SecWiki

Network Security:
Layer by Layer Defense

Reference · OSI Model Threat Mapping · Updated 2026

Overview

The infographic is titled "Network Security: Layer by Layer Defense." Its primary topic is the conceptual mapping of specific network security threats to the corresponding layers of the OSI (Open Systems Interconnection) model. It visually demonstrates how different types of cyberattacks target different levels of network communication, from the physical hardware up to the user application.

Rather than simply describing what each layer does, this resource identifies the specific vulnerability inherent to that layer's function — creating a functional cheat sheet for security professionals to understand where a given attack is occurring within the network stack.

7 Layers 16+ Attack Vectors 10 Protocols

OSI Layer Threat Mapping

Each OSI layer with its associated concepts, tools, and security threats.

Layer 7

Application Layer

Client ↔ Server communication (Request/Response)

Threats
  • SQL Injection
  • Cross Site Scripting (XSS)
  • DDoS Attacks
Layer 6

Presentation Layer

Compression · Encryption · Encoding · SSL/TLS

Threats
  • Character Encoding Attacks
  • SSL Stripping
  • Data Compression Manipulation
Layer 5

Session Layer

Client ↔ Server connected via Sockets

Threats
  • Session Replay
  • Session Fixation Attacks
  • Man-in-the-Middle Attacks
Layer 4

Transport Layer

Segmentation · Reassembly · TCP · UDP

Threats
  • UDP Flood
  • SYN Flood
Layer 3

Network Layer

Packets · Assembly · IP · ICMP · IGMP · IPsec

Threats
  • IP Spoofing
  • Route Table Manipulation
  • Smurf Attack
Layer 1

Physical Layer

Bitstream · Fiber · Sending / Receiving Cable

Threats
  • Eavesdropping / Tapping
  • Physical Tampering
  • Electromagnetic Interference

Summary of Technical Mentions

Protocols / Software / Standards
SSL, TLS, TCP, UDP, IP, ICMP, IGMP, IPsec, Ethernet, WiFi
Network Concepts
Sockets, Segmentation, Reassembly, Packets, Frames, Bitstream, Route tables
Specific Attack Vectors
SQL Injection, XSS, DDoS, SSL Stripping, Session Fixation, MITM, UDP/SYN floods, IP/MAC/ARP spoofing, Smurf attack, Switch flooding
Hardware / Physical
Fiber, Cables

What Makes This Unique

This infographic is unique because it bridges the gap between theoretical networking and practical cybersecurity. While most textbooks teach the OSI model as a method for data transmission, this chart pivots the focus to threat modeling.

Instead of just describing what each layer does, it identifies the specific vulnerability inherent to that layer's function — mapping "MAC spoofing" specifically to the Data Link layer and "SQL Injection" specifically to the Application layer. This creates a functional cheat sheet for security professionals to understand where a specific attack is occurring within the network stack.