CYBERSECURITY Flashcards
WHAT IS “PHISHING”?
- a type of cybercrime where attackers trick individuals into revealing sensitive information by posing as a trustworthy entity, often through email, texts, or phone calls
- attackers create fake emails, websites, or messages that mimic legal sources like banks, social media platforms, or government agencies
WHAT IS SSL?
- it is the Secure Sockets Layer protocol which refers to encrypting, securing, and authentication communication that take place on the internet
- the default SSL/TLS port is 443 which is used for secure web communications (HTTPS) while port 80 is for HTTP
WHAT ARE SOME PREVENTION AND MITIGATION METHODS IN CYBERSECURITY?
- IMPLEMENT STRONG ACCESS CONTROLS: principle of least privilege, regular audits
- REGULAR SOFTWARE UPDATES & PATCH MANAGEMENT: automate updates & monitor vulnerabilities
- EMPLOYEE TRAINING & AWARENESS: security awareness programs & phishing simulations
- DATA BACKUP & RECOVERY PLANS: regular backups & disaster recovery planning
- DEPLOY ADVANCED SECURITY SOLUTIONS: intrusion detection & prevention systems, security information & event management
- NETWORK SECURITY MEASURES: network segmentation, VPN’s
- DEVELOP & ENFORCE SECURITY POLICIES
WHAT IS RANSOMWARE?
malicious software that encrypts a victim’s data, making it inaccessible until a ransom is paid
WHAT IS SOCIAL ENGINEERING?
manipulating individuals into divulging confidential info or performing actions that compromise security
WHAT ARE INSIDER THREATS?
risks posed by individuals within the organization, such as employees, contractors, or business partners who have access to sensitive information
WHAT IS MALWARE?
software designed to disrupt, damage, or gain unauthorized access to computer systems
WHAT IS ENCRYPTION IN CYBERSECURITY?
the process of converting data into a coded format to prevent unauthorized access
WHAT IS AUTHORIZATION IN CYBERSECURITY?
the process of determining what resources and actions a user is permitted to access within a system
WHAT IS AUTHENTICATION IN CYBERSECURITY?
the process of verifying the identity of a user or system
WHATIS A FIREWALL?
a network security device or software that monitors and controls incoming and outgoing network traffic based on predetermined security rules