Week 1 - Introduction & Application and Networking-based Attacks Flashcards

1
Q

What is network security?

A

Network security (aka cybersecurity or internet security) is the practice of defending computers, servers, mobile devices, electronic systems, networks, and data from malicious attacks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the three computer security objectives (e.g. CIA Triad)?

A
  1. Confidentiality
    - Data confidentiality
    - Privacy
  2. Integrity
    - Data integrity
    - System integrity
  3. Availability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the concept of authenticity in network security?

A

Authenticity is verifying that users are who they say they are and that each input arriving at the system came from a trusted source.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the concept of accountability in network security?

A

Accountability is the security goal that generates the requirement for actions of an entity to be traced uniquely to that entity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the 3 levels of impact on organisations (security breach)

A
  1. High - Severe or catastrophic adverse effect on organisational operations, organisational assets, or individuals
  2. Moderate - Serious adverse effect on organisational operations, organisational assets, or individuals
  3. Low - Limited adverse effect on organisational operations, organisational assets, or individuals
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a security attack?

A

A security attack is any action that compromises the security of information owned by an organisation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a security mechanism?

A

A security mechanism is a process (or a device incorporating such a process) that is designed to detect, prevent, or recover from a security attack.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a security service?

A

A security service is a processing or communication service that enhances the security of the data processing systems and the information transfers of an organisation
Intended to counter security attacks, and they make use of one or more security mechanisms to provide the service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the two types of security attacks?

A

Passive attacks - attempts to learn or make use of information from the system but does affect the system resources (eavesdropping, monitoring)

Active attacks - attempts to alter system resources or affect their operation (modification of message)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a DDoS attack?

A

A distributed denial of service is a type of active attack where the attacker attempts to disrupt the normal traffic of a targeted server, service or network by overwhelming the target or its surrounding infrastructure with a flood of Internet traffic. DDoS attacks achieve effectiveness by utilizing multiple compromised computer systems as sources of attack traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the 5 major service categories in X.800?

A
  1. Authentication
  2. Access control
  3. Data confidentiality
  4. Data integrity
  5. Nonrepudiaition
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly