Font size
WorksheetsThreats and Attacks (Sec+)
Total questions: 26
Worksheet time: 14mins
When a person’s identity is established with proof and confirmed by a system
Accounting
Authorization
Authentication
Availability
Occurs when a user is given access to a certain piece of data or certain areas of a building
Availability
Accounting
Authorization
Administration
Non-repudiation occurs when you have proof that someone has taken an action
Accounting
Administration
Integrity
Access
AAA stands for...
Availability
Authentication
Authorization
Authorization
Authentication
Accounting
Accounting
Availability
Administration
APT
Actors
Advanced Persistent Threats
Types of security threats
Social Engineering
White Hats
Social Media
System Failure
The CIA Triad consists of confidentiality, integrity and (a)
Short-hand term for malicious software
Mali
Hackers
Malware
MalSof
Occurs when access to computer resources and data occurs without the consent of the owner
Insider Attack
Lack of physical controls
Unauthorized Access
Administrative Controls
Occurs when a computer crashes or an individual application fails
System failure
Network failure
Black hat
Firewall fail
Act of manipulating users into revealing confidential information or performing other detrimental actions
Social engineering
Active attack
Lack of technical controls
Script kiddies
Alarm systems, locks, surveillance cameras, identification cards, and security guards
Physical controls
Technical controls
Administrative controls
APT's
Smart cards, encryption, access control lists (ACLs), intrusion detection systems, and network authentication
Technical controls
Administrative controls
Identification authorization
Security threat
Policies, procedures, security awareness training, contingency planning, and disaster recovery plans
Administrative controls
Physical controls
Technical controls
Authentication
Which of these types of hackers?
White Hats
Blacks Hats
Green Hats
Red Hats
Elite
Elite hackers are
Hackers who attempt to hack into a network with permission of
the company but are not employed by the company
Hackers who find and exploit vulnerabilities before anyone else does
Malicious hackers who break into computer systems and networks without authorization or permission
Non-malicious hackers who attempt to break into a company’s
systems at their request
White Hats are
Non-malicious hackers who attempt to break into a company’s
systems at their request
Hackers without any affiliation to a company who attempt to
break into a company’s network but risk the law by doing so
Hackers who attempt to hack into a network with permission of
the company but are not employed by the company
Malicious hackers who break into computer systems and networks without authorization or permission
Malicious hackers who break into computer systems and networks without authorization or permission
Black Hats
Gray Hats
Elite
Blue Hats
Hackers without any affiliation to a company who attempt to break into a company’s network but risk the law by doing so
Gray Hats
Script Kiddies
Hacktivits
Blue Hats
Blue hats
are 1 in 10,000
have limited skill and only run other people’s exploits and tools
attempt to hack into a network with permission of
the company but are not employed by the company
designed to infiltrate a computer system and possibly damage it without the user’s knowledge or consent
What is the tier of threat actor skill levels from top to bottom?
APT
Organized Crime
Hacktivists
Script Kiddies
APT
Hactivist
Script Kiddies
Elite Hackers
Organized Crime
Hacktivists
Script Kiddies
APT
Hacktivists
APT
Trojan Horses
Phishers
Most likely to be on a company payroll
White hat
Black hat
Script Kiddie
Gray hat
Script Kiddies
None of these
Hackers who are part of a crime group that is well-funded and highly
sophisticated
Highly trained and funded groups of hackers (often by nation states) with
covert and open-source intelligence at their disposal
Hackers with little to no skill who only use the tools and exploits written by others
Driven by a cause like social change, political agendas, or
terrorism
All of these
Hacktivists
Organized Crime
Advanced Persistent Threats
Hackers who are part of a crime group that is well-funded and highly sophisticated
Organized Crime
Script Kiddies
Advanced Threats
White Hat
Advanced Persistent Threats
no skill who only use the tools and exploits written by others
funded groups of hackers with
covert and open-source intelligence at their disposal
are the same as elite hackers
are the counterparts of the CIA triad
A virus is
hardware designed to infiltrate a computer system and possibly damage it without the user’s knowledge or consent
Malicious code that runs on a machine without the user’s knowledge
embedded into a document and is executed whenthe document isopened by the user
software created to penetrate a computer system and cause possible damage without the user's consent
