Cybersecurity Flashcards
What is cybersecurity?
Cybersecurity consists of the processes, practices and technologies that protect networks, computers, and programs from damage or unauthorised access.
What is social engineering?
Social engineering involves manipulating people into giving up sensitive, confidential information like PIN codes and passwords.
What is malicious code?
Malicious code is software written with the intent to harm, damage or breach a computer system or a network.
What are the dangers of weak or default passwords?
Passwords that are common or easy to crack can be easily used by hackers to divulge sensitive confidential information, which is detrimental to the user.
What are the dangers of misconfigured access rights?
If the wrong users are given incorrectly configured access, they could harm the computer network or steal confidential information.
What is removable media?
Removable media are storage devices. If these storage devices contain malware, they can transfer them to the computer system. If the computer itself is connected to a network, then the risk of infecting all the computers in the network is run.
What are the dangers of unpatched/outdated software?
Patching is the process of updating software to fix a problem or add a new feature.
If outdated software is used, hackers might develop an exploit around it and therefore gain access to the system.
What is penetration testing?
Penetration testing is the simulation of the same techniques that a hacker would use to infiltrate a system. However, this is done with the intent of finding weaknesses within the system that can be then patched rather than to steal data.
What is white box testing?
It is a way of software testing in which the internal structure or the program or the code is known to the tester.
What is black box testing?
It is a way of software testing in which the internal structure or the program or the code is hidden and nothing is known about it.
What is blagging?
Blagging is the act of creating a fake scenario to manipulate a victim to divulge sensitive information.
What is phishing?
Phishing is the impersonation of a familiar entity to steal data or sensitive information from a user.
What is pharming?
Pharming is the criminal act of redirecting one website’s traffic to another to lure unsuspecting victims to enter their login information which can then be used to compromise the account.
What is shouldering?
Shouldering is observing a person’s private information over their shoulder eg PINs at ATMs or passwords in busy places
What is malware?
Malware is software written and distributed with the intent to harm a computer system/network or steal private information from it.