Sign in to save your progress, vote, and build your own decks.Sign in
ccna security
22 cards·by tanya2873
What are the basic phases of attack that can be used by a virus or worm in sequential order?
probe, penetrate, persist, propagate, and paralyze
Which two are characteristics of DoS attacks?
1. They attempt to compromise the availability of a network, host, or application. 2.
Examples include smurf attacks and ping of death a
Users report to the helpdesk that icons usually seen on the menu bar are randomly appearing on
their computer screens. What could be a reaso
A virus has infected the computers.
What are three types of access attacks?
1. buffer overflow 2. port redirection 3. trust exploitation
What occurs during a spoofing attack?
One device falsifies data to gain access to privileged information.
What is a characteristic of a Trojan Horse?
A Trojan Horse can be carried in a virus or worm.
Which phase of worm mitigation requires compartmentalization and segmentation of the
network to slow down or stop the worm and prevent curre
containment phase
characteristics of a virus
1. A virus typically requires end-user activation. 2. A virus can be dormant and then activate
at a specific time or date.
What is a ping sweep?
A ping sweep is a network scanning technique that indicates the live hosts in a range of IP
addresses.
Which type of security threat can be described as software that attaches to another program to
execute a specific unwanted function?
virus
A disgruntled employee is using Wireshark to discover administrative Telnet usernames and
passwords. What type of network attack does this d
reconnaissance
What occurs during the persist phase of a worm attack?
modification of system files and registry settings to ensure that the attack code is running
What are the three major components of a worm attack?
1. enabling vulnerability 2. payload 3. propagation mechanism
A network administrator detects unknown sessions involving port 21 on the network. What
could be causing this security breach?
An FTP Trojan Horse is executing.
What are three goals of a port scan attack?
1. determine potential vulnerabilities 2. identify active services 3. identify operating
systems
How is a Smurf attack conducted?
by sending a large number of ICMP requests to directed broadcast addresses from a spoofed
source address on the same network
Which access attack method involves a software program attempting to discover a system
password by using an electronic dictionary?
brute-force attack
Which two network security solutions can be used to mitigate DoS attacks?
1. anti-spoofing technologies 2. intrusion protection systems
Which phase of worm mitigation involves terminating the worm process, removing modified
files or system settings that the worm introduced, a
treatment
Which characteristic best describes the network security Compliance domain as specified by
the ISO/IEC?
the process of ensuring conformance with security information policies, standards, and
regulations
Which statement describes phone freaking?
A hacker mimics a tone using a whistle to make free long-distance calls on an analog telephone
network.
Which two statements describe access attacks?
1. Password attacks can be implemented using brute-force attack methods, Trojan Horses, or
packet sniffers. 2. Buffer overflow attacks writ