Section 5: Mobile Device Security Flashcards
What is WPA2 in relation of wifi? What encryption standard does it use?
Wifi-Protected Access 2 (WPA2) is the highest level of security for wifi and it uses AES.
How security work in bluetooth?
Bluetooth pairs using a Link Key to encrypt its connection
What is SMS-Phising?
Pre-Txt scam that link out to malware containing sites.
What is a SIM card?
Subscriber Identity Module (SIM) is an integrated circuit that securely stores the International Mobile Subscriber Identity (IMSI) number and its related key.
What is SIM cloning?
SIM Cloning allows tow phones to utilize the same service and allow an attacker to gain access to the phones data.
What is phone highjacking?
Phone Highjacking is taking over a phone number using social engineering or SIM cloning to gain access to 2-factor authentication and takes over other account from the victim.
What is Bluejacking?
Bluejacking is sending unsolicited messages to bluetoother enable devices. Sending
What is Bluesnarfing?
Bluesnarfing is taking information from a device over bluetooth connection. Taking
What are two types of bluetooth attacks?
Bluejacking (sending data)
Bluesnarfing (taking data)
What is Remote wipe?
Remote wipe is the process of remotely wiping a device from the internet.
What is Remote Lock?
Remote Lock is the process of remotely encrypting a device requiring a special password to decrypt the phone.
What is TLS?
Transport Layer Security (TLS) creates a secure tunnel between the site and device.
What is MDM in relation to device security?
Mobile Device Management (MDM) is centralized software solution that allows system administrators to create and enforce policies across it mobile device.
What is the most dangerous device model in a work place?
Bring your own device BYOD is the most dangerous because it incurs many possible problems that the employer cannot control. Security is heavily left up to the employee.
What is Storage Segmentation in relation to devices?
Storage segmentation is the process of creating clear separations between personal and company data on a single device.