2. Categories of Security Threats

Threats are identified and categorized based on the system's vulnerability and risk impact. Common categories include:

  • Malicious Hackers: Individuals who legally or illegally attempt to break into computer systems.
  • Industrial Espionage: The practice of spying on competitors to gain a business advantage.
  • Employee Sabotage: Internal threats where employees intentionally cause damage to the organization's ICT infrastructure.
  • Fraud and Theft: Criminal activities involving the manipulation of data for financial gain or the physical stealing of hardware.
  • Loss of Physical and Infrastructure Support: Threats such as power failures, hardware breakdowns, or environmental damage.
  • Errors and Omissions: Unintentional mistakes made by users that compromise system integrity.