/
Flashcard Deck
Save to my account
Sign up
Flashcard Deck
Cyber Attacks 1Flashcards
Study
1
Question
What do TTPs stand for?
Answer
Tactics, Techniques, and Procedures
2
Question
What is a brute force attack?
Answer
A password guessing attack that tries various combinations of usernames and passwords repeatedly until successful.
3
Question
How can brute force attacks be mitigated?
Answer
Encourage users to use complex passwords, lockout accounts after a few unsuccessful attempts, use Captcha to slow down the attack, and implement multifactor authentication.
4
Question
What is a dictionary attack?
Answer
A type of brute force attack that uses a list of words from a dictionary as potential passwords. It can also be personalized by using target-specific details like dates, names, or numbers.
5
Question
How can dictionary attacks be mitigated?
Answer
Advise users not to use simple or easily identifiable words as passwords, encourage complex password use, lockout accounts after unsuccessful attempts, use Captcha, and enable multifactor authentication.
6
Question
What is a common method to enhance password security?
Answer
Using complex passwords
7
Question
What action can be taken to prevent unauthorized access due to multiple incorrect login attempts?
Answer
Lockout accounts after a few attempts
8
Question
How can Captcha help mitigate brute force attacks?
Answer
Use Captcha to slow down brute force
9
Question
What security measure adds an extra layer of protection by requiring users to provide multiple forms of verification to access an account?
Answer
Using multifactor authentication
Cyber Security 3-10 Flashcards
Study
1
Question
Explain Rainbow attack
Answer
Rainbow attack is a type of brute force attack that uses pre-computed password hashes. Instead of trying to guess the password, it attempts to match the hash in the user database.
2
Question
Mitigation for Rainbow attack
Answer
Rainbow table attacks can be prevented by using salt techniques, which involve adding random data (salt) to the plain text before hashing, locking out accounts after a few failed login attempts, using CAPTCHA to slow down brute force attacks, and implementing multifactor authentication.
3
Question
What is Pass the hash attack?
Answer
Pass the hash attack is a hacking technique where an attacker authenticates to a remote server by using the hash of a user's password instead of the plaintext password. This reduces the attacker's effort as they don't need to crack the password from the hash.
4
Question
Mitigation for Pass the hash attack
Answer
Mitigation strategies include restricting and protecting high-privileged domain accounts, safeguarding local accounts with administrative privileges, and limiting inbound traffic using the Windows Firewall to prevent lateral movement attacks.
5
Question
What is the mitigation for restricting and protecting high privileged domain accounts?
Answer
Restrict and protect high privileged domain accounts to reduce the risk of exposing privileged credentials to higher risk computers.
6
Question
What is the mitigation for restricting and protecting local accounts with administrative privileges?
Answer
Restrict and protect local accounts with administrative privileges to restrict attackers from using them for lateral movement and PtH attacks.
7
Question
What is the mitigation for restricting inbound traffic using the Windows Firewall?
Answer
Restrict inbound traffic using the Windows Firewall to prevent attackers from initiating lateral movement from compromised workstations by blocking inbound connections on other workstations.
8
Question
What is scanning?
Answer
Scanning is a method used to discover exploitable communication channels, open ports, and known vulnerabilities.
9
Question
What are the mitigations for preventing scanning activities?
Answer
Mitigations include using Firewall and IPS, performing OS hardening, and using honeypots to detect scanning activities.
10
Question
What is a sniffing attack?
Answer
Sniffing is the theft or interception of data by capturing network traffic. It is commonly done using a packet sniffer.
11
Question
What are the mitigations for preventing sniffing attacks?
Answer
Mitigations include avoiding insecure protocols like HTTP, FTP, telnet, using secured versions like HTTPS, SFTP, SSH, and encrypting data transmission.
12
Question
Explain phishing.
Answer
Phishing is a cyber attack that uses disguised emails to trick recipients into clicking malicious links. The goal is to deceive users into disclosing sensitive information.
