Security: Information Gathering Flashcards
1
Q
DIG TYPES
A
A = IPV4 address record
AAAA = IPv6
CNAME = canonical name record
MX = mail exchange
PTR = pointer resource record
2
Q
DIG ERRORS
A
NO ERROR
SERVFAIL
NXDOMAIN
REFUSED
3
Q
NXDOMAIN Error
A
name queried does not exist and no authoritative DNS data to be served
4
Q
REFUSED Error
A
zone does not exist at the request authority and their infrastructure is not serving things that don’t exist at all
5
Q
Cyber Kill Chain steps
A
- Reconnaissance
- Intrusion
- Exploitation
- Privilege escalation
- Lateral movement
- Obfuscation/Anti-Forensics
- Denial of Service
- Exfiltration
6
Q
Three types of exploitation
A
- Code
- Misconfiguration
- Human
7
Q
Code exploitation
A
taking advantage of a flaw within a program’s instructions and manipulating it in a manner that was not intended by the creators
8
Q
Misconfiguration
A
a system’s setting that allows it to be manipulated by an unintended source