Vulnerabilities in systems Flashcards

1
Q

Advanced persistent threat (APT):

A

An instance when a threat actor maintains unauthorized access to a system for an extended period of time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Attack surface:

A

All the potential vulnerabilities that a threat actor could exploit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Attack vector:

A

The pathways attackers use to penetrate security defenses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Attack tree

A

A diagram that maps threats to assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Bug bounty:

A

Programs that encourage freelance hackers to find and report vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Common Vulnerabilities and Exposures (CVE®) list:

A

An openly accessible dictionary of known vulnerabilities and exposures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Common Vulnerability Scoring System (CVSS):

A

A measurement system that scores the severity of a vulnerability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

CVE Numbering Authority (CNA):

A

An organization that volunteers to analyze and distribute information on eligible CVEs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Defense in depth

A

A layered approach to vulnerability management that reduces risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Exploit:

A

A way of taking advantage of a vulnerability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Exposure:

A

A mistake that can be exploited by a threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

MITRE:

A

A collection of non-profit research and development centers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Hacker:

A

Any person who uses computers to gain access to computer systems, networks, or data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Security hardening:

A

The process of strengthening a system to reduce its vulnerability and attack surface

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Vulnerability:

A

A weakness that can be exploited by a threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Threat actor:

A

Any person or group who presents a security risk

15
Q

Vulnerability assessment:

A

The internal review process of a company’s security systems

16
Q

Vulnerability management:

A

The process of finding and patching vulnerabilities

17
Q

Vulnerability scanner:

A

Software that automatically compares existing common vulnerabilities and exposures against the technologies on the network

18
Q

Zero-day:

A