13
Question
What is Phishing?
Answer
Phishing is a cyber attack that uses disguised email as a weapon to trick the recipient into clicking on malicious links or downloading harmful attachments.
14
Question
How can Phishing be mitigated?
Answer
Phishing can be mitigated by using email security solutions, educating users, and implementing DMARC (Domain-based Message Authentication Reporting and Conformance) standards.
15
Question
What is Spear Phishing?
Answer
Spear Phishing is a targeted email scam aimed at specific individuals, organizations, or businesses by personalizing the email based on gathered information during reconnaissance.
16
Question
What is Whaling in the context of cybersecurity?
Answer
Whaling is a type of phishing attack that specifically targets senior management, leadership teams, and important individuals within an organization.
17
Question
Explain the concept of exploit and payload in cybersecurity.
Answer
An exploit is a tool that takes advantage of vulnerabilities in systems to gain unauthorized access, while a payload is the malicious software or code delivered by the exploit to compromise the target system.
18
Question
Explain Spear Phishing
Answer
Spear phishing is an email scam targeted towards a specific individual, organization, or business. Attackers use information gathered during reconnaissance to make the email appear personalized.
19
Question
Explain Whaling
Answer
Whaling is a type of phishing that targets senior management, leadership teams, or important individuals at an organization.
20
Question
What is an exploit and payload?
Answer
An exploit is a tool that takes advantage of a vulnerability to penetrate a system, while the payload is the actual malware that does the damage (deleting files, stopping services, encrypting files, etc).
21
Question
Explain Vishing
Answer
Vishing works similar to phishing, but instead of using email, the attacker tricks the target to give critical or sensitive information over a phone call.
22
Question
What is Spoofing?
Answer
Spoofing is a malicious practice used by cyber scammers and hackers to deceive systems, individuals, and organizations into perceiving something to be what it is not. Includes IP Spoofing, MAC Address Spoofing, Email Spoofing, and DNS Spoofing.
23
Question
What is vishing?
Answer
Vishing is a form of attack where the attacker tricks the target into giving critical information over a phone call, similar to phishing but using voice communication instead of email.
24
Question
What is spoofing?
Answer
Spoofing is a malicious practice used by cyber scammers to deceive systems, individuals, and organizations into perceiving something as something it is not. Examples include IP Spoofing, MAC Address Spoofing, Email Spoofing, and DNS Spoofing.
25
Question
What are the types of spoofing attacks mentioned in the text?
Answer
The types of spoofing attacks mentioned in the text are IP Spoofing, MAC Address Spoofing, Email Spoofing, and DNS Spoofing.
26
Question
How can spoofing attacks be mitigated?
Answer
Spoofing attacks can be mitigated by deploying IPS, educating users, enabling port-level security for email and ARP spoofing, and implementing measures against MAC Address Spoofing.
27
Question
What is a DOS attack?
Answer
A Denial of Service (DOS) attack is a cyberattack where the attacker disrupts services to make a machine or network resource unavailable to its intended users temporarily or indefinitely. Examples include UDP floods, ICMP floods, and SYN floods.
28
Question
What is a DDOS attack?
Answer
A Distributed Denial of Service (DDOS) attack involves multiple systems launching a DOS attack on a targeted system. DDOS attacks are often executed using compromised systems known as Botnets.
29
Question
How can DOS and DDOS attacks be mitigated?
Answer
Mitigation strategies for DOS and DDOS attacks include using anti-DDOS technology like Arbor, rate limiting connections, reducing connection wait time, and deploying load balancers.
30
Question
What is a SYN flood attack?
Answer
A SYN Flood attack is a type of DOS attack that exploits the normal TCP three-way handshake by sending a large number of connection requests (SYN) but not completing the handshake.
Cyber Security10-20 Flashcards
Study
1
Question
What is DNS Tunneling?
Answer
DNS Tunneling is a method of cyber attack that encodes the data of other programs or protocols in DNS queries and responses. Attackers take advantage of the fact that DNS traffic is allowed through firewalls, using it for data exfiltration without being detected.
