Network Security threats Flashcards

1
Q

what are the different types of network attacks

A

passive attack
active attack
insider attack
brute force attack
denial of service attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

what is a passive attack

A

where someone monitors data travelling on a network and interecepts sensitive information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what is an active attack

A

is when someone attacks a network with malware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

what is an insider attack

A

when someone within an organisation exploits their access to steal information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

what is a brute force attack

A

uses automated software and trial and error to try every combination and get access to sensitive information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

what is a Denial of service attack

A

where a hacker floods a server with useless traffic and requests to cause the server to become extremely slow and crash

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

what is a way to prevent passive attacks

A

data encryption

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

what is a way to prevent active attacks

A

firewall/anti-malware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

what is a way to prevent brute force attacks

A

locking accounts after a certain number of attempts
using strong passwords

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

what are some actions malware could do

A

delete or modify data
lock files for a ransom
monitor users
scareware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

what are 4 examples of malware

A

virus
worms
trojans
spyware
ransomware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

2 ways that people have weak points

A
  1. social engineering
  2. phishing
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

what is social engineering

A

tricking someone into revealing personal information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

what is phishing

A

sending emails pretending to be reputable companies to get personal information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

what is an SQL injection

A

typing a command into a form that is connected to a database to get it to reveal sensitive information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

what are 8 ways to increase network security

A

Pen testing
Physical security
passwords
user access levels
anti-malware
encryption
firewall

16
Q

What is Penetration testing and how can it be used to increase network security

A

when an organisation employs specialists to simulate potential attacks and identify weaknesses in network security so that they can be fixed

16
Q

What is Physical security and how can it be used to increase network security

A

protects the physical parts of a network from damage.

17
Q

give 5 examples of physical security

A

locks
doors
biometrics
cameras
security staff

18
Q

What are passwords and how can they be used to increase network security

A

prevent unauthorised access to networks

19
Q

What are User access levels and how can they be used to increase network security

A

control which parts of the network different users have access to, this helps limit the number of people who have access to important data

20
Q

what is anti-malware

A

stops malware from damaging a network

21
Q

what is encryption

A

scrambling data so that only users with the right key can access it