Indicators Of Compromise (IoC) Flashcards

1
Q

What is IoC?

A

Indicators Of Compromise

Data pieces that detect potential malicious activity on a network or system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Account Lockout?

A

Example of IoC

Signals a compromise when its triggered by numerous failed log in attempts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is Concurrent Session Usage?

A

Example of IoC

One user having multiple active sessions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Blocked Content?

A

Example of IoC

When a user attempts to access or download content that has been blocked by security protocol.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Impossible Travel?

A

Example of IoC

When suspicious logins occur from distant locations in a timeframe that doesnt make physical sense

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Resource Consumption?

A

Example of IoC

Unusual resource spikes can signal a compromise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is Resource Inaccessibility?

A

Example of IoC

The inability to access certain resources such as files, databases, or network services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is Out-of-Cycle Loggin?

A

Example of IoC

log entries that occur at unusual times when no one is supposed to be active

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are Missing Logs?

A

Example of IoC

Attackers delete logs to cover their tracks and hinder investigations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are Articles or Documents on Security Breach?

A

Example of IoC

Attackers may publicly announce their hacks to brag about their abilities or harm the organizations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly