Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Tech Term: Understanding Encryption

Tech Term: Understanding Encryption

With data security becoming paramount for almost everyone, encryption is one of the more important technology terms you will need to know. Since data security has to be a priority--not just for your business--but for you, understanding what encryption is, and how its used can put you in a better position to understand tomorrow’s security solutions. For this week’s tip, we will take you inside cryptography, and more specifically, data and network encryption.

What is Cryptography?
Simply put, cryptography is the art (or science) of writing or solving written or generated codes. Cryptography is the strategy of using a predefined key to convert data into a format that is indecipherable. Since no entity can view the information without the key, the information secured by encryption is able to be stored and transmitted securely. To decode the message, you need a cipher or a key.

A Short History of Cryptography
As long as there has been human communication, there have been secrets. The first known evidence of the use of cryptography was found carved in hieroglyphics on a wall in Egypt, and has subsequently been used throughout human history to send and receive secret messages.

Centuries later, Julius Caesar was known to use a form of substitution cipher that shifts each letter three spots in the alphabet to encode a message. In fact, there are some that still call this type of cipher a Caesar cipher. The Caesar cipher looks like this:

ib cipher 1

It’s clear that this type of cipher is dependent on the secrecy around the system, not a dedicated key to unlock the cipher. Once the system is known, these basic codes become known almost immediately. In fact, most substitution ciphers can be broken with a simple pad and paper.

This changed in the 16th century when Giovan Battista Bellaso came up with an improvement by using a series of interwoven ciphers. The process was misattributed to Blaise de Vigenère, and has since been referred to as the Vigenère cipher.

Despite all the coded messages sent and received over the centuries, cryptography as we know it has only come into fashion over the past century as technological advancements have facilitated more sophisticated methods of encryption. In the early 20th century, Edward Hebern, while sitting in jail for stealing a horse, came up with a method of encryption using an old typewriter fashioned with a rotor. The purpose was to turn what to the user was a simple Caesar cipher into a Vigenère cipher with the use of Hebern’s two-way rotor machine. A user would push a key and the rotor would provide the corresponding substitution key to decrypt the message. b2ap3_thumbnail_ib_cipher_2.png

If this machine started modern encryption, Enigma changed it forever. Shortly after Hebern’s invention, German engineer Arthur Scherbius innovatively built what was essentially a Hebern device with multiple rotors and called it Enigma. For a decade German naval superiority over mainland Europe had as much to do with their ability to send and receive coded messages as it did to their manufacturing might.

Modern Encryption
When we speak of encryption today, we are just talking about the same type of thing that Hebern and Scherbius were doing: cloaking data to provide privacy or security to the parties involved in the correspondence. Today, data is worth more than ever; as a result businesses are spending more on their encryption solutions.

All businesses collect a fair amount of personally identifiable information (PII). This information includes names, birth dates, Social Security numbers, and financial and medical information. The liability companies have today is immense, as they can (and often are) sued if a customer, employee, or vendor’s PII is stolen and leaked or shared.

The modern business uses several types of encryption. Individual file encryption encrypts specific data; volume encryption secures a container where files and folders can be stored; and, full-disk encryption secures all the information on a computer or server. To ensure that the data is protected from theft, encrypting all the information deemed sensitive should be a priority.

In order for your business’ encryption initiatives to be successful, there are some best practices that users need to know. One is password security. Often the key to your encrypted information is a simple password. In order to mitigate risk and keep encryption working for you, there are some password management tips you should adhere to. Following these will keep your encrypted data, and your business safe. They include:

  • Use passwords with eight characters or more.
  • Use different passwords for different files, computers, and systems.
  • Change your passwords frequently.
  • Utilize upper and lowercase letters, numbers, and symbols in your passwords.
  • Don’t use common words or phrases.
  • Don’t use words spelled backwards, common misspellings, or abbreviations.

