3.6 Detection and Prevention Flashcards

1
Q

What is the purpose of penetration testing?

A

This is used to find any security weaknesses in a system by trying to gain access without knowledge of user names, passwords or encryption keys.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

There are two main types of penetration testing - explain these.

A

The first simulates an external attack where the tester has little knowledge of the system with the objective of finding out if they can get into the system, how far they can get and what they can do to the system.
The second simulates a malicious insider with the objective of finding out what damage they could cause to the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Name 2 types of biometric measures used by mobile devices.

A

Facial recognition, finger prints

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Give an advantage of biometric security measures.

A

Because they are based on unique biometric measurements it is not possible steal or forget.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

State 3 characteristics of a strong password.

A

Upper and lower case letters, numbers, symbols

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the purpose of CAPTCHA?

A

A CAPTCHA is a program that protects websites against bots by generating and grading tests that humans can pass, but current computer programs cannot.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How does email confirmation protect a system?

A

Sending an email to a user asking them to confirm password changes, prevents hackers from changing passwords un-noticed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Describe one issue with out-of-date software.

A

If software is out-of-date it may not be supported so any bugs will be unpatched, leaving the system open to malware.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the advantages of automatically updating software?

A

You do not have to remember to update. Any bugs can be fixed quickly.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a firewall?

A

A firewall is a network security system that monitors incoming and outgoing traffic and can be set to allow or block certain connections.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly