SG 7 - Study Notecards Flashcards

1
Q

What is Packet Crafting?

A

Generating a pacet that has gields set in a way specified by the attackerm which may include a payload in addition to headers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Kerberoasting ?

A

An attack technique that uses Kerebros requests made over the network to gather info, which could lead to credential compromise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a Shodan?

A

A website that can be used to locate internet of Things (IoT) devices around the world

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is msfvenom ?

A
  • A tool that comes with Metasploit
  • Allows someone to package up Metasploit payloads to create malware
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Ghidra ?

A

A tool that can be used to reverse-engineer malware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Process Injecting?

A

Injecting code into an existing process to take control of its execution path, hiding the running code

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is Living Off The Land ?

A

Where an attacker uses tools already on a target system.

Example: Using PowerShell on Windows systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is Exploit-DB ?

A

A website that contains proof of concept code for exploitation of systems and vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is Operational Technology (OT) ?

A

Consists of systems and components that support industrial control systems, such as power plants, water control facilities, etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is Cloud-Native Design?

A

The use of virtualization techniques, as well as different types of data storage in order to provide more resilient applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is BPF ?

A

This is a way to filter packets for the purpose of capturing or display

Berkeley Packet Filter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a Security Policy?

A

A high level statement of the security objectives of an Org

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is Phishing?

A

A social engineering attack where the attacker sends an email to an user trying to get them to give up info

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is IPSec ?

A
  • A set of functionality introduced in IPv6
  • Adds confidentiality and integrity controls to packets being transmitted
  • It has been added on top of IPv4
How well did you know this?
1
Not at all
2
3
4
5
Perfectly