Tools And Commands Flashcards
(192 cards)
What is PILAR?
A Risk Analysis and Management Tool.
PILAR is the software that implements and expands Magerit RA/RM Methodology. It is designed to support the risk management process along long periods, providing incremental analysis as the safeguards improve. Its functionalities include mainly:
Quantitative and qualitative Risk Analysis and Management
Quantitative and qualitative Business Impact Analysis &Continuity of Operations
What are Examples of Risk Management Tools?
PILAR A1 Tracker Risk Management Studio IsoMetrix Sword Active Risk iTrak Certainty Software Resolver's ERM Software Isolocity Enablon
What is Group Policy Management Console (GPMC)?
It is a part of Windows Administrative Tools and is a scriptable interface to manage Group Policies.
Whate is ManageEngine ServiceDesk Plus?
It is a comprehensive ticketing system used in incident management, problem management, change management, and IT project management applications.
Name an Open Source Security Information and Event Management System (OSSIM)
AlienVault
What are examples of Ticketing System Tools?
AlienVault osTicket SolarWinds MSP IR-Flow Request Tracker for Incident Response (RTIR) IBM Resilient Incident Response Platform Freshdesk
What is buck-security?
It’s a collection of security checks for Linux. It allows incident handlers to identify the security status of a system
What is Kiwi Syslog Server?
A centralized and simplified log message management tool across various network devices and servers. It is used to centrally manage syslog messages, generate real-time alerts based on syslog messages, and perform advanced message filtering and message buffering
What is Splunk Light?
A tool for collecting, monitoring, and analyzing log files from servers, applications, or other sources. This tool will collect data from multiple sources and performs indexing, monitoring, reporting, and alerting. Alerts from Splunk Light can automatically trigger actions to send automated emails, execute remediation scripts, or post to RSS feeds.
What are examples of Incident Analysis and Validation Tools?
buck-security Kiwi Syslog Server Splunk Light Loggly InsightOps Logz.io Logmatic.io Graylog
What is Microsoft Baseline Security Analyzer (MBSA)?
A tool designed for IT professionals and helps small-and medium-sized businesses to determine their security state in accordance with Microsoft security recommendations. It lets incident handlers scan local and remote systems for missing security updates as well as common security misconfigurations. MBSA includes a graphical and command line interface that can perform local or remote scans of Microsoft Windows systems. To assess missing security updates, MBSA will only scan for missing security updates, update rollups and service packs available from Microsoft Update.
What are examples of tools for detecting missing security patches?
Microsoft Baseline Security Analyzer (MBSA) GFI LanGuard Symantec Client Management Suite MaaS360 Patch Analyzer Solarwinds Patch Manager Kaseya Security Patch Management Software Vulnerability Manager Ivanti Endpoint Security Patch Connect Plus Automox Prism Suite
What is MagicTree?
A report writing tool. MagicTree stores data in a tree structure. This is a natural way of representing the information that is gathered during a network test: a host has ports, which have services, applications, vulnerabilities, and so on.
What is KeepNote?
A note taking application that works on Windows, Linux, and MacOS X. With KeepNote, you can store your class notes, TODO lists, research notes, journal entries, paper outlines, and so on in a simple notebook hierarchy with rich-text formatting, images, and more. Using full-text search, you can retrieve any note for later reference.
What is FTK Imager?
A data preview and imaging tool that enables analysis of files and folders on local hard drives, CDs/DVDs, network drives, and examination of the content of forensic images or memory dumps.
What is R-Drive Image?
A potent utility that provides creation of disk image files for backup or duplication purposes. R-Drive restores the images on the original disks, on any other partitions, or even on a hard drive’s free space. It can be used to restore a system after heavy data loss caused by an operating system crash, virus attack, or hardware failure.
What are examples of Data Imaging Tools?
FTK Imager R-Drive Image EnCase Forensics Data Acquisition Toolbox RAID Recovery for Windows R-Tool R-Studio F-Response Imager
What is HashCalc?
A free tool used to compute multiple hashes, checksums, and HMACs for files, text, and hex strings
What is MD5 Calculator?
A tool used to calculate the MD5 hash value of the selected file.
What is HashMyFiles
A small utility that is used to calculate the MD5 and SHA1 hashes of one or more files in the system.
What is the ‘PsUptime’ command?
A Windows command to show the system uptime
What is the ‘Net Statistics’ command?
A Windows command used to show the system uptime
What is the ‘Uptime’ and ‘W’ command?
A Linux command used to show the system uptime
What is the ‘Netstat -ab’ command used for?
It’s a Windows command used to determine all the executable files for running processes.