ch 17 Flashcards

(19 cards)

1
Q

Equifax Breach

A

monitors creditworthiness of US citizens
got 143 M customer’s data
* also hit UK and Canadians
* vulnerability in Apache Struts (failed to patch it in 2 months)
* most $$$ breach (Billions)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Target Breach

A
Installed malware in payment system 
FireEye security system used by Target notified of sw but ignored (feature to auto delete malware disabled)
* hackers from Odessa and Moscow
* ID in mid-Dec
* probably entered through 3rd party vendor
* hid under "BladeLogic" sw 
40 M cards and 70 M customers
90 lawsuits
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

average cost of data reach

A

$11.7 M

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Avg time to ID breach

A

201 Days

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Avg time to contain breach

A

70 Days

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

bad guy motivations

A
  • acct theft
  • steal data
  • compromise assets for other crimes
  • extortion
  • IP theft
  • espionage
  • terrorism
  • prank
  • protest (Hacktivism)
  • revenge (disgruntled employee)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

data harvesters

A

criminals that infiltrate systems and collect data for illegal resale

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

cash-out fraudsters

A

criminals who buy assets from data harvesters for illegal financial gain
* use credit card #s to buy goods, create fake accts for fraud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Botnets

A

hordes of infiltrated computers, linked and controlled remotely (zombie networks)

  • do DDoS attacks
  • can send 100 B spam msg a day
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

ransomware

A

total costs 8 Billion

* City of Atlanta fell to SamSam ransomware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Gary Min

A

Scientist at DuPont

* tried to sell info at $400 B of Co.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

stuxnet

A

most known act of cyberwarfare

  • worm infiltrated Iran nuclear facilities and reprogrammed to spring devices to destroy themselves
  • attack would report normal readings so operators didn’t know
  • e/copy could infect 3 other machines
  • self-destructed at future date
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

pranksters

A

aka griefers or trolls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Edward Snowden

A
  • CIA employee and NSA contractor
  • leaked 1.7 M digital docs from US, British, and Australian agencies to press
  • revealed gov NSA & FBI stalking on ppl through Google, Fb, Yahoo!, Microsoft, and Apple
  • unlim. access to phone records from Verizon’s customers
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

hacker

A

1) someone who breaks into computer systems

2) clever programmer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

hack

A

1) breaking into a computer system

2) clever solution

17
Q

white hat hackers

A

uncovers computer weaknesses w/o exploiting them

improves system sec

18
Q

black hat hackers

A

computer criminal

19
Q

Phishing

A

Con that uses tech

tries to get sensitive info or tricking