Security Basics
Network
Host
Application
Perimeter
100

What is the most important element related to evidence in addition to the evidence itself?

What is a Chain of custody document?

100

What attack, if successful, causes a switch to function like a hub?

What is MAC flooding?

100

What could easily result in a denial of service attack if the victimized system had too little free storage capacity?

What is Spam?

100

What is subject to SQL injection attacks?

What is Database Servers?

100

Which security zone can serve as a buffer network between a private secured network and the untrusted internet?

What is DMZ?

200

Which of the following is an important aspect of evidence gathering?

What is Backing up all log files and audit trails?

200

When configuring VLANs on a switch, what is used to identify which VLAN a device belongs to?

What is Switch port?

200

What type of malware monitors your actions?

What is Spyware?

200

What enters random data to the inputs of an application?

What is Fuzzing?

200

Which remote access authentication protocol allows for the use of smart cards for authentication?

What is EAP?

300

Which is the cryptography mechanism that hides secret communications within various forms of data?

What is Steganography?

300

What common design feature among instant messaging clients make them less secure than other means of communicating over the internet?

What is Peer-to-peer networking?

300

What does hashing of log files provide?

What is proof that the files have not been altered?

300

What is the term for the process of validating a subject's identity?

What is Authentication?

300

What encryption method is used by WPA for wireless networks?

What is TKIP?

400

Which of the following is an example of privilege escalation?

What is Creeping privileges?

400

Which protocol should you disable on the user access ports of a switch?

What is DTP?

400

Which type of malicious activity can be described as numerous unwanted and unsolicited email messages sent to a wide range of victims?

What is Spamming?

400

What is the single best rule to enforce when designing complex passwords?

What is Longer passwords

400

What networking devices or services prevents the use of IPSec in most cases?

What is NAT?

500

Which type of cipher changes the position of the characters in a plain text message?

What is Transposition?

500

What type of attack is most likely to succeed with communications between instant messaging clients?

What is Sniffing?

500

What describes Privilege auditing?

Users' and groups' rights and privileges are checked to guard against creeping privileges.

500

What type of attack is a form of software exploitation that transmits or submits a longer stream of data than the input variable is designed to handle?

What is Buffer overflow?

500

What is modified in the most common form of spoofing on a typical IP packet?

What is a source address?

M
e
n
u