ch 9 Flashcards
BIOS
Basic input/output system
UEFI
unified extensible firmware interface
what was made to combat BIOS attacks
(UEFI) unified extensible firmware interface
what is the secure boot process
when using UEFI and secure boot, a computer checks the digital signature of each piece of boot software. if signatures are deem valid the computer boots.
what happens if the computer does not deem the boot valid
the computer doesn’t start
(TEMPEST)
telecommunications electronics material protected from emanating spurious transmissions
what is TEMPEST
intended to prevent attackers from picking up electromagnetic fields from government buildings.
what happens during a supply chain infection
steps in the supply chain has opened the door for malware to be injected into products during their manufacturing or storage.
what to for OS security configuration
Disabling unnecessary ports and services,
disabling defaults accounts/ passwords
employing least functionality
application white listing and black listing
what is a software security update to repair vulnerabilities
security patch
what includes enhancements to the software to provide new or expanded functionality, does not address security vulnerability
feature update
what accumulates security updates and additional features
service patch
what manages patches locally rather than rely on the vendor’s online update service
automated patch update service
updates that are applied no matter what
forced updates
software that examines a computer for infections, scans new documents that might contain viruses
antivirus
what is the weakness of antivirus
vendor must continually search for new viruses, update and distribute signature files to users
what is a newer approach to (AV) Antivirus that has heuristic monitoring
dynamic analysis
one AV heuristic monitoring technique, questionable code is executed in virtual environment to determine if it is a virus.
code emulation
monitors emails for span and other unwanted content
antispam- mail gateway
define black listing
nonapproved senders
define whitelisting
approved senders