Authentication Flashcards
1
Q
What are the four means of authenticating user identity based on?
Give three examples
A
- Something the individual knows - password, PIN, answers to prearranged questions.
- Something the individual possesses (token) - smartcard, electronic keycard, physical key.
- Something the individual is (static biometrics) - fingerprint, retina, face.
- Something the individual does (dynamic biometrics) - voice pattern m, handwriting, typing rhythm.
2
Q
What are six authentication security issues?
A
Eavesdropping
Denial of Service
Trojan horse
Client attacks
Replay
Host attacks
3
Q
What are some advantages and disadvantages of biometrics?
A
Advantages: cannot be shared, copied or stolen. It cannot be lost.
Disadvantages: used complicated technology, requires specialised hardware.
Might have false positives/negatives, it can be combined with another technology to avoid this.
4
Q
What’s a replay attack?
A
Attacker repeats a previously-captured user response (packet sniffing)
5
Q
What are some password vulnerabilities? (7)
A
Brute force attack (offline dictionary attack) Specific account attack Popular password attack Workstation hijacking Exploiting user mistakes Exploiting multiple password use Electronic monitoring.