Professor Messers Security+ 2.2 Videos

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/28

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 9:27 PM on 9/10/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

29 Terms

1
New cards

threat vectors

the method an attacker uses to gain access to your system; also known as attack vectors; trying to find weak spots in system

2
New cards

message based vectors

most successful; emails with malicious links; SMS attacks; phising attacks (pretending to be someone else)

3
New cards

image based vectors

scaleable vector graphic also known as SVG is an XML file that describes an image; attacker could embed attack code within XML files & have it run when you open the image

4
New cards

file based vectors

adobe PDF is a good spot for containing attack files; hid within compressed files ZIP/RAR

5
New cards

voice call vectors

vishing, calling pretending to be someone else to get personal information; war dialing, finding unpublished phone numbers to gain access to system

6
New cards

removeable device vectors

malicious information on a USB drive; data exfiltration

7
New cards

vulnerable software vectors

ensuring our system is always updated; attackers finding vulnerablities in a old system

8
New cards

unsupported system vectors

manfacturer doesnt provide updates for that system; no security patches leaves risk for attackers; older systems

9
New cards

unsecure network vectors

wireless connection requires an update to WP3; No. 802.1x a authorization protocol that stops unsupported connections

10
New cards

open service ports

opening TCP or UDP allows an entry point for hackers; firewall rules

11
New cards

default credentials

using credentials given to you by a company without changing or updating

12
New cards

supply chain vectors

allows third party to see infrastructure; normally carried in system without knowing

13
New cards

What does MSP stand for

message service providers

14
New cards

phising

social engineering to make your think somethings real when its not; normally through mail or text message

15
New cards

business email compromise

People have the tendency to be more trusting towards this form for phising; normally have spoofed addresses; financial fraud (Ex. Paypal reset password gain access)

16
New cards

typo squatting

A type of trick of misspelling URL

17
New cards

pretexting

Giving a drawn out story in hopes you will click a link

18
New cards

vishing

voice phishing; normally done over the phone; pretending to be banks

19
New cards

smishing

SMS phishing; normally done by text; consist of forwarding links

20
New cards

impersonation

attacker pretending to be someone they are not in hopes to gain trust

21
New cards

eliciting information

Looking for information or details they wont normally have access to; seen in vishing

22
New cards

identity fraud

pretending to be you; using your information to open a credit

23
New cards

How can you protect against information?

Not giving private information over the phone; Verify who they are before providing information

24
New cards

waterhole attack

Gain access to system we will use later & wait for us to use it instead of attacking us directly

25
New cards

How do waterhole attacks happen?

attacker watches what sites a company uses (Ex. ordering from starbucks, hacker would then get into starbucks system & wait for us to order or login)

26
New cards

defense in depth

multiple layers of security; firewall, anti virus.. etc

27
New cards

Misinformation & disinformation

contains factually incorrect information used to confuse or upset people; found in political campaigns

28
New cards

misformation process

  • attacker creates fake users

  • creates content

  • get increase in likes so it gets pushed to other people that arent bots

  • Information gets popular others will then speak on this false topic


29
New cards

brand impersonation

Using brand names or logos so users could be redirected to these sites