Wireless CNO Flashcards

1
Q

wlan.fc.type eq 0 is what?

A

Filter for All Management frames in wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

wlan.fc.type_subtype eq 0 is what?

A

Association Request filter is a type of management frame

above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

wlan.fc.type_subtype eq 1 is what?

A

Association response a type of management frame. above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

wlan.fc.type_subtype eq 12

A

Deauthentication frame is a type of management frame.

above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

wlan.fc.type_subtype eq 4

A

Probe Request frame is a type of management frame.

above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

wlan.fc.type_subtype eq 5

A

Probe Response frame is a type of management frame
above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

wlan.fc.type_subtype eq 27

A

Request to Send frame is a type of management frame.
above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

wlan.fc.type_subtype eq 28

A

Clear to Send frame is a type of management frame.

above is the filter for Wireshark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Continue Collection

A

Collect as able to maintain tgt awareness, but no action at this time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Conduct CNE

A

Active & Passive operations to gain access to tgt information systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Conduct CNA

A

We must be careful with these activities since DISRUPTING, DENYING, DEGRADING target systems and their ability to communicate result in a denial of service that will disrupt future collection efforts, and may alert the target that they are being targeted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Kill/Capture

A

Final part of the Find/Fix/Finish picture. POL efforts must be used to ensure time/location when units conduct kill/capture

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

ROGUE AP - EVIL TWIN ATTACK

A
  • Fake Wi-Fi network that looks like a legitimate access point to steal victims sensitive details
  • Attackers can initiate a DEAUTHENTICATION to get victims to associate with the new rogue APs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly