This deep dive covers Deep Dive: Brute Force Attacks within Technical Attacks for GCSE Computer Science. Revise Technical Attacks in 3.6 Fundamentals of Cyber Security for GCSE Computer Science with 18 exam-style questions and 16 flashcards. This is a high-frequency topic, so it is worth revising until the explanation feels precise and repeatable. It is section 6 of 9 in this topic. Use this deep dive to connect the idea to the wider topic before moving on to questions and flashcards.
Deep Dive: Brute Force Attacks
- Method: Systematically trying every possible password combination until finding the correct one
- Dictionary attack variant: Tries common passwords first (password123, qwerty, etc.) - faster than pure brute force
- Time factor: Short simple passwords can be cracked in minutes; long complex passwords take years
- Prevention methods:
- Account lockout: Lock account after X failed attempts (e.g., 3-5 tries)
- Strong passwords: Minimum 12+ characters with mixed case, numbers, symbols
- CAPTCHA: Proves user is human, not automated script
- Rate limiting: Slow down login attempts (delays between tries)
- Multi-factor authentication: Requires second factor even if password is correct
Practice questions for Technical Attacks
Which of the following best describes a brute force attack?
Explain what a DDoS attack is and how it affects a network.