Chapter 9 Flashcards
an initiative by the DHS to facilitate the open and free exchange of IOCs and other cyberthreat information between the US fed and the private sector in an automated and timely manner
Automated indicator sharing (AIS)
an observable along with a hypothesis about a threat
indicator
an identified face of occurrence, such as the presence of a malicious file
observable
which organization manages AIS?
National Cybersecurity and Communications Integration Center (NCCIC)
6 technical mechanisms implemented via architecture
layering
abstraction
data hiding
trusted recovery
process isolation
hardware segmentation
the chip that governs all major operations; can perform a limited set of logical and computational operations
CPU
handling two or more tasks simultaneously; a single core CPU is still only executing a single process at a time but is able to “juggle” multiple tasks for the user.
multitasking
the CPU contains multiple independent execution cores that can operate simultaneously and independently
Multicore
harnessing the power of more than one processor to complete the execution of a multithreaded application
Multiprocessing
when multiprocessor systems assign or dedicate a process or execution threat to a specific CPU
affinity
when multiprocessor systems assign or dedicate a process or execution threat to a specific CPU
affinity
pseudo-simultaneous execution of two tasks on a single processor; batches or serializes multiple processes. This method delays each individual task, but across all processes in the batch total time is reduced.
multiprogramming
multiple concurrent tasks are performed within a single process; often used in applications where frequent context switching between active processes causes excessive overhead
multithreading
an OS model that organizes code and components in to concentric rings, where the deeper inside you go the higher privilege level is associated with the code
protection rings
the part of an OS that always remains resident in memory so that it can run on demand at any time
kernel
which ring does the kernel reside on?
Ring 0
which ring do somewhat privileged things like I/O drivers and system utilities?
Ring 2
where do applications and peripheral devices reside?
the outermost ring
which ring runs in user mode?
Ring 3 (outermost ring)
which rings run in supervisory or privileged mode?
Rings 0-2
5 process states
ready
running
waiting
supervisory
stopped
which process state is when the process executes on the CPU?
Running or problem
which state is when a process is ready to resume or being processing?
Ready
what state is when a process is ready for continued execution but is waiting for I/O to be serviced?
waiting
what state is when a process must perform an action that requires higher privileges?
supervisory mode
what state is when a process finishes or must be terminated?
stopped
the hardware component that is a storage bank for information that the computer needs to keep readily available
memory
memory the system can read but can’t change, contents are usually burned in at the factory
ROM - Read-Only Memory
which part of memory includes the POST series of diagnostics that run on boot?
ROM - Read Only Memory
this kind of ROM isn’t burnt in at the factory, but incorporates special functionality that allows an end user to burn in the chip’s content later. Afterwards it cannot be altered
PROM - Programmable Read-Only Memory
this kind of ROM can be programmed and erased with ultraviolet light
UVEPROM - UV Erasable Programmable Read-Only Memory