2
Question
How can DNS Tunneling attacks be mitigated?
Answer
Mitigation strategies for DNS Tunneling attacks include using IPS Systems to detect attacks, blocking communication to IPs known for data exfiltration, using DNS firewall, and deploying standalone DNS protection solutions like Infoblox.
3
Question
What is a drive-by download?
Answer
A drive-by download refers to the unintentional download of malicious code onto a computer or mobile device, exposing users to various threats. Users may not need to click on anything to trigger the download, as simply accessing or browsing a website can activate it.
4
Question
How can drive-by download attacks be mitigated?
Answer
Mitigation tactics for drive-by download attacks include encouraging users to keep software updated, installing antivirus capable of scanning internet traffic, using web filtering software, restricting browser add-ons, and educating users about avoiding untrusted websites.
5
Question
What is malware?
Answer
Malware is malicious software deliberately created to cause harm to a computer or computer network. Malicious activities carried out by malware include deleting files, encrypting files, gaining access to infected machines, collecting and sending sensitive data, stopping services, and system shutdown.
6
Question
What is malware?
Answer
Malware is a malicious software intentionally designed to cause damage to a computer or computer network. The malicious activities include deleting files, encrypting files, gaining access to the infected machine, collecting and sending sensitive data, stopping services, and system shutdown, among others.
7
Question
How can you mitigate the impact of malware?
Answer
To mitigate the impact of malware, you can use antivirus software with up-to-date signatures, employ ad blockers, and educate users not to download files from unknown sources.
8
Question
What are the different types of malware?
Answer
The different types of malware include viruses, trojans, worms, and spyware.
9
Question
What are viruses in the context of malware?
Answer
Viruses attach themselves to clean files and infect other clean files. Their intention is to damage a system's core functionality by deleting or corrupting files. They usually appear as executable files (exe).
10
Question
What are trojans in the context of malware?
Answer
Trojans disguise themselves as legitimate software but have malicious intent. They tend to act discreetly and create backdoors in your security to let other malware in.
11
Question
What are worms in the context of malware?
Answer
Worms infect entire networks of devices, either locally or across the internet, by using network interfaces. They use each consecutively infected machine to spread to others.
12
Question
What is spyware in the context of malware?
Answer
Spyware is malware designed to spy on users. It hides in the background and monitors online activities, including passwords, credit card numbers, and browsing history.
13
Question
What is a Trojan?
Answer
Trojans disguise themselves as legitimate software but have malicious intent, acting discreetly and creating backdoors in security to let other malware in.
14
Question
What is a Worm?
Answer
Worms infect entire networks of devices by using network interfaces and each consecutively infected machine to spread to others.
15
Question
What is Spyware?
Answer
Spyware is malware designed to spy on users, hiding in the background to gather information such as passwords, credit card numbers, and browsing habits.
16
Question
What is Ransomware?
Answer
Ransomware locks down computers and files, threatening to erase everything unless a ransom is paid.
17
Question
What is Adware?
Answer
Adware is aggressive advertising software that can undermine security by serving ads and potentially allowing other malware to enter while consuming system resources.
18
Question
What are Botnets?
Answer
Botnets are networks of infected computers controlled by an attacker to work together for malicious purposes.
19
Question
What is a RAT (Remote Access Trojan)?
Answer
RAT is a type of malware that enables an attacker to gain unauthorized remote access to a victim's machine.
20
Question
What is the difference between a Virus and a Trojan and a Worm?
Answer
Viruses attach themselves to clean files and infect others, Trojans disguise as useful files, and Worms spread over networks infecting multiple devices.
21
Question
What are botnets?
Answer
Networks of infected computers made to work together under the control of an attacker.
22
Question
What is a RAT (Remote Access Trojan)?
Answer
Type of malware that allows an attacker to gain unauthorized remote access to a victim's machine.