More Encryption
Other than your standard protection against the loss of data, there are security solutions that allow you to encrypt communications you have with your customers, staff, and vendors. Email encryption has become an essential business tool. Many of today’s enterprise email solutions come with options to encrypt your messages, keeping communications secure.

Another way encryption is leveraged by the modern business is with the use of a virtual private network (VPN). The VPN offers users who are outside of a network to get an encrypted and secure pathway to share and receive files from a centralized server. Remote file exchange is important for many businesses, and the use of VPNs can go a long way toward quelling the risks inherent in this process.

Types of Encryption Finally, understanding what types of encryption there are can help you understand what position your organization is in, in regards to file, server, and communication security. The types of encryption used today include:

  • Triple DES - Designed as a replacement to the single Data Encryption Standard (DES) that doesn’t hold up against the tools modern hackers have. Triple DES uses three individual keys with 56 bits each, which in total adds up to 168 bits, however experts place it closer to 112 bits of key strength.
  • RSA - RSA is a public-key encryption algorithm and is currently the standard for secure transmission of data over the Internet. Since it uses two keys, a public key to encrypt it and a secure private key to decrypt it, it makes it very difficult for hackers to decipher.
  • Blowfish - Designed to replace DES, Blowfish is a symmetric cipher that splits messages into blocks of 64 bits and encrypts them individually. As a result, it is extraordinarily secure and often used in e-commerce platforms and password managers.
  • Twofish - The developer of Blowfish has released Twofish as a faster option that makes it a perfect encryption tool for hardware and software systems.
  • AES - Available in 128-bit, 192-bit, and 256-bit options, the Advanced Encryption Standard is basically uncrackable. Used by governments and other organizations that deal in extraordinarily sensitive information, AES has begun to become the standard in encryption due to its impenetrable record.

