Extra Questions for Test 1 Prep Flashcards
A bot is a computer compromised by malware and under the control of a bot master (attacker).
False
The best defense against being an unwitting participant in a DDoS attack is to prevent your systems from being compromised.
True
Botnet command-and-control must be centralized, i.e., all bots communicate with a central server(s).
True
Both static and dynamic analyses are needed in order to fully understand malware behaviors.
True
The domain name(s) of the command and control server(s) of a botnet are pre-determined for the lifetime of the botnet.
False
Some APT attacks last for years before they are detected.
True
If we find that a botnet server is located in country X, we can be certain that criminals within country X control the botnet.
False
A Botnet can use _______ for command-and-control.A. Email B. HTTP C. IRC D. All the above
All the Above
In a ______ attack the attacker creates a series of DNS requests containing the spoofed source address for the target system.A. SYN flood B. DNS amplification C. poison packet D. UDP flood
B. DNS amplification
Characteristics of APT include ______.(Advanced Persistent Threats)A. Using zero-day exploit B. Low-and-slow C. Targeting high-value data D. All the above
D. All the above