CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

manual code review – networks 473


modes of operation, privileged, 62
modification attacks, 412
modulo function, 409
motion detectors, 72, 203
MOU (memorandum of understanding),
159, 385
M PLS, 419
MTD (Maximum Tolerable Downtime), 371,
386, 411, 412 , 418
MTO (maximum tolerable outage), 411
MTTF (mean time to failure), 343
multifactor authentication, 3, 223
multilayer protocols, 88, 350, 351
multipartite viruses, 397, 404
multiprocessing, 423
multiprogramming, 423
multistate systems, 342
multitasking, 68–69, 423
multithreading, 344, 423
mutation testing, 369

N
NAC (Network Access Control) systems,
304, 416
NAT (network address translation), 412
double NATing, 353
OSI model and, 96
NAT routers, 93
natural disaster, 18, 19, 21, 23
NCA (noncompete agreement), 324
NDA (nondisclosure agreement), 35, 37,
242, 272, 281, 321, 324, 326, 332, 333,
423, 438, 442
need to know, 360, 383
Nessus, 221, 373, 403, 414, 416
netflow records, 382, 389
network flows, 371
networks
connections, 232
filtering, egress, 207
layered security, 83
logging, 131

manual code review, 380
manual recovery, 381
manual testing, 451
mapping, classification and, 50
markup languages, 221
masks, subnet, 232
masquerading, 412
matrix testing, 399
MAU (multistation access unit), 422
MBR (master boot record), 404
MBSA (Microsoft Baseline Security
Analyzer), 369
MD5, 339, 343
MDM (Mobile Device Management)
solutions, 206, 343, 406
mechanisms, 446
medical records, category, 34
meet-in-the-middle attack, 344, 384
Meltdown bug, 280
memory, volatile, 228
memory cards, 292
mesh topology, 100, 352, 357
message boards, 183 –184
message logging, 128
messaging, 87
internal systems, 87
protocols, 87
Metasploit, 144, 255, 377, 414, 416, 429,
430
methods, 178
MFA (multifactor authentication), 366
Microsoft Encrypting File System, 35
military classification scheme, 283, 303, 452
minimum security standards, 28
mirrored ports, 96
misconfiguration, 139
misuse case diagrams, 380, 452
misuse testing, 302, 432
Mitigation phase, incident response, 388
MITRE, 408
mixed classification, 332
mobile devices, 64, 246, 309–310
modems (MOdulator/DEModulator), 88,
100, 356

Free download pdf