Week 2 Classification of Attacks, Software Weapons and Social Engineering Flashcards
What is secure coding and why is it important?
Secure coding, also referred to as secure programming, involves writing code in a high-level language that follows strict principles, with the goal of preventing potential vulnerabilities
More and more financial transactions are also moving online. Security incidents often originate deep in an application’s underlying software and can have serious consequences for businesses and individuals alike. Insecure code in important industries (e.g., finance, healthcare, energy, and transport) could result in financial and property damages, market manipulation and theft, even physical harm and fatalities.
What are the three axes of classifcation of possible attacks?
- the state of the asset,
- the type of assurance the asset offers,
- and the type of vulnerability necessary for an attack to be carried out.
What are the attacks on the CIA Triad called?
DAD
Disclosure
Alteration
Denial
What does STRIDE mean?
Spoofing
Tampering
Repudiation
Information disclosure
Denial of Service
Elevation of Privelage
https://mylms.vossie.net/pluginfile.php/763792/mod_book/chapter/961633/image.png
What are the information states?
Storage
Transmission
Processing
What are the 7 layers of OSI
- Physical
- Data Link
- Network
- Transport
- Session
- Presentation
- Application
The software weapons
- Adware
- Trojan
- Ransomware
- Back Door
- Virus
- SPAM
- Botware
- SEO