Fundamentals Flashcards
What is shoulder surfing?
Social engineering technique requiring no technical skills - look over someone’s shoulder to see password short-range or long-range.
What are examples of passive network attacks?
- Shoulder surfing
- release or selling stolen data
- traffic analysis
- data capture
What are examples of active network attacks?
- Unauthorized login
- DOS
- Masquerading (fake identity to gain access)
- Packet modification or replay
What is reconnaissance?
Finding information about a network
What are some methods for network attacking?
Reconnaissance, social engineering, privilege escalation (hopping), backdoors, code execution (XSS)
What are two examples of enumeration tools?
netview and netuser
What are two examples of port scanners?
nmap and nessus
What are two examples of vulnerability scanners?
metasploit, ISS
What are two examples of packet sniffers?
Wireshark and snort
What are some examples of malware?
Virus, worm, trojan horse
What are some countermeasures to network security threats?
NAT, IDS/IPS (Intrusion Detection/Prevention System), Firewalls, AAA routing, proxy servers, policies, training and awareness