Dion - Security Applications and Devices pg13 Flashcards

1
Q

What is a Firewall?

A

An application that protects unwanted internet traffic.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the different firewalls that come with operating systems?

A

Windows Firewall (Windows)
PF and IPFW (OSX)
iptables (Linux)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is IDS?

A

Intrusion Detection System

Device or software that monitors a network and analyzes the data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the two types of IDS?

A

HIDS - Host-based IDS

NIDS - Network based IDS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the three types of detection methods used by an IDS?

A

Signature based
- Specific string of bytes triggers an alert

Policy based
- Policy rules “No telnet authorized”

Anomaly based

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What 4 types of alert exist for an IDS?

A

True positive
- Malicious activity identified as an attack

False positive
- Legitimate activity identified as an attack

True negative
- Legitimate activity identified as legitimate traffic

False negative
- Malicious activity identified as legitimate traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the difference between IDS and IPS?

A

IDS only alerts and logs, IPS also stops activity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What can a HIDS logs be used for?

A

To recreate an attack!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are Pop-up Blockers?

A

Browsers block javascript that creates pop-ups.

Attackers may get money via pay per click

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is DLP?

A

Data Loss Prevention

  • Monitors data when in use, at rest or in transit.
  • Detects attempts to steal data
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is a Endpoint DLP System?

A
  • Software
  • Monitors data use on a computer
  • Can stop a file transfer or alert admin
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a Network DLP System?

A
  • Software or hardware

- Installed on perimeter of network to detect data in transit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is a Storage DLP System?

A
  • Software
  • Installed on servers in a datacenter
  • Inspects data at rest
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a Cloud DLP System?

A
  • Cloud software

- Protects data in the cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the BIOS?

A

Basic Input Output System

- Firmware with instructions on how a computer should accept input and send output

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is UEFI?

A

Unified Extensible Firmware Interface

Same thing as BIOS?!

17
Q

What are the 5 ways to secure the BIOS?

A
  1. Flash the BIOS
  2. Use a BIOS password
  3. Configure the BIOS boot order
  4. Disable external ports and devices
  5. Enable secure boot option
18
Q

What is NAS?

A

Network Attached Storage

  • Storage devices that connect directly to an orgs network
  • Usually implement RAID arrays to ensure high availability
19
Q

What is SAN?

A

Storage Area Network

  • Network that performs block storage functions that may consist of NAS devices
20
Q

What is Disk Encryption?

A

Encryption scrambles data into unreadable information

21
Q

What is SED?

A

Self Encrypting Drive

  • Storage device
  • Whole disk encryption
  • Uses embedded hardware
  • Can be HDD or SDD
22
Q

Name two common types of encryption software

A
  • BitLocker (Windows)

- FileVault (OSX)

23
Q

What is TPM?

A

Trusted Platform Module