SECFND 7: Network App Attacks Flashcards
Fast Flux
have numerous IP addresses that are associated with a single fully qualified domain name, where the IP addresses are changed with extremely high frequency by changing DNS A records
Double IP flux
rapidly change both the hostname to IP address mappings, and also the authoritative name server using the DNS name server resource records
Domain Generation Algorithm (DGA)
Randomly generated domain names often used in CnC or malware.
XSS
injection of malicious scripts into web pages that are executed on the client-side. Lack of input validation. Often delivered via phishing
Stored XSS
Most dangerous. Stored on infected server
Reflected XSS
Most common. User clicks malicious link.
XSS exploits trust in
Users trust in a particular website
CSRF exploits trust in…
Website trust in a users browser
Homoglyph
text characters that have shapes which are identical or similar to each other