Unit 6 - Module 2 - Network Analysis Flashcards

1
Q

What do you call the amount of data that moves across a network?

A

Network Traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What do you call data that’s transmitted between devices on a network?

A

Network Data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What do you call observable evidence that suggests signs of a potential security incident?

A

Indicators of compromise (IOC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the unauthorized transmission of data from a system?

A

Data Exfiltration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What do you call the normal or expected behaviour?

A

A Baseline

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are techniques used by a malicious actors to maintain communications with compromised systems?

A

Command and Control (C2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What operations center is responsible for maintaining network performance, availbility, and uptime?

A

Network Operations Center (NOC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What operations center monitors systems against security threats and attacks?

A

Security Operations Centers (SOC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are security analysts that monitor networks to identify any signs of potential security incidents called?

A

Indicators of compromise (IoC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are tools designed to capture and analyze data also known as packet sniffers?

A

Network Protocol Analyzers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

When kind of measures would you call this?

Prevent Attack Access

Monitor Network Activity

Protect Assets

Detect and stop the exfiltration

A

Defensive Measures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a tool designed to capture and analyze data traffic within a network?

A

Network protocol analyzer ( Packet Sniffer )

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is a file containing data packets intercepted from an interface or network?

A

Packet Capture (P-cap)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is hardware that connects computers to a netowork, like a router?

A

Network Interface Card (NIC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

These 4 formats, what are they?

1) Libpcap
2) WinPcap
3) Npcap
4) PCAPng

A

Packet Sniffers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What accepts and delivers packets for the network?

A

Internet Layer

17
Q

What is Wireshark?

A

Open-source network protocol analyzer

18
Q

What command line is used to capture network traffic?

A

tcpdump