578.1 Flashcards
What is the meaning of School Of Thought?
A perspective of a group with common opinions and disciplines.
What was Moonlight Maze?
First cyber attack in 1996. It was reanalyzed in 2016.
What was Penquin Turla?
Toolkit identified by Kaspersky Labs in 2014, which was based off of LOKI2
What is Intelligence?
Intel is the collection, processing, and analysis of information about a competitive entity and its agents, needed by an organization or group for its security and well-being.
It’s both, a product and a process.
Intelligence deals with all the things which should be known in advance of initiating a course of action.
Definition of: HUMINT
Human intel collection (interpersonal)
Definition of: GEOINT
Geospatial intel collection (satellites)
Definition of: MASINT
Measurement and signature intel (radar, nuclear detonation signatures, etc)
Definition of: OSINT
Open-source intel (libraries, public records, internet)
Definition of: SIGINT
Intel derived from signal intercepts (cell phone communications or tapping of com lines)
Definition of: ALL INT SOURCE
Intel derived from every available source on a subject or topic.
What is Counterintelligence?
Counterintelligence is the identification, assessment , and neutralization of adversary intelligence activities.
e.g. Operation Bodyguard
Who was Sherman Kent?
Father of intelligence analysis and creator of Kent’s analytic doctrine (9 points).
- Focus on Policymaker Concerns
- Avoidance of a Personal Policy Agenda
- Intellectual Rigor
- Conscious Effort to Avoid Analytic Biases
- Willingness to Consider Other Judgments
- Systematic Use of Outside Experts
- Collective Responsibility for Judgment
- Effective Communication of Policy-Support Informationen and Judgements
- Candid Admission of Mistakes
Who was Richards J. Heuer. Jr.?
Developed the Analysis of Competing Hypotheses
- Enumerate Hypotheses
- Support the Hypotheses
- Diagnostics
- Refine the Matrix
- Prioritize the Hypotheses
- Determine Evidentiary Dependence
- Report Conclusions
What is the definition of Analysis?
Detailed examination of the elements or structure of something. Breaking something down into its constituent parts to understand its operation.
We analyze observed activity & adversary intent.
Definition of: Data-Driven Analysis?
Requires good datasets and straightforward problems. Logically-driven and easily replicated by other analysts observing it.
Definition of: Conceptually-Driven Analysis?
Numerous unknowns and undefined variables and relationships.
What are the three types of pattern recognition?
Template Matching
Prototype Matching
Top-Down Matching
What is System 1 Thinking?
Intuitive Thinking
Fast, effective, often accurate.
System 1 thinking involves existing mental models.
What is System 2 Thinking?
Analytic thinking
Slow methodical, and conscious, e.g. Kill Chain & Diamond Model
What are Mental Models?
Mental models are experience-based assumptions and expectations of the way the world operates.
What is SAT?
Structured analytic techniques (SATs) are analyst approaches to better evaluate information while reducing the impact of bias.
What are the 6 categories of SAT?
Getting organized Exploration Techniques Diagnostic Techniques Reframing Techniques Foresight Techniques Decision Support Techniques
Decomposition
Breaking down a problem into its components.
Visualization
Capturing the parts of a problem in an organized, often visual, manner.
5 parts of the intel life cycle?
Planning and Direction Collection Processing and Exploitation Analysis and Production Dissemination
Define CTI
Analyzed information about the hostile intent, opportunity, and capability of an adversary that satisfies a requirement.
The analysis is on the threat
The focus is on the customer