Assessment and Testing Flashcards

1
Q

Network Discovery Scan Types (5)

A

TCP Syn / Half Open
TCP Connect
TCP ACK
UDP
Xmas

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

TCP Syn

A

Checks to see if system is open to connections, but does not complete the connection. Need to have privileges to send custom packet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

TCP Connect

A

Attempts to make a full connection to the system. Used when tester is unable to use TCP Syn because the source system is unable to send a custom (Syn flag) packet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

TDP Ack

A

Used to determine rules used by firewall and firewall methodology.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

UDP

A

check for UDP services open. Doesn’t use handshake because UDP is connectionless.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Xmas

A

Sends packets with many flags (FIN, PSH, URG).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

SSAE meaning

A

Statement on Standards for Attestation Engagements

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SCAP

A

Security Content Automation Protocol

Created by NIST and provides a common language for describing and evaluating vulnerabilities. Includes the following:

CVE: common vulnerabilities and exposures
CVSS: common vulnerability and scoring system
CCE: common configuration enumeration
CPE: common platform enumeration
XCCDF: Extensible config checklist description format: language for security checklists.
OVAL: Open vulnerability and assessment language (language for describing testing procedures)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly