Labs Flashcards
- According to the Critical Security Controls, which of the Critical Security Controls is considered the most important to reducing risk in an enterprise environment?
CIS Control 1: Inventory and Control of Hardware Assets
- According to the Critical Security Controls, which of the Critical Security Controls is considered the least important to reducing risk in an enterprise environment?
CIS Control 20: Penetration Tests and Red Team Exercises
- Which of the Critical Security Controls specifies conducting security awareness training for a company’s employees
CIS Control 17: Implement a Security Awareness and Training Program
- Which of the Critical Security Controls is used when a potential security incident occurs within a
Company?
CIS Control 19: Incident Response and Management
- Which of the Critical Security Controls would application developers be most interested in?
CIS Control 18: Application Software Security
- The NSA ANT Catalog is a list of technological solutions available to NSA team members. What does ANT stand for?
Advanced Network Technology
- What is the name of the NSA “elite hacking force”?
Tailored Access Operations / Computer Network Operations
What is the name given to the NSA hacking group by outside malware companies?
The Equation Group
- Who does Jack Rhysider interview for the podcast? What is the name of the interviewee’s company?
Jake Williams, Rendition InfoSec
- What is the Twitter handle of the person interviewed during the podcast?
MalwareJake
- Once the Shadow Brokers group stole NSA hacking tools, what did they attempt to do with the stolen tools?
Sell the information to the highest bidder
- Who did the Shadow Brokers refer to as “Dirty Grandpa”?
Joe Biden
- The Shadow Brokers stated that they had supported which President of the United States?
Donald Trump
- What was special about the interviewee that the Shadow Brokers revealed to the world?
He was a former member of TAO / The Equation Group
- What is the name of the institute that the interviewee teaches for?
SANS Institute
- What is the name of the exploit created by TAO which can be used to take full control of a Microsoft Windows system over SMB?
Eternal Blue
- How would an organization protect its Windows systems from the eternal blue exploit
Update Windows, an update came out that fixed the vulnerability a month earlier.
- The Shadow Brokers are believed to be aligned with which country?
Russia
- Why did the interviewee cancel travel to Singapore after the Shadow Brokers revelation that he was a member of TAO?
He may have played a part in TAO’s targeting of China. He could have been arrested.
- What is a “Zero Day” exploit?
An exploit that takes advantages of a vulnerability that is not yet known by security professionals. They have had “zero days” to prepare for the exploit.
- Chris mentions ‘d0x’ attacks or ‘d0xing’ a target. What is he describing?
Gathering personal information on his target
- What is Chris’ mantra for professional social engineering engagements?
“Leave them feeling better having met you.”
- What type of background noise does Chris use during his pretext phone call? (14:00)
Crying “sick” child
- In this same phone call from Question #4, Chris pretends to be his target’s what?
Personal assistant