Security Operations Flashcards
Entitlement
Refers to the amount of privileges granted to users, typically when first provisioning an account. In other words, when a administrators create user accounts, they ensure the accounts are provisioned with the appropriate amount of resources, and this includes privileges.
Aggregation
In the context of least privileges, aggregation refers to the amount of privileges that users collect over time.
Transitive Trust
A nontransitive trust exists between two security domains, which could be within the same organization or between different organizations.
Incident Response steps
Detection –> Response –> Mitigation –> Reporting –> Recovery –> Remediation –> Lessons Learned
Smurf Attack
A distributed denial-of-service attack in which large numbers of Internet Control Message Protocol (ICMP) packets with the intended victim’s spoofed source IP are broadcast to a computer network using an IP broadcast address.
Fraggle Attack
A denial-of-service (DoS) attack that involves sending a large amount of spoofed UDP traffic to a router’s broadcast address within a network.