Study Points Flashcards

1
Q

XDR stands for

A

Extended detection and response

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

UBA stands for

A

User behaviour analytics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Smishing is

A

SMS phishing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Spimming is

A

instant messaging attack (spam)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Pharming is

A

a DNS spoofing attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

SWG stands for

A

secure web gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

SCAP stands for

A

Security Content Automation Protocol

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Does OAuth work with SAML?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

SPF does what

A

This is an email authentication method that helps detect and prevent sender address forgery commonly used in phishing and spam emails

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

DKIM does what

A

This protocol leverages encryption features to enable email verification by allowing the sender to sign emails using a digital signature.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

AML stands for

A

Anti-money laundering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

KYC stands for

A

know your customer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Risk Analysis is

A

individual risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Risk Assessment is

A

looking at all of the risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Reflected attack involves

A

spoofing the IP address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Compensating controls are

A

a partial control solution that is implemented when a control cannot fully meet a requirement

17
Q

Cipher Blocks information:

A

ECB avoid (the only E)
Only GCM authenticates (the only G)
GCM is the best
CTR is stream like
CFB self-synchronizing

18
Q

encryption is specifically designed to allow data to be worked on without decrypting it first?

A

homomorphic

19
Q

TACAS is on port

20
Q

PAP stands for

A

Password Authentication Protocol (in clear text)

21
Q

CHAP stands for

A

Challenge Handshake Protocol

22
Q

DRA stands for

A

data recovery agent