OSI Levels - ANSWER 1 physical
2 Datalink
3 network
4 transport
5 session
6 presentation
7 application
Attack factors - ANSWER Asset
Threat
Vulnerability
risk
attack
mitigation
Classification of attacks - McCumber cube - ANSWER confidentiality
integrity
availability
-----------------
processing
storage
transmission
-----------------
technology
policy
training
Asset types - ANSWER Confidentiality
Integrity
availability
spoofing
tampering
repudation
information disclosure
Denial of service
, Elevation of privilege
What does CIA stand for - ANSWER Confidentiality
integrity
availability
It does? - ANSWER Software patches
Incident response
network config
forensics
CS does - ANSWER Implement vulnerability free software
design secure sources
Attackers advantage - ANSWER Not bound by rules
seek weakest links
try something new
strike at bad times
Loyd blankenship - ANSWER Author of hackers manifesto
Self-absorbed angry person
Why 's it so hard to combate cyber crime? - ANSWER shortage of trained
whitehats
jurisdictional borders
crimes often go unreported
law enforcement is unfunded
Vulnerability - ANSWER defect caused by a bug or a flaw in the design
attack - ANSWER Black hat compromising a system
Threat - ANSWER disclosing, altering data to reduce integrity, or denying
availability
asset - ANSWER an item of value that a black hat desires
2 Datalink
3 network
4 transport
5 session
6 presentation
7 application
Attack factors - ANSWER Asset
Threat
Vulnerability
risk
attack
mitigation
Classification of attacks - McCumber cube - ANSWER confidentiality
integrity
availability
-----------------
processing
storage
transmission
-----------------
technology
policy
training
Asset types - ANSWER Confidentiality
Integrity
availability
spoofing
tampering
repudation
information disclosure
Denial of service
, Elevation of privilege
What does CIA stand for - ANSWER Confidentiality
integrity
availability
It does? - ANSWER Software patches
Incident response
network config
forensics
CS does - ANSWER Implement vulnerability free software
design secure sources
Attackers advantage - ANSWER Not bound by rules
seek weakest links
try something new
strike at bad times
Loyd blankenship - ANSWER Author of hackers manifesto
Self-absorbed angry person
Why 's it so hard to combate cyber crime? - ANSWER shortage of trained
whitehats
jurisdictional borders
crimes often go unreported
law enforcement is unfunded
Vulnerability - ANSWER defect caused by a bug or a flaw in the design
attack - ANSWER Black hat compromising a system
Threat - ANSWER disclosing, altering data to reduce integrity, or denying
availability
asset - ANSWER an item of value that a black hat desires