Malware
Encryption
Mixed Bab
Attacks
Networking
100

This entity self-replicates

What is a worm.

100

A remote administration and file-copy program that supports VPNs by using port forwarding, and that runs on TCP port 22.

What is SSH (Secure Shell)?

100

An email-based or webbased form of phishing which targets specific individuals.

What is spear phishing?

100

An attack that injects a database query into the input data directed at a server by accessing the client side of the application.

What is  SQL injection (Structured Query Language injection)?


100

A routing mechanism that conceals internal addressing schemes from the public Internet by translating between a single public address on the external side of a router and private, non-routable addresses internally.

What is NAT (network address translation)?

200

Keystrokes capture

What is a key logger?

200

Format that allows a private key to be exported along with its digital certificate.

What is P12 (Public Key Cryptography Standard #12)?

200

An inexperienced, unskilled attacker that typically uses tools or scripts created by others.

What is a script kiddie?

200

An attack where the attacker intercepts some authentication data and reuses it to try to re-establish a session.

What is a replay attack?

200

Maps private host IP addresses onto a single public IP address.

What is PAT (port address translation) ?

300

A form of eavesdropping where the attacker makes an independent connection between two victims and steals information to use fraudulently.

What is MitM attack (Man-in-the-Middle attack)?

300

In EAP architecture, the device requesting access to the network.

what is the supplicant?

300

A disk drive where the controller can automatically encrypt data that is written to it.

What is a SED (self-encrypting drive)>

300

A spam attack that is propagated through instant messaging rather than email.

what is SPIM (spam over internet messaging)?


300

Passphrase-based mechanism to allow group authentication to a wireless network. The passphrase is used to derive an encryption key.

What is a PSK (pre-shared key)?

400

An attack when the web browser is compromised by installing malicious plug-ins or scripts, or intercepting API calls between the browser process and DLLs.

What is MitB attack (Man-in-the-Browser attack)?

400

A protocol that uses the HTTP over SSL protocol and encapsulates an IP packet with a PPP header and then with an SSTP header.

What is SSTP (Secure Socket Tunneling Protocol)?

400

A type of OS that prioritizes deterministic execution of operations to ensure consistent response for time-critical tasks.

What is an RTOS (real-time operating system)?

400

A type of spoofing attack where the attacker disconnects a host then replaces it with his or her own machine, spoofing the original host's IP address.

What is session hijacking?

400

A process in which a router takes requests from the Internet for a particular application (such as HTTP) and sends them to a designated host on the LAN.

What is port forwarding?

500

A sign that an asset or network has been attacked or is currently under attack.

What is IoC (indicator of compromise)?

500

Mechanism used to mitigate performance and privacy issues when requesting certificate status from an OCSP responder.

What is [certificate] stapling?

500

An appliance or proxy server that mediates client connections with the Internet by filtering spam and malware and enforcing access restrictions on types of sites visited, time spent, and bandwidth consumed.

what is an SWG (secure web gateway)?

500

A network-based attack where the attacker steals hashed user credentials and uses them as-is to try to authenticate to the same network the hashed credentials originated on.

What is PtH attack (pass the hash attack)?

500

Accessing the administrative interface of a network appliance using a separate network from the usual data network.

What is OOB (out-of-band management)?