Network monitoring and analysis Flashcards

1
Q

Command and control (C2)

A

The techniques used by malicious actors to maintain communications with compromised systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Command-line interface (CLI)

A

A text-based user interface that uses commands to interact with the computer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Data packet:

A

A basic unit of information that travels from one device to another within a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Data exfiltration:

A

Unauthorized transmission of data from a system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Indicators of compromise (IoC)

A

Observable evidence that suggests signs of a potential security incident

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Internet Protocol (IP):

A

A set of standards used for routing and addressing data packets as they travel between devices on a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Intrusion detection systems (IDS):

A

An application that monitors system activity and alerts on possible intrusions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Media Access Control (MAC) Address:

A

A unique alphanumeric identifier that is assigned to each physical device on a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

National Institute of Standards and Technology (NIST) Incident Response Lifecycle:

A

A framework for incident response consisting of four phases: Preparation; Detection and Analysis; Containment, Eradication and Recovery; and Post-incident activity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Network data:

A

The data that’s transmitted between devices on a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Network protocol analyzer (packet sniffer):

A

A tool designed to capture and analyze data traffic within a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Network traffic:

A

The amount of data that moves across a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Network Interface Card (NIC):

A

Hardware that connects computers to a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Packet capture (p-cap):

A

A file containing data packets intercepted from an interface or network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Packet sniffing:

A

The practice of capturing and inspecting data packets across a network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Playbook:

A

A manual that provides details about any operational action

15
Q

Root user (or superuser):

A

A user with elevated privileges to modify the system

16
Q

Sudo:

A

A command that temporarily grants elevated permissions to specific users

17
Q

tcpdump:

A

A command-line network protocol analyzer

18
Q

Wireshark:

A

An open-source network protocol analyzer