Cybercrime Flashcards

1
Q

What are the types of bad actors in the cybercrime world?

A
Who are the actors? 
Exploit developers 
Botnet masters 
Spammers 
Phishers 
Bulletproof Hosting Providers 
Counterfeiters 
Carders, Cashiers, Mules 
Crowdturfers
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Explain the difference between the old market for exploits and the new market for exploits on the black market

A

In the past, the same party that does the compromising is the same party that makes the money - create exploits, hack the machines, and make money by themselves

Today, the bad guys specialize in different functions. Today some create the exploits and sell them; the buyers purchase the exploit and use them to make more money; etc.
Compromised computers also sold on the black market to launch attacks on other targets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the deep web, dark web, and surface web

A

deep -> it is not indexed on standard search engines

dark -> web content that exists on darkness

surface -> readily available to the public; and searchable with standard search engine

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

A program that hides malicious code from anti-virus software

A

Crypters

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Trojan Download Manager

A

Software that allows attacker to update or install malware onto victims computer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Black Hat Search Engine Optimizer

A

Increases traffic to attackers site by manipulating search engines

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Doorway pages

A

A webpages that list many keywords, in hopes of increasing search engine ranking. Scripts on the page redirect to the traffic page.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are two characteristics of spam?

A

Inappropriate or irrelevant

Large number of recipients

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What key roles do spammers play in the cybercrime world?

A

Build, curate, buy and sell email addresses
Send mail on behalf of other actors for free
Traffic PPI services looking to acquire traffic or infections for free
Phishers look to steal personal information for free

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What was the percentage of revenue became profit for the scammers in the study?

A

Only 16%; this indicates that there are many costs affiliated with scamming

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Name areas of scam infra where law enforcement can easily act:

A
  • DNS servers
  • Web servers
  • Merchant bank accounts
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How do spammers send such large bulks of emails?

A

Rent access to botnets or use botnets in house

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Explain random domain generation used in C&C architecture. Why Is it so difficult to stop?

A

Bot masters also use random domain generation because it would be easy for security teams to block the C&C domain despite the fact that it can move between IP addresses. This makes it more difficult to block a single domain.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly