Threat Hunting Flashcards

1
Q

A cyber security technique designed to detect the presence of threats that have not been discovered by a normal security monitoring, and is potentially less disruptive than penetration testing.

A

Threat Hunting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Derived from threat modeling and is based on potential events with a higher likelihood and higher impact.

A

Establishing a hypothesis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Involves the creation of scenarios that show how a prospective attacker might attempt an intrusion and what their objectives might be.

A

Profiling threat actors and activities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are 4 components of regular monitor and incident response?

A

Analyze network traffic.
Analyze the executable process list.
Analyze other infected hosts.
Identify how the malicious process was executed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are some benefits to threat hunting?

A
Improves detection capabilities.
Integrates intelligence.
Reduces attack surface  
Blocks attack vectors  
Identifies critical assets
How well did you know this?
1
Not at all
2
3
4
5
Perfectly