Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving the Oakland Park area since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Tech Term: Understanding Encryption

Tech Term: Understanding Encryption

With data security becoming paramount for almost everyone, encryption is one of the more important technology terms you will need to know. Since data security has to be a priority--not just for your business--but for you, understanding what encryption is, and how its used can put you in a better position to understand tomorrow’s security solutions. For this week’s tip, we will take you inside cryptography, and more specifically, data and network encryption.

What is Cryptography?
Simply put, cryptography is the art (or science) of writing or solving written or generated codes. Cryptography is the strategy of using a predefined key to convert data into a format that is indecipherable. Since no entity can view the information without the key, the information secured by encryption is able to be stored and transmitted securely. To decode the message, you need a cipher or a key.

A Short History of Cryptography
As long as there has been human communication, there have been secrets. The first known evidence of the use of cryptography was found carved in hieroglyphics on a wall in Egypt, and has subsequently been used throughout human history to send and receive secret messages.

Centuries later, Julius Caesar was known to use a form of substitution cipher that shifts each letter three spots in the alphabet to encode a message. In fact, there are some that still call this type of cipher a Caesar cipher. The Caesar cipher looks like this:

ib cipher 1

It’s clear that this type of cipher is dependent on the secrecy around the system, not a dedicated key to unlock the cipher. Once the system is known, these basic codes become known almost immediately. In fact, most substitution ciphers can be broken with a simple pad and paper.

This changed in the 16th century when Giovan Battista Bellaso came up with an improvement by using a series of interwoven ciphers. The process was misattributed to Blaise de Vigenère, and has since been referred to as the Vigenère cipher.

Despite all the coded messages sent and received over the centuries, cryptography as we know it has only come into fashion over the past century as technological advancements have facilitated more sophisticated methods of encryption. In the early 20th century, Edward Hebern, while sitting in jail for stealing a horse, came up with a method of encryption using an old typewriter fashioned with a rotor. The purpose was to turn what to the user was a simple Caesar cipher into a Vigenère cipher with the use of Hebern’s two-way rotor machine. A user would push a key and the rotor would provide the corresponding substitution key to decrypt the message. b2ap3_thumbnail_ib_cipher_2.png

If this machine started modern encryption, Enigma changed it forever. Shortly after Hebern’s invention, German engineer Arthur Scherbius innovatively built what was essentially a Hebern device with multiple rotors and called it Enigma. For a decade German naval superiority over mainland Europe had as much to do with their ability to send and receive coded messages as it did to their manufacturing might.

Modern Encryption
When we speak of encryption today, we are just talking about the same type of thing that Hebern and Scherbius were doing: cloaking data to provide privacy or security to the parties involved in the correspondence. Today, data is worth more than ever; as a result businesses are spending more on their encryption solutions.

All businesses collect a fair amount of personally identifiable information (PII). This information includes names, birth dates, Social Security numbers, and financial and medical information. The liability companies have today is immense, as they can (and often are) sued if a customer, employee, or vendor’s PII is stolen and leaked or shared.

The modern business uses several types of encryption. Individual file encryption encrypts specific data; volume encryption secures a container where files and folders can be stored; and, full-disk encryption secures all the information on a computer or server. To ensure that the data is protected from theft, encrypting all the information deemed sensitive should be a priority.

In order for your business’ encryption initiatives to be successful, there are some best practices that users need to know. One is password security. Often the key to your encrypted information is a simple password. In order to mitigate risk and keep encryption working for you, there are some password management tips you should adhere to. Following these will keep your encrypted data, and your business safe. They include:

  • Use passwords with eight characters or more.
  • Use different passwords for different files, computers, and systems.
  • Change your passwords frequently.
  • Utilize upper and lowercase letters, numbers, and symbols in your passwords.
  • Don’t use common words or phrases.
  • Don’t use words spelled backwards, common misspellings, or abbreviations.

More Encryption
Other than your standard protection against the loss of data, there are security solutions that allow you to encrypt communications you have with your customers, staff, and vendors. Email encryption has become an essential business tool. Many of today’s enterprise email solutions come with options to encrypt your messages, keeping communications secure.

Another way encryption is leveraged by the modern business is with the use of a virtual private network (VPN). The VPN offers users who are outside of a network to get an encrypted and secure pathway to share and receive files from a centralized server. Remote file exchange is important for many businesses, and the use of VPNs can go a long way toward quelling the risks inherent in this process.

Types of Encryption Finally, understanding what types of encryption there are can help you understand what position your organization is in, in regards to file, server, and communication security. The types of encryption used today include:

  • Triple DES - Designed as a replacement to the single Data Encryption Standard (DES) that doesn’t hold up against the tools modern hackers have. Triple DES uses three individual keys with 56 bits each, which in total adds up to 168 bits, however experts place it closer to 112 bits of key strength.
  • RSA - RSA is a public-key encryption algorithm and is currently the standard for secure transmission of data over the Internet. Since it uses two keys, a public key to encrypt it and a secure private key to decrypt it, it makes it very difficult for hackers to decipher.
  • Blowfish - Designed to replace DES, Blowfish is a symmetric cipher that splits messages into blocks of 64 bits and encrypts them individually. As a result, it is extraordinarily secure and often used in e-commerce platforms and password managers.
  • Twofish - The developer of Blowfish has released Twofish as a faster option that makes it a perfect encryption tool for hardware and software systems.
  • AES - Available in 128-bit, 192-bit, and 256-bit options, the Advanced Encryption Standard is basically uncrackable. Used by governments and other organizations that deal in extraordinarily sensitive information, AES has begun to become the standard in encryption due to its impenetrable record.

Data security is more important today than ever. At Total Tech Care, our knowledgeable technicians can help your organization come up with data and network security plan that is sure to keep your data safe, and keep your business running efficiently. To learn more, don’t hesitate to call us today at 866-348-2602.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Friday, 19 July 2019
If you'd like to register, please fill in the username, password and name fields.

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Cloud Privacy Hosted Solutions Business Computing Hackers Backup Business Microsoft Google Malware Network Security Internet Workplace Tips Efficiency Email Innovation Mobile Devices Data Software User Tips Productivity Productivity Disaster Recovery Business Continuity Hardware communications IT Services VoIP Smartphones Smartphone Browser Network Windows 10 Android Computer Miscellaneous Business Management Server Upgrade Tech Term Communication Outsourced IT Office Chrome Computers Cloud Computing Small Business Cybercrime Windows Managed IT Services Save Money Data Backup Virtualization Social Media Holiday IT Support Hacking Automation Mobile Device Collaboration Ransomware IT Support Data Recovery Managed IT Services Managed Service Provider Gadgets Alert Windows 10 Microsoft Office Telephone Systems Recovery Employer-Employee Relationship BYOD Users Router Mobile Device Management Internet of Things Quick Tips Operating System Social Engineering Mobility Artificial Intelligence Facebook Mobile Computing Applications Application Saving Money Health Cybersecurity Law Enforcement Spam Remote Monitoring Office 365 Money App Passwords Information Technology Phishing VPN Bandwidth Remote Computing BDR Networking Information Private Cloud Wi-Fi Password Office Tips How To Marketing Encryption Gmail IT solutions Entertainment Google Drive Word Website Settings Budget Two-factor Authentication Avoiding Downtime Mouse Big Data HaaS Managed IT Bring Your Own Device Data Management Work/Life Balance Flexibility Training The Internet of Things WiFi Lithium-ion battery Wireless Education Safety Data Protection Sports USB Redundancy Keyboard Human Resources Firewall Government Vulnerability Paperless Office Virtual Reality Windows 7 Scam Data Breach Managed Service Staff Save Time Connectivity User Error Meetings Cleaning Data Security Voice over Internet Protocol Hacker Apps History Value Display End of Support Shadow IT Fraud Legal DDoS Physical Security Spam Blocking Electronic Medical Records Printer Internet Exlporer Bluetooth Hiring/Firing HIPAA PDF Environment Botnet Fax Server Comparison Proactive IT Data Storage IT Consultant CES Virtual Assistant Access Control Best Practice YouTube Business Intelligence Telephone System Black Market Content Management Humor Patch Management SaaS Digital Signage Worker Machine Learning Network Congestion IT Management Apple Servers Blockchain Social Document Management Software as a Service IT Plan Solid State Drive Wireless Technology eWaste Downtime Unsupported Software Data storage Update Charger Automobile Retail Hard Drives Instant Messaging Augmented Reality Wearable Technology Telephony Robot Google Docs Excel Computer Care Virus Computing Infrastructure OneNote Identity Theft Infrastructure Biometrics Unified Threat Management Samsung Computer Accessories Cryptocurrency Risk Management Battery Cameras Audiobook Cache Manufacturing Data loss Outlook Business Mangement Leadership Music Safe Mode Touchpad GDPR Tools Practices Customer Relationship Management Trending Loyalty Politics Security Cameras Advertising Wireless Internet Biometric Security Screen Mirroring Amazon Analyitcs Frequently Asked Questions Recycling Programming Troubleshooting File Sharing SharePoint Camera Distributed Denial of Service Hosted Computing Customer Service Notifications Windows 10s Printer Server Smartwatch Wire 5G Cast Amazon Web Services Tip of the week Criminal webinar Books Business Technology Warranty Relocation Inventory Public Cloud Windows 8 Employer Employee Relationship Assessment Employee Smart Office IT service OLED Online Shopping Windows Server 2008 Conferencing Emergency Video Games Antivirus Worker Commute Administrator Travel Specifications Tablet Television Domains Cabling Evernote Scalability Business Owner Microchip Authentication Maintenance Audit Millennials Wireless Charging Bloatware Public Computer NarrowBand Default App Search Search Engine IaaS iPhone Nanotechnology Google Search Computer Fan Consultant Workforce Tablets Rootkit Cables Entrepreneur Analytics HVAC People IT Infrastructure Flash Workers Transportation How to Vendor Management Bing Files Shortcut Net Neutrality FENG Best Available Telecommuting WIndows 7 Cortana Cost Management IBM Enterprise Content Management Mobile Office Chromecast Investment MSP Sync Digital Signature Social Networking Benefits Help Desk Colocation Devices Uninterrupted Power Supply ISP Remote Work Software Tips Google Apps Supercomputer Password Management ROI Monitor Accountants Emails Smart Technology Shortcuts Thought Leadership Cryptomining Memory User Current Events PowerPoint Windows Media Player NIST Going Green Windows Server 2008 R2 Remote Worker Running Cable Reputation Skype Virtual Desktop Streaming Media Netflix Two Factor Authentication Content Vendor Addiction Tech Support Database Root Cause Analysis Credit Cards HBO Managing Stress Password Manager Knowledge Experience Techology Laptop Wiring Customers Start Menu Smart Tech Multi-Factor Security Science

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code