Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 10 pages
Exam (elaborations)

CSNT 181 STUDY GUIDE 2025/2026 REVISED QUESTIONS AND QUESTIONS

Document preview thumbnail
Preview 2 out of 10 pages

CSNT 181 STUDY GUIDE 2025/2026 REVISED QUESTIONS AND QUESTIONS Threat Sources - Adversarial - malicious Accidental - errors by users Structural - failures of hardware, software, or other equipment Environment - Natural disasters or structural failures Unauthorized aka Black Hat - Criminal hackers who break computer security for personal gain or other malicious purposes Authorized aka White Hat - Security experts who study and practice hacking for legal purposes such as finding countermeasures against other hackers (ethical hacking) Semi-authorized aka gray hat - hackers who are neither authorized or malicious don't do harm believe they improve computer security Attacker qualities - Intent/Motivation Sophistication/Capability level Resources/funding Location - outside attackers/ inside attackers Target information - open source intelligence Script kiddies - unskilled hackers who rely on commonly available attack tools including mailicious scripts Hacktivists - attack organizations to further political or ideological messages; some are considered cyberterrorists criminal syndicates - seek financial gain and work as part of a larger organization

Content preview

CSNT 181 STUDY GUIDE 2025/2026 REVISED QUESTIONS
AND QUESTIONS


Threat Sources - Adversarial - malicious

Accidental - errors by users

Structural - failures of hardware, software, or other equipment

Environment - Natural disasters or structural failures



Unauthorized aka Black Hat - Criminal hackers who break computer security for personal gain or
other malicious purposes



Authorized aka White Hat - Security experts who study and practice hacking for legal purposes such
as finding countermeasures against other hackers (ethical hacking)



Semi-authorized aka gray hat - hackers who are neither authorized or malicious don't do harm
believe they improve computer security



Attacker qualities - Intent/Motivation

Sophistication/Capability level

Resources/funding

Location - outside attackers/ inside attackers

Target information - open

source intelligence



Script kiddies - unskilled hackers who rely on commonly available attack tools including mailicious
scripts



Hacktivists - attack organizations to further political or ideological messages; some are considered
cyberterrorists



criminal syndicates - seek financial gain and work as part of a larger organization

, competitiors - unethical businesses attack competitors commit industrial espionage or sabotage
valuable resources



Insiders - Many attacks are caused by employees or former employees who have retained network
access



Nation-states - cyber warfare organizations dedicated to rivals



Advanced Persistent Threats (APT) - an attack type against a particular organization with high value
data change threat vector over time mostly used by nation states and most sophisticated criminal
organizations



Attack Vectors - how a threat might contact your organization

DIrect Access - can directly contact your resources (easiest if it is an insider)

Wired/wireless networks - includes remote access, data breaches, and network service outages



Attack vector - Email/Personal Communications - communication tool can be used to attack the
organization (email most common)



AV - social media - scan for personal information and spread disinformation



AV -supply chains - organizations's vendors can be used to attack you; share data/access network



AV -removable media and mobile devices - anything that can be inserted into network can be used to
attack you



AV - cloud services - just a service on someone else's computer



Artificial intelligence risks - machine learning uses algorithems to analyze large data sets to recognize
patterns and relationships can be manipulated and predictions used against it



Third party risks - There are many ways a relationship with a third party presents risks - supply chain
interruptions, connections to your network can create vulnerabilities, if you store your data with
them that poses risks

Document information

Uploaded on
February 10, 2025
Number of pages
10
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$10.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
ScoreSphere
4.0
(1)
Sold
2
Followers
0
Items
861
Last sold
6 months ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions