Module 5 - Active Data Gathering and Network Scans I Flashcards

1
Q

Wireless Network Vulnerabilities

A

Service Set ID (SSID) (broadcast or not)
can intercept regardless

WEP - easily defeated
WPA - can be defeated

once in - inside LAN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Tools for wireless network

A

Kismet
NetStumbler
Pineapple Router (trick people connect to rogue)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Vulnerability Scanners

A

GFI LanGuard
Microsoft Security Baseline Analyzer
Nessus
NeXpose

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Web App Tester

A

Burp Suite
(free version - limited)
Profession - $299 per user per year

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Sniffers

A

capture network traffic
info transmitted in clear
hardware (hub, port mirroring, port spanning)
Wireshark

can sniff Fiber Optics (~$1000)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Nessus

A
Tenable
~$1200 per year
HomeFeed is free
46,000 plugins
Server Manager and Client
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Nessus Tabs

A

Users
Policies
Scans
Reports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Nessus Default Policies

A

External Network Scan
Internal Network Scan
Prepare for PCI DNS audits
Web App Tests

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Nessus Port Scanners

A
TCP
UDP
SYN
SNMP
Netstat SSH Scan
Netstat WMI Scan
Ping
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Nessus Policy Options

A

General
Credentials
Plugins
Preferences

Avoid Sequential Scans

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Nessus Severity levels

A

High
Medium
Low

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Nessus download options

A

.nessus
HTML
RTF

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Vulnerability Scans

A

establish connection between an open port and a vulnerable application or configuration setting behind it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

NeXpose

A
Rapid7
Windows 2003 Server
integrates with Metasploit
Community Edition (free)
Express ($3000 per user per year)
Professional ($6999 per user per year)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Nexpose Port

A

3780

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

NeXpose Tabs

A
Home
Assets
Reports
Vulnerabilities
Administration
17
Q

NeXpose Site Configuration

A

Devices to scan
Scan Template
New Manual Scan

18
Q

NeXpose Severity Levels

A

Critical
Severe
Moderate

19
Q

MS Security Baseline Analyzer

A
Severe - Check failed (critical)
Check failed (non-critical)
Check passed