1/22
Flashcards covering key vocabulary and concepts from the Ethical Hacking Overview lecture.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai |
|---|
No analytics yet
Send a link to your students to track their progress
Ethical Hacker
A professional hired by companies to perform penetration tests and identify vulnerabilities in their systems.
Penetration Test
An attempt to break into a company's network to find weak links.
Vulnerability Assessment
The process of enumerating all vulnerabilities found in an application or system.
Security Test
An analysis of a company's security policies and procedures to identify vulnerabilities.
Cracker
Someone who breaks into systems to steal or destroy data.
Script Kiddie
Derogatory term for inexperienced individuals who use pre-written scripts to perform hacks.
Hacktivist
A hacker who hacks for political or social reasons.
Red Team
A team composed of individuals with varied skills who attempt to penetrate a network.
Black Box Model
A penetration testing model where the tester has no prior knowledge of the network or systems.
White Box Model
A penetration testing model where the tester is provided with detailed information about the network.
Gray Box Model
A hybrid penetration testing model where the tester is given partial information about the network.
CompTIA Security+
A minimum certification required for IT security professionals.
CompTIA PenTest+
An advanced certification that verifies knowledge and skills required for penetration testing.
Certified Ethical Hacker (CEH)
Certification by EC-Council based on a broad range of security topics for ethical hackers.
Federal Computer Fraud and Abuse Act (CFAA)
A federal law that makes it a crime to access computer systems without authorization.
Identity Theft and Assumption Deterrence Act (ITADA)
A federal law that criminalizes identity theft and allows for restitution for victims.
Exploits
Used by penetration testers to gain access and expand their reach within a system.
Acceptable Use Policy
Policy outlining what users are allowed to do on a network, which can impact legal actions.
What You Cannot Do Legally
Actions such as accessing a computer without permission, destroying data, or installing viruses.
Ethical Hacking Skills
Includes knowledge of networks, ability to communicate with stakeholders, and understanding of local laws.
Federal Computer Crime Laws
Laws concerning various aspects of computer-related crimes at the federal level.
Port Scanning
A technique that some states may view as legal; checking the open ports on a computer system.
Research Local Laws
Essential for ethical hackers to understand what activities are legal and illegal in their jurisdiction.