Module 7 - The Role of Social Networking Flashcards

1
Q

Uses of Social Media

A

1 to many comms. with tools such as Twitter, Flickr, and resume sites

  • 1 to many comms with some privileged comm. to groups of individuals with tools such as Facebook (with security enabled) and Orkut (popular in S. America and S. Africa).
  • One to One sharing of info with tools such as SnapChat and Pair
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Social Media as Means of OSInt

A

Collect information from across multiple social networking sites, e.g. Facebook, LinkedIn, Twitter, Flickr, Monster, forums, product reviews, etc. Becomes very easy to do.

  • Also against the corporations based on information posted by employees
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Social Networking Sites serve as (4):

A
  • passive source of info. about targets, both individuals and organizations
  • an active source of reconnaissance (Robin Sage and fake profiles)
  • a weapon, e.g. profiles with hyperlinks and embedded malicious pictures
  • as means to rally large groups of individuals
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Popular Sources of Communication and Information:

A
  • social networking sites (personal, professional)
  • file sharing sites
  • pastebin (Anonymous)
  • IRC Servers
  • Forums
  • 4chan.org
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

List 7 Popular Social Networking Sites in US

A
  • MySpace
  • Facebook
  • Twitter
  • Linked In
  • Google Plus
  • Flickr
  • Four Square
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Social Media Problem for Governments (examples)

A

View Social Networking as a problem (sensitive information disclosed online)
- example - Fairfax Media survey uncovered > 200 Australian intelligence officers who had disclosed their classified employment on sites.
> Petraeus Affiar (mistress leak sensitive information
> UK - Wife of MI6 posted data on Facebook

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Social Media as Intel Source (tool)

A

For governments, military, and non state such as corporations.

Dynamic Twitter Network Analysis (DTNA)
- pulls data from Facebook, YouTube, Google, Twitter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Robin Sage

A
  • Thomas Ryan ran experiment Dec 2009 - Jan 2010.

- Obtained 300 LinkedIn contacts, 110 Facebook Friends, 141 Twitter followers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Terrorists Use of Social Media for Intelligence

A

Taliban friending US Troops on Facebook using fake accounts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Cyber Profiling Using Social Media (how its done)

A
  • Identify Individuals of Interest (DBAs, Security Admins, Firewall engineers)
  • Identify Architecture (determine weaknesses based on posting)
  • Target Organizations of interest (realistic spear phishing attacks, logistical information)

One Intrusion Technique Using Social Media:

1) Forgot password
2) Answer security questions based on profiling data
3) Reset the password and reset secondary e-mail address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Live Journal

A

Accounts: 41.4 Million
US Accounts: 4.5 million
Russian Federation Accounts: 2.6 million (but much more active)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Sentinel Analyzer

A
  • Analyzes cluster “power” of individuals, shows connections $4000
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Facebook Notes

A
  • Username and password required for logon
  • Logon from computer or mobile device
  • E-mail alert when an unusual device or location are used.
  • Friend Invitations must be accepted.
  • Postings timestamped
  • Not all profiles viewable
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Twitter Notes

A

all around the world

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Tool for Looking at Metadata

A
ExifReader
- make/model
- timestamp
- phone's GPS
(likely on Apple, possible on Android)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly