>\nhave corrected the issue before the merger. Customer awareness could have helped by customers<br \/>\nhaving stronger passwords and 2 factor authentication making it harder for hackers to access<br \/>\ntheir data.<br \/>\nEven after data breaches are common now days this study has made me aware of how to<br \/>\nprevent my own personal information from being hacked, also how cyberattack can grow when it<br \/>\ngoes undetected and neglected by companies. Hackers are getting smarter by the day, so our job<br \/>\nis to stay sharp by raising awareness of the newest information and keeping up to date equipment<br \/>\nto mediate these efforts.<\/p>\n<h2 data-start=\"256\" data-end=\"315\"><strong data-start=\"259\" data-end=\"315\">Lab Report: Using Active Directory in the Enterprise<\/strong><\/h2>\n<p data-start=\"317\" data-end=\"527\"><strong data-start=\"317\" data-end=\"334\">Student Name:<\/strong> Stevie Johnson<br data-start=\"349\" data-end=\"352\" \/><strong data-start=\"352\" data-end=\"363\">Course:<\/strong> Cybersecurity Fundamentals<br data-start=\"390\" data-end=\"393\" \/><strong data-start=\"393\" data-end=\"409\">Institution:<\/strong> Old Dominion University<br data-start=\"433\" data-end=\"436\" \/><strong data-start=\"436\" data-end=\"450\">Lab Title:<\/strong> Using Active Directory in the Enterprise<br data-start=\"491\" data-end=\"494\" \/><strong data-start=\"494\" data-end=\"513\">Date Completed:<\/strong> [Apr 25, 2025]<\/p>\n<hr data-start=\"529\" data-end=\"532\" \/>\n<h3 data-start=\"534\" data-end=\"550\"><strong data-start=\"538\" data-end=\"550\">Overview<\/strong><\/h3>\n<p data-start=\"552\" data-end=\"901\">Active Directory (AD) is a critical component in enterprise-level Windows environments, serving as a centralized database for managing users, computers, groups, and other resources across a network. Through Active Directory, administrators can enforce security policies, streamline user access, and maintain consistent configurations across systems.<\/p>\n<p data-start=\"903\" data-end=\"1198\">This lab focused on exploring the structure and functionality of Active Directory, including the creation and management of AD objects, organizational units (OUs), and Group Policy Objects (GPOs). We simulated real-world administrative tasks typically performed by Windows system administrators.<\/p>\n<h3 data-start=\"2740\" data-end=\"2768\"><strong data-start=\"2744\" data-end=\"2768\">Results and Analysis<\/strong><\/h3>\n<ul data-start=\"2770\" data-end=\"3200\">\n<li data-start=\"2770\" data-end=\"2845\">\n<p data-start=\"2772\" data-end=\"2845\">Successfully created and managed OUs to reflect organizational structure.<\/p>\n<\/li>\n<li data-start=\"2846\" data-end=\"2953\">\n<p data-start=\"2848\" data-end=\"2953\">Demonstrated the ability to create user accounts and groups, simulating real administrative environments.<\/p>\n<\/li>\n<li data-start=\"2954\" data-end=\"3072\">\n<p data-start=\"2956\" data-end=\"3072\">Observed how GPOs take precedence when multiple policies are applied and how inheritance can be blocked or filtered.<\/p>\n<\/li>\n<li data-start=\"3073\" data-end=\"3200\">\n<p data-start=\"3075\" data-end=\"3200\">Validated GPO application using user login tests and command-line tools, confirming that restrictions were properly enforced.<\/p>\n<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Introduction to Cybersecurity This course provides an overview of the field of cybersecurity. It covers core cybersecurity topics including computer system architectures, critical infrastructures, cyber threats and vulnerabilities, cryptography, information assurance, network security, and risk assessment and management. Students are expected to become familiar with fundamental security concepts, technologies, and practices. This course provides a&#8230; <\/p>\n<div class=\"link-more\"><a href=\"https:\/\/sites.wp.odu.edu\/williamjohnson\/cyse-300\/\">Read More<\/a><\/div>\n","protected":false},"author":30948,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"_links":{"self":[{"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/pages\/141"}],"collection":[{"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/users\/30948"}],"replies":[{"embeddable":true,"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/comments?post=141"}],"version-history":[{"count":3,"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/pages\/141\/revisions"}],"predecessor-version":[{"id":304,"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/pages\/141\/revisions\/304"}],"wp:attachment":[{"href":"https:\/\/sites.wp.odu.edu\/williamjohnson\/wp-json\/wp\/v2\/media?parent=141"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}