Audits and Assesments Flashcards

1
Q

Define Penetration Testing

A

Simulated cyber-attack that helps in the assessment of computer systems for exploitable vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Name the different types of penetration testing

A

> Physical Pentesting
Offensive Pentesting
Defensive Pentesting
Integrated Pentesting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Define Physical Pentesting

A

It involves testing an organization’s physical security through testing locks, access cards, security cameras, and other protective measures.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Define Offensive Penetration testing (Red Teaming)

A

it’s a proactive approach that simulates real-world attacks. It seeks and exploits system vulnerabilities so orgs learn to recognize and defend against such threats.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Define Defensive Pentesting (Blue Teaming)

A

A reactive approach that entails (involves) fortifying systems, identifying and addressing attacks, and enhancing incident response times.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Define Integrated Penetration Testing (Purple Teaming)

A

Offensive and defensive pentest combined.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Define Reconnaissance

A

It’s an initial phase where critical information about a target system is gathered to enhance an attack’s effectiveness and success. Such as IP addresses, domain details, mail servers, and any potential security or detection systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Define Active Reconnaissance

A

The attacker engages with the target system directly. It gives more info to the attacker but it also comes with a higher risk of detection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly