Tools Flashcards

1
Q

Reverse Shell

A

Target machine connects back to the attacker, granting an interactive shell. (Attacker is listening for connection)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Bind Shell

A

The attacker connects to a listening service on the target machine, gaining an interactive shell. (Target is listening for connection)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Splunk Forwarder

A

Lightweight agent installed on the endpoint intended to be monitored, and its main task is to collect the data and send it to the Splunk instance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Splunk Indexer

A

Plays the main role in processing the data it receives from forwarders. It takes the data, normalizes it into field-value pairs, determines the datatype of the data, and stores them as events.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Incident Handling Life Cycle

A
  1. Preparation
  2. Detection and Analysis
  3. Containment, Eradication, and Recovery
  4. Post-Incident Activities (Lessons Learned)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Cyber Kill Chain

A

Reconnaissance
Weaponization
Delivery
Exploitation
Installation
Command & Control
Actions on Objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly