Comptia Security + Flashcards
What is phishing ?
social engineering that mimics email to steal your information
what is typosquatting and prepending of the Url ?
Hijacking of a url ( usually changes one one thing ) in the domain name or add onto the domains beginning . Prepending is adding onto the beginning. Typosquatting is changing the url name to make it seem believable
what is pretexting?
Lying to gain information, this can be done via phone or email
what is Pharming ?
A poisoned DNS that is combined with fishing that targets a group of people
What is Vishing/Smishing?
Voice and SMS phising
What is reconnoissance ?
Gathering information on victims
What is spear phishing ?
targeted phishing with inside information
what is whaling ?
a phishing attack that attacks the CEO
What is shoulder surfing ?
Looking over someones shoulder to gather information
What is a Hoax in term of IT?
A threat that dosen’t actually exist
What is a waterhole attach and how do you prevent it ?
A water hole attack is a cyber attack that install malware from a third party organization. In order to prevent water hole attacks a company should use a next gen firewall and anti-malware/ Anti-virus
How does a mail gateway system prevent against spam email ?
The mail gate way acts as a firewall for incoming and outgoing emails filter to detect varied problems. It does this by identifying keywords and problematic know senders
What is a reverse DNS? and how does it help prevent spam?
The email server will look at the known IP address and see if it matches the sender
What is tailgating?
using a authorized person to Gaining unauthorised access to a building
What is an invoice scam?
An attack that is disguised as a Bill
What is credential harvesting?
An attacker is looking to find your sign-ins, this is done via malicious emails.
What is a virus?
Malware that needs a human to download it to begin the replicating process
What is a worm?
Malware that does not need a human to click on it before it begins replicating
What is electing information tactic?
A person call and pretends to be from the help desk and convinces people to give information.
What is trojan Horse software?
A software that looks normal but has an ulterior motive to do bad or simple do nothing
What is a back door during malware?
A way for malware to reconnect to your system without having to go through the front door
What is RAT ( REMOTE ACESS TROJANS ) ?
A program that give a 3rd party full remote access over the operating system
What is a root kit and why is it so hard to get rid of ?
A type of malware that modifies the core system files
What is crypto-malware?
Encryption that requires a key in order to use-crypt information. Victim must pay ransom in order to get the key .
What is Adware?
A malware attack that pop-ups ads
What is a Botnet?
A group of computers that have been taken over to form a network of bots
What is a Logic bomb?
A bomb that has been left to activate later, this is malware
what is pup malware? ( potential unwanted pop-up)
Any un wanted malware
What is DDoS?
Distributed denial of service
What is a password Hash?
a string of text that is used to represent password data. Hash can not be reversed
What is a Spraying attack?
trying to log in with common passwords
What is a Brute force attack?
this type of attack tries every possible password combination