Data security is more important today than ever. At Total Tech Care, our knowledgeable technicians can help your organization come up with data and network security plan that is sure to keep your data safe, and keep your business running efficiently. To learn more, don’t hesitate to call us today at 866-348-2602.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Thursday, 21 November 2024
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Efficiency Software Network Security Google Business Microsoft Internet Email Malware Backup Workplace Tips Innovation User Tips Data Computer Mobile Devices Hardware IT Services Disaster Recovery Android VoIP communications Business Continuity IT Support Smartphones Communication Smartphone Miscellaneous Mobile Device Small Business Network Browser Collaboration Productivity Cybersecurity Quick Tips Users Business Management Phishing Windows Upgrade Managed IT Services Outsourced IT Ransomware Data Backup Windows 10 Data Recovery Office Cloud Computing Server Save Money Windows 10 Passwords Virtualization Social Media Saving Money Holiday Tech Term Gadgets Chrome Automation Managed Service Managed IT Services Microsoft Office Computers Cybercrime Operating System Artificial Intelligence Facebook BYOD Health Mobile Device Management Internet of Things Networking IT Support Wi-Fi Hacking Information Technology Information Covid-19 Spam Alert Managed Service Provider Office 365 Telephone Systems Remote Recovery Employer-Employee Relationship Router Bandwidth BDR Social Engineering Mobility Encryption Applications Mobile Computing Application Human Resources Law Enforcement Remote Monitoring Big Data Data Breach Password Money App History Blockchain Paperless Office VPN How To Government Remote Computing Data Storage Patch Management Private Cloud Mobile Office Managed IT Apps Office Tips Training Data Security Marketing Gmail WiFi Google Drive IT solutions Settings Entertainment Website Budget Two-factor Authentication Avoiding Downtime Infrastructure Voice over Internet Protocol Mouse Vulnerability HaaS Windows 7 Word Bring Your Own Device Data Management Work/Life Balance Servers Wireless Flexibility Education Physical Security Lithium-ion battery Safety Vendor Software as a Service Telephone System Staff Sports HIPAA Managed Services Redundancy Display Machine Learning Connectivity Remote Work Firewall Keyboard USB Virtual Reality Employee/Employer Relationship Apple RMM Conferencing Social Scam User Error Save Time Meetings Data Protection Cleaning Vendor Management Risk Management Hacker End of Support The Internet of Things SharePoint Virtual Assistant Current Events Internet Exlporer Authentication Managed Services Provider Telephony Samsung Database Printer Customer Service PDF Remote Workers Bluetooth Environment Value Update Proactive IT Spam Blocking Electronic Medical Records Fax Server Processor Google Docs Best Practice YouTube Hiring/Firing Identity Theft SaaS Hard Drive IT Consultant Black Market Network Congestion Computing Humor eWaste Document Management Augmented Reality Wireless Technology Fraud Solid State Drive How to Downtime Business Intelligence Remote Worker Audit Worker Data storage Digital Signage IT Management Cryptocurrency Wearable Technology Automobile Botnet Hard Drives Retail Instant Messaging IT Plan Comparison Robot Computing Infrastructure Excel Procurement Going Green Workplace Strategy Biometrics Net Neutrality Unsupported Software CES Virus Virtual Desktop Help Desk Charger Battery Printing Business Technology Unified Threat Management Content Management Computer Accessories Access Control Compliance DDoS Shadow IT Legal OneNote Computer Care Point of Sale Personal Cryptomining Cameras Netflix Two Factor Authentication Workforce Distributed Denial of Service Politics Supply Chain Management Customer Relationship Management Advertising Virtual Private Network Batteries Analyitcs Root Cause Analysis Cables Monitoring Windows 8.1 Music Digitize Programming HBO Notifications Knowledge Nanotechnology Telecommuting Windows Server 2008 R2 Skype Project Management Data loss Cortana Customer relationships Email Best Practices Troubleshooting Antivirus IT Assessment Relocation Manufacturing Outlook Leadership Digital Signature Windows 8 Printer Server Start Menu Warranty IT service Video Games Managed IT Service Security Cameras Screen Mirroring HVAC Loyalty Google Apps Computer Tips Virtual CIO Books Worker Commute OneDrive Biometric Security Frequently Asked Questions Analysis Tablet Windows 10s Devices Experience Peripheral Mobile Administrator Domains Scalability Using Data Cast Enterprise Content Management Digital Security Cameras Emergency Business Owner Copiers 5G Tip of the week MSP webinar Accountants Professional Services Microchip NarrowBand Public Cloud Thought Leadership Employer Employee Relationship Credit Cards IaaS Quick Tip Maintenance Search Bloatware Smartwatch Password Management Assessment Password Manager Ergonomics Multi-Factor Security Development iPhone OLED Windows Server 2008 Tools Search Engine Tablets Twitter PCI DSS Virtual Machine Fiber Optics Entrepreneur Employee NIST Television Business Mangement 2FA Smart Tech Trending Messaging Files Cabling Consultant Chromecast Analytics Addiction Amazon Policy Shortcut Hypervisor Trend Micro Cost Management Public Computer Recycling Dark mode Practices Transportation SMS Social Networking Colocation Default App Best Available Regulations Wiring Uninterrupted Power Supply WIndows 7 Computer Fan Cache Rootkit Amazon Web Services Procedure Saving Time dark theme Shopping Monitor Google Search Safe Mode Criminal Workers Hosted Computing Benefits Running Cable AI IT Infrastructure GDPR Memory Bing FENG Wireless Internet Online Shopping FinTech Social Network Reputation File Sharing Streaming Media IBM Inventory Smart Technology Specifications Content Investment Flash Camera Tech Support Employee/Employer Relationships User Laptop PowerPoint Wire Windows Media Player Evernote Employees Techology Windows 365 Travel Customers ISP Software Tips Supercomputer Emails Millennials Audiobook Video Conferencing ROI Sync Printers Science Bitcoin Managing Stress Touchpad Shortcuts Smart Office Wireless Charging Sales

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code