Section 2 Flashcards
What is an asset
A person, device, location, or information that SecOps aims to protect from attack.
What is a risk
The potential of a threat to exploit a vulnerability via an attack.
What is SecOps
The abbreviation for IT security operations; a discipline within IT responsible for protecting assets by reducing the risk of attacks.
Threat
Something or someone that can exploit a vulnerability to attack an asset.
Vulnerability
A weakness in software, hardware, facilities, or humans that can be exploited by a threat.
What is an APT
a stealthy threat actor, typically a state or state-sponsored group, which gains unauthorized access to a computer network and remains undetected for an extended period
What is a red team
attempts to compromise the security
What is a blue team
defends against the red team
What is a purple team
while the red and blue team engage and certain success criteria are met, the teams debrief and cross-train each other
What happens during a Smurf attack
DDoS attack where the attacker sends a forged ICMP echo-request packet to the broadcast address of a large IP subnet, which means that a massive number of computers would all receive the message. Instead of randomizing the source address as in the ping flood attack, in the Smurf attack, the attacker specifies the victim’s address as the source address. As each of the hundreds or thousands of computers receives the ICMP echo-request packet, each will respond by sending an ICMP echo-reply packet to the victim’s address, thereby crippling its network connection.