23
Question
Difference between Virus and Trojan and Worm - Virus
Answer
Viruses attach themselves to clean files and infect other clean files. User action is required for the virus to run.
24
Question
Difference between Virus and Trojan and Worm - Trojans
Answer
Appear as useful programs but have malicious intentions. Usually used to trick the user into performing certain actions like execution.
25
Question
Difference between Virus and Trojan and Worm - Worms
Answer
Spread in the network without user actions. Spread by attached external storage, available open network shares, and email (can automatically send copies of itself to all users in the address book).
26
Question
What is file-less malware or file-less attack?
Answer
File-less malware sneaks in without using traditional executable files; hides in memory or other difficult to detect locations; leverages trusted legitimate processes to perform malicious activities.
27
Question
What is fileless malware or fileless attack?
Answer
Fileless malware sneaks in without using traditional executable files as a first level of attack, often hiding in memory or difficult-to-detect locations and leveraging trusted legitimate processes to perform malicious activities.
28
Question
How does fileless malware differ from traditional malware in terms of detection?
Answer
Fileless malware runs on RAM memory-based and doesn't leave traces on disk, making it difficult for traditional antivirus solutions dependent on file-based signatures to detect.
29
Question
What are some mitigation strategies for dealing with fileless malware?
Answer
Use EDR tools to monitor and detect suspicious activities, disable command-line shell scripting languages like PowerShell and unnecessary Windows Management instrumentation.
30
Question
What is OWASP and its purpose?
Answer
OWASP (Open Web Application Security Project) is an online community that produces articles, tools, and technologies related to web application security. It annually announces the OWASP Top 10 list of vulnerabilities.
Cyber Security 21-28 Flashcards
Study
1
Question
Difference between Virus and Trojan
Answer
Virus: Attach themselves to clean files and infect other clean files. Require user action like execution to run. Trojan: Appear as useful programs but have malicious intentions. Used to trick the user into performing certain actions like execution.
2
Question
Difference between Trojan and Worm
Answer
Trojan: Appears as useful programs but have malicious intentions. Worm: Spreads in the network without user actions. Spreads by attached external storage, available open network shares, and email where a worm can automatically send a copy of itself to all users in the address book.
3
Question
What is fileless malware or fileless attack?
Answer
Fileless malware sneaks in without using traditional executable files as the first level of attack. It hides in memory or other difficult-to-detect locations, leveraging trusted legitimate processes running on the operating system to perform malicious activities. It runs on RAM memory-based and doesn't leave a trace on the disk.
4
Question
What is fileless malware?
Answer
Fileless malware hides in memory or other difficult-to-detect locations, using living off the land techniques. It runs on RAM memory and does not leave traces on the disk, making it hard for traditional antivirus programs to detect.
5
Question
How can fileless malware be mitigated?
Answer
Fileless malware can be mitigated by using EDR tools to monitor and detect suspicious activities, and by disabling command-line scripting languages like PowerShell and Windows Management Instrumentation when not needed.
6
Question
What is OWASP?
Answer
OWASP stands for The Open Web Application Security Project. It is an online community that produces articles, methodologies, documentation, tools, and technologies in the field of web application security.
7
Question
What is OWASP's Top 10 list?
Answer
OWASP announces a List of Top 10 Vulnerabilities for Web Applications every year. As of 2019, the top 10 web application attack vulnerabilities include Injection, Broken Authentication, Sensitive Data Exposure, XML External Entities (XXE), Broken Access Control, Security Misconfiguration, Cross-Site Scripting, Insecure Deserialization, and Using Components With Known Vulnerabilities.
8
Question
What is SQL injection?
Answer
SQL injection is a code injection technique where malicious SQL statements are inserted into an entry field for execution. These statements control a database server behind a web application, allowing attackers to gain unauthorized access, copy, modify, or delete data.
9
Question
What is SQL Injection?
Answer
SQL injection is a code injection technique where malicious SQL statements are inserted into an entry field to control a database server behind a web application.
