Copyright Cengage Learning. Powered by Cognero.
27. In a(n) ____________________ attack, a service is inundated with requests, or malformed service requests,
which cause a server to hang or freeze, preventing it from responding to input.
28. A(n) ____________________ is a weakness in an information system, system security procedures, internal
controls, or implementation that could be exploited by a threat source.
29. ____________________ attacks are DoS attacks that are launched from numerous devices.
30. A(n) ____________________ model excludes users from access to resources, by default, and then adds
whatever users need access to such resources as exceptions to the general exclusionary rule.
31. A(n) ____________________ consists of creating hashed values for all words in a specialized dictionary of
terms, then comparing those values to the hashed values in password files.
Match each item with a statement below.
32. any activity that represents a potential danger or attack on a system or network
33. any type of network service that permits users elsewhere on a network to use the network to log on to a
system as if they were attached locally while operating remotely
34. an ICMP Echo-based operation used to locate active devices on a network
35. the process of examining the “footprints” that an attacker leaves behind
36. a special-purpose software tool that cycles through all possible TCP and UDP port addresses looking for
open ports that then can be probed for access or exploited for vulnerabilities
37. a manager system in a DDoS attack
38. an IP attack technique whereby an impostor takes over an ongoing communications session between a client
and server
39. a document that represents the concrete manifestation of an organization’s requirements for security
practices, rules, and procedures