Deception And Disruption Flashcards

1
Q

Honeynet

A

Is multiple, linked honeypots that simulate a network environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

DNS sinkhole

A

Sinkhole is a DNS server that response with false results. DNS sinkholes can be captured and analyses . Sinkholes are most often used to seize control of botnets by interrupting DNS names of the bot that is used by malware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

SPAM trap

A

Spam traps (fake email address) are used to identify and block spammers. Legitimate email is unlikely to be sent to fake address, so when an email is received it is most likely spam

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Honey Token

A

Is a beacon embedded into a document, databases, images, directory and folders. Honey-tokens are used to identify the attacker. Are used to track malicious actors and collecting critical information about their identity and methods used to exploit the system. Putting traceable data to the honeynet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Honey traps

A

Are a deception technique that allows security defenders to understand attacker behaviors and patterns. Based on a design and deployment models, they are intended to look legitimate to attackers.
Honey traps :
Honeypot
Honey files
Honey net
Honey tokens

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Honeypot

A

This is a decoy system (self defense system, gives a false impression) i.e we server,
Honey pots can be divided into :
High interaction
Low interaction

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Deception and disruption

A

Techniques and practices are used to deceive potential attackers with the goal of threat intelligence collection and early breach detection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Honey file

A

Is a decoy file located in network files folder. Is designed to detect access and exploration attemps,

How well did you know this?
1
Not at all
2
3
4
5
Perfectly