10
Question
How can SQL Injection be mitigated?
Answer
Mitigation techniques include input validation, sanitizing all inputs by removing quotes and special characters, using IPS and WAF solutions, and turning off visibility of database errors on production servers.
11
Question
What is Cross Site Scripting (XSS)?
Answer
Cross Site Scripting (XSS) is a client-side code injection attack where malicious scripts are executed in a victim's web browser by including them in a legitimate web page or application.
12
Question
How can XSS be mitigated?
Answer
Mitigation techniques include input validation, sanitizing all inputs by removing quotes and special characters, and encoding data on output to prevent injection of malicious scripts.
13
Question
What is Cross Site Request Forgery (CSRF)?
Answer
Cross Site Request Forgery (CSRF) is an attack that forces an authenticated user to execute unintended actions on a web application without their consent.
14
Question
What is Cross Site Scripting (XSS)?
Answer
Cross Site Scripting (XSS) is a type of security vulnerability where attackers inject malicious scripts into web pages viewed by other users.
15
Question
How can Cross Site Scripting (XSS) be mitigated?
Answer
Cross Site Scripting (XSS) can be mitigated by implementing input validation, sanitizing all inputs to remove quotes and special characters, and encoding data on output.
16
Question
What is Cross Site Request Forgery (CSRF)?
Answer
Cross Site Request Forgery (CSRF) is an attack that forces an authenticated user to perform unwanted actions on a web application without their knowledge.
17
Question
How can Cross Site Request Forgery (CSRF) be mitigated?
Answer
CSRF can be mitigated by using techniques like the Synchronizer token pattern, adding a token to the header, and implementing Double Submit Cookie.
18
Question
What is Broken Authentication vulnerability?
Answer
Broken Authentication vulnerabilities can allow attackers to capture or bypass the authentication methods used by a web application, leading to unauthorized access.
19
Question
What types of attacks can Broken Authentication vulnerabilities lead to?
Answer
Broken Authentication vulnerabilities can lead to automated attacks like credential stuffing, brute force attacks, and exploitation of weak or default passwords.
20
Question
What is Broken Authentication?
Answer
Broken Authentication weaknesses can allow an attacker to capture or bypass authentication methods used by a web application, enabling automated attacks like credential stuffing, brute force attacks, or using weak passwords.
21
Question
What are some examples of automated attacks enabled by Broken Authentication?
Answer
Credential stuffing, brute force attacks, and the use of default weak or well-known passwords like 'Password1' or 'adminadmin'.
22
Question
How can Broken Authentication weaknesses be mitigated?
Answer
Implement multi-factor authentication, avoid shipping with default credentials, perform weak password checks, and lock user accounts after a certain number of failed login attempts.
23
Question
What is Broken Access Control?
Answer
Broken Access Control is a weakness in a web application that allows users to perform actions beyond their authorized permissions, leading to unauthorized information disclosure, modification, or destruction of data.
24
Question
What can happen due to Broken Access Control vulnerabilities?
Answer
It can allow users to see details of other users (e.g., User A seeing User B's details) or perform business functions outside their authorized limits, leading to data breaches or unauthorized actions.
25
Question
How can Broken Access Control vulnerabilities be mitigated?
Answer
Deny access to functionality by default, use access control lists, and implement role-based authentication mechanisms to restrict users to their designated permissions.
26
Question
What is Broken Access Control in the context of web applications?
Answer
Broken Access Control is a weakness in a web application that allows users to perform actions beyond their authorized permissions.
27
Question
What are the potential risks of Broken Access Control vulnerabilities?
Answer
Broken Access Control vulnerabilities can lead to unauthorized information disclosure, modification, or destruction of data, as well as performing business functions outside the user's limits.
28
Question
How can Broken Access Control vulnerabilities be mitigated?
Answer
Broken Access Control can be mitigated by denying access to functionality by default, using Access control lists, role-based authentication mechanisms, and logging access control failures with appropriate alerts for admins.