Passive Attack - Monitoring network traffic and data flow on the target but not tampering with the data.
Examples of Passive Attacks - Footprinting, Sniffing, Eavesdropping, Network Traffic Analysis, Decryption
of weakly encrypted traffic.
Active Attack - Tamper with the data in transit or disrupt communication or services between systems to
bypass or break into security systems
Examples of Active Attacks - DoS (Denial of Service), Modification of information, spoofing, replay
attacks, by-passing protection mechanisms, malware attacks, privilege escalation, backdoors, sql
injection, dns and arp poisoning, session hijacking, more.
Close in Attacks - Close proximity with the target system or network.
Example of Close-In Attacks - Social Engineering: Eavesdropping, shoulder surfing, dumpster diving, and
others
, Insider Attacks - Performed by trusted persons who have physical access to the critical assets of the
target.
Examples of Insider Attacks - Eaves dropping, wiretapping, theft of physical devices, social engineering,
data theft, pod slurping, planting keyloggers.
Distribution Attacks - Attackers tamper with hardware or software prior to installation. Attacking
hardware or software at its source.
Command and Control Warfare - C2 warfare refers to the impact an attacker posesses over a
compromised system or network they control.
Intelligence Based Warfare - Sensor-Based technology that directly corrupts technological systems.
Electronic Based Warfare - uses radio-electronic and cryptographic techniques to degrade
communications.
Psychological Warfare - Use of various techniques, as in propaganda and terror to demoralize the
adversary.
Hacker Warfar - Vary from shut down systems, data errors, theft of information, theft of services,
system monitoring, false messaging, and access to data
Economic Warfare - Effects economy of business by blocking flow of information.
Cyberwarfare - use of information systems against the virtual personas of individuals or groups.
Defensive Information Warfare - Involves all strategies and actions to defend against attacks on ICT
Assets.
Offensive Information Warfare - Attacks against the ICT assets of an opponent.
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller oneclass. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $13.48. You're not tied to anything after your purchase.