Lesson overview
Identify common cybersecurity threats and explain how they can affect users, data and systems.
Focus: Cybersecurity threats.
What you will learn
- Define the key GCSE Computer Science terms used in cybersecurity threats.
- Explain how malware works in a practical scenario.
- Compare phishing with an alternative or related method.
- Apply cybersecurity threats accurately in exam-style questions.
Before you start
- Networks.
- Authentication basics.
- Everyday online accounts.
Cybersecurity Threats scenarios
Use the account, school network and online shop examples below to identify likely threats and impacts.
Cybersecurity threats infographic
Explanation
Cybersecurity is the protection of systems, networks and data from attack, damage or unauthorised access.
Common threats include malware, phishing, brute-force attacks, weak passwords, insider misuse and attacks that disrupt availability.
A strong answer explains the threat, the likely impact and a suitable defence rather than just listing scary-sounding terms.
Worked examples
Applying cybersecurity threats
A user receives an urgent email asking them to log in through a copied link.
The page captures their username and password.
The attacker then accesses the real account.
Answer: This is a phishing threat because it tricks the user into revealing credentials through a fake message or site.
Quick checks
1. What does cybersecurity aim to protect?
- a. Only screen brightness
- b. Only paper notebooks
- c. Systems, networks and data
Reveal answer
Answer: c. Correct. Cybersecurity protects digital assets and access.
Not quite. Focus on malware in the scenario.
2. Which idea is most closely linked to cybersecurity threats?
- a. Unauthorised access
- b. A monitor brightness setting
- c. A random file extension
Reveal answer
Answer: a. Correct. Unauthorised access is part of this topic.
Not quite. Choose the option that belongs to the Computer Science concept.
Practice
1. Give one impact of unauthorised access.
Reveal answer
Answer: Data theft, data alteration, service disruption or privacy loss.
Marking: Credit valid impact.
2. What is phishing?
Reveal answer
Answer: Tricking users into revealing information or taking unsafe actions.
Marking: Credit deception and information/action.
3. Why are weak passwords risky?
Reveal answer
Answer: They are easier to guess or brute-force.
Marking: Credit guessing or automated attack.
4. Name one security measure.
Reveal answer
Answer: Strong passwords, MFA, antivirus, firewall, updates, backups or access levels.
Marking: Credit valid defence.
Exam practice ladder
- Fluency: recall the key term and use it accurately.
- Application: apply the idea to the scenario rather than giving a generic definition.
- Algorithmic reasoning: show the steps, condition or variable change clearly.
- Evaluation: explain why one method, structure or control is suitable.
Answers and marking guidance
Exact answers and marking guidance are hidden under each question. For this lesson, earn marks by naming the correct Computer Science idea, applying it to the scenario and showing the logic or value change clearly.
Common mistakes
- Calling every attack a virus.
- Describing a threat without impact.
- Forgetting human behaviour is part of security.
- Suggesting one defence makes a system perfectly secure.
Extension
For a school network, match three threats to three realistic defences and explain why each defence helps.
Next lesson
Next, continue with Malware and attack methods.
Exam-board guidance
Aplailasain is an independent learning resource and is not endorsed by any exam board.
AQA GCSE Computer Science
AQA GCSE Computer Science: this skill supports problem solving, clear algorithms and accurate programming explanations.
OCR GCSE Computer Science
OCR GCSE Computer Science: expect precise algorithm reasoning, trace work and careful use of programming vocabulary.
Pearson Edexcel GCSE Computer Science
Pearson Edexcel GCSE Computer Science: practise explaining the method as well as giving the final answer or code.
Eduqas GCSE Computer Science
Eduqas GCSE Computer Science: secure the transferable idea first, then check how your class applies it in tasks.
WJEC Wales
WJEC Wales: use accurate terminology and show enough working for the examiner to follow your logic.
CCEA
CCEA: connect the idea to your class route and use the same algorithm, programming or systems vocabulary your teacher uses.