click below
click below
Normal Size Small Size show me how
lesson 2.1
| Term | Definition |
|---|---|
| Vulnerability | weakness that can be triggered accidentally or exploited intentionally to cause a security breach |
| Threat | the potential for someone or something to exploit a vulnerability and breach security |
| Threat actor/agent | person or thing that poses the threat |
| Risk | level of hazard posed by vulnerabilities and threats |
| Internal/External | refers to the degree of access that a threat actor possesses before initiating an attack |
| Levels of sophistication/capability | refers to a threat actor’s ability to use advanced exploit techniques and tools |
| Service disruption | prevents an organization from working as it does normally |
| Data exfiltration | transfers a copy of some type of valuable information from a computer or network without authorization |
| Disinformation | falsifies some type of trusted resource |
| Blackmail | demanding payment to prevent the release of information |
| Extortion | demanding payment to prevent or halt some type of attack |
| Fraud | Falsifying records |
| Hacker | individual who has the skills to gain access to computer systems through unauthorize or unapproved means |
| White hat hacker | always seeks authorization to perform penetration testing of private and proprietary systems |
| Unskilled attacker | person who uses hacker tools without understanding how they work or having the ability to craft a new attack |
| Hacktivists group | group that uses cyber weapons to promote a political agenda |
| Advanced persistent threat (APT) | behavior underpinning modern types of cyber adversaries. Refers to the ability of an adversary to achieve ongoing compromise of network security. To obtain and maintain access using a variety of tools and techniques |
| Nation-state actors | actors whose primarily goals involve disinformation and espionage for strategic advantage but is known for its country (i.e. like North Korea) |
| Organized crime | operates across the internet from different jurisdiction than its victim, therefor increasing the complexity of prosecution if caught |
| Unintentional/inadvertent insider threat | threat caused by the lack of awareness or carelessness such as a user demonstrating poor password management (i.e. using the same password for all logins) |
| Shadow IT | where users purchase or introduce computer hardware/software to the workplace without the sanction of the IT department or proper authorization |
| Internal/Insider Threat | Threat that arises from an actor identified by the organization and granted some type of access |