Unit 1 and 2 Test Sec+

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/43

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 5:48 AM on 8/27/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

44 Terms

1
New cards

CIA Triad

Confidentiality, Integrity, and availability

2
New cards

Least Privelage

Minimum access needed is given to perform a task

3
New cards

Non-Repudiation

Provides proof that an action or message came from a specific person or system. Ex. Digital systems

4
New cards

CSIRT/CERT/CIRT

Team that responds to security incidents

5
New cards

AJr Gapping

Isolating a system from other networks

6
New cards

Managerial Control

Oversees all security operations in a system

7
New cards

Operational Control

Security operations programmed by humans

8
New cards

Technical Control

Security measures implemented by hardware and software.

9
New cards

Physical Control

Physical controls like security cameras that protect equipment.

10
New cards

Preventive Control

Stops an attack before it takes place.

11
New cards

Detective Control

Detects attack as it happens or has happened

12
New cards

Corrective

Fixes damage after an attack

13
New cards

Compensating

Alternative control when another can’t be implemented.

14
New cards

Physical control TYPE

Involves a physical barrier or device

15
New cards

Deterrent

Discouraging someone from attempting an attack before it happens

16
New cards

Attack Surface

Any vulnerabilities that can be exploited

17
New cards

Direct Access

Physical access to a device/system Ex. USB

18
New cards

Wired Network

Attack path via Ethernet or wired network connections

19
New cards

wireless network

attack path via Wi-fi or remote network

20
New cards

Cloud

Internet - accessible cloud services, storage, accounts, and APIs that can be targeted

21
New cards

Bluetooth

Short-range wireless connection that can be attacked if poorly secured

22
New cards

Default Credentials

Factory-set usernames or passwords attackers may already know

23
New cards

Open ports

Network ports accepting connections, unnecessary open ports increase exposure

24
New cards

Script Kiddie

Inexperienced attacker using tools and scripts created by others without knowing how they work

25
New cards

Hacktivist

Attacker motivated mainly by a political, social, or economic cause

26
New cards

Organized crime

Criminal group using cyberattacks mainly for financial gain

27
New cards

Nation-state

Government-backed/aligned attacker with substantial resources, skill, and long-term goals like espionage or disruption

28
New cards

insider

Employee, contractor, or trusted person who already has some level of authorized access. Threat may be malicious or accidental.

29
New cards

Phishing

Fraudulent message designed to gain personal info from the victim

30
New cards

Vishing

Voice phishing, like scam calls

31
New cards

Smishing

Phishing via SMS/text message

32
New cards

Social Engineering

Manipulating people into revealing info or do things that weaken security

33
New cards

Dumpster Diving

Searching discarded documents for useful info

34
New cards

Impersonation

Pretending to be someone else, like an employee, technician, manager, or vendor

35
New cards

Piggybacking

Entering a restricted area with an authorized person’s knowledge

36
New cards

tailgating

following authorized person into restricted area without proper authorization

37
New cards

Watering Hole Attack

compromising a website that a target group frequently visits, then using the site to attack visitors

38
New cards

Typosquatting

Registering misspelled or look-alike domain name to trick users into visiting a malicious site

39
New cards

Logic Bomb

Malicious code that activates when a specific condition, date, time, or event occurs

40
New cards

Worm

Self-replicating malware that can spread across networks without normal user action

41
New cards

Trojan

Malware disguised as legitimate or useful software.

42
New cards

Stuxnet

Highly sophisticated malware that targeted industrial court systems and commonly used as cyberwarfare and sabotage

43
New cards

Rootkit

Malware designed to obtain high level access and hide itself or other dangerous activity from system

44
New cards

Botnet

Group of compromised devices controlled by a attacker; used for DDoS attacks, spam, malware distribution, or other tasks.