Sybex Chapter 1 - Penetration Testing Flashcards

1
Q

D.A.D. Triad

A

Disclosure, Alteration, Denial. The antithesis to the CIA triad, Confidentiality, Integrity, Availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

SIEM

A

Security Information and Event Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Threat Hunting

A

Search an org’s infrastructure in search of signs of a successful attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

PCI DSS

A

Payment Card Industry Data Security Standard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

CDE

A

Cardholder Data Environment (How PCI DSS refers to card processing environments)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

CompTIA PenTesting Process

A

1) Planning and Scoping
2) Information Gathering and Vuln Scanning
3) Attacking and Exploiting
4) Reporting and Communicating Results

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

The Cyber Kill Chain

A

1) Reconnaissance
2) Weaponization
3) Delivery
4) Exploitation
5) Installation
6) Command & Control
7) Actions on Objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly