T5 Flashcards

1
Q

Pharming Attack

A

Manipulating web traffic to redirect users to a fake website

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Primary goal of a pharming attack

A

Steal sensitive information like usernames, passwords, payment details, using fake logins and payment forms.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Why is it calling pharming?

A

phishing (tricking into stealing info) + farming (hurding animals, passive redirects!)

Different rom phising because user can type a correct URL and still get brought to fake site!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Two approaches for Attacking HTTP (Pharming)

A
  1. Network-wide operation
  2. Single host
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Network-wide http attack strategies

A
  1. Rogue DHCP server to provide fake DNS settings
  2. Packet manipulation by altering traffic destinations with tools loke iptables
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Single host http attack techniques

A
  1. Edit /etc/hosts file
  2. Manipulate DNS settings in router or device to point to fake server
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

HTTPS attack strategies (pharming)

A
  1. Forging TLS certificate
  2. Add new fake CA Authority/certificate to specific browsers list of trusted certificates
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What must you do if a CA’s private key is compromised?

A

Revoke all certificates issued by that CA immediately! Not a lot of developers know that. Remember gpg we made revocation certificate.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly