Module 03. Data Loss Prevention Flashcards
Bell-LaPudula
Confidential, Secret, Top Secret
Data Classification
Public, Private, Restricted
Data Types
Personal, Financial, Intellectual, Customer
Personal ID Information
Health, Racial, Political, Religious
Internet Data
Cookies, Hashed Email Address, Mobile Add
Data Leak Channels
Physical:
Network:
Malware:
Protocol Abuse:
Physical Data Leak
Employees, USB Ports(epoxy), Webcams, printers, scanners
Network
SSL(Secure Socket Layer), TLS (Transport Layer Security) 443 : turned off, not strict enough
Malware
Multi-Stage, Social Media, New signatures
Protocol Abuse
DNS Tunneling, File Server Traffic (SFTP Allowed in outbound traffic), ICMP Tunneling - Sending data using echo packets.
REGEX
Regular Expression
DLP
Data Loss Prevention
Block List
Threat Centric - all allowed except excluded list
Allow List
Trust Centric - all denied except allowed list
Open Source DLP
OpenDLP