Sheet X Malicious Software, Intruders, Firewalls PDF

Title Sheet X Malicious Software, Intruders, Firewalls
Author Ahmed Abdelmonem
Course Computer and Network Security
Institution جامعة الإسكندرية
Pages 1
File Size 120.2 KB
File Type PDF
Total Downloads 34
Total Views 117

Summary

Malicious Software, Intruders, Firewalls parctice questions...


Description

‫جامعة االسكندرية‬ ‫كلية الهندسة‬ ‫هندسة الحاسب واالتصاالت‬ ‫برنامج‬ ‫مادة أمن الحاسبوالشبكات‬

Alexandria University Faculty of Engineering Comp. & Comm. Engineering CC551: Comp. & Net. Security

SheetX Malicious Software, Intruders, Firewalls 1) 2) 3) 4) 5) 6) 7) 8) 9)

What are three broad mechanisms that malware can use to propagate? What are four broad categories of payloads that malware may carry? What are typical phases of operation of a virus or worm? What mechanisms can a virus use to conceal itself? What is the difference between machine-executable and macro viruses? What means can a worm use to access remote systems to propagate? What is a “drive-by-download” and how does it differ from a worm? What is a “logic bomb”? Differentiate among the following: a backdoor, a bot, a keylogger, spyware, and a rootkit? Can they all be present in the same malware? 10) List some of the different levels in a system that a rootkit may use. 11) Describe some malware countermeasure elements. 12) List three places malware mitigation mechanisms may be located. 13) Briefly describe the four generations of antivirus software. 14) How does behavior-blocking software work? 15) What is a distributed denial-of-service system? 16) List and briefly define three classes of intruders. 17) What are two common techniques used to protect a password file? 18) What are three benefits that can be provided by an intrusion detection system? 19) What is the difference between statistical anomaly detection and rule-based intrusion detection? 20) What metrics are useful for profile-based intrusion detection? 21) What is the difference between rule-based anomaly detection and rule-based penetration identification? 22) What is a honeypot? 23) What is a salt in the context of UNIX password management? 24) List and briefly define four techniques used to avoid guessable passwords. 25) List three design goals for a firewall. 26) List four techniques used by firewalls to control access and enforce a security policy. 27) What information is used by a typical packet filtering firewall? 28) What are some weaknesses of a packet filtering firewall? 29) What is the difference between a packet filtering firewall and a stateful inspection firewall? 30) What is an application-level gateway? 31) What is a circuit-level gateway? 32) What are the differences among the firewalls of Figure 12.1 ? 33) What are the common characteristics of a bastion host? 34) Why is it useful to have host-based firewalls? 35) What is a DMZ network and what types of systems would you expect to find on such networks? 36) What is the difference between an internal and an external firewall?

1...


Similar Free PDFs