Zone Security, Security and NAT Policies
Study online at https://quizlet.com/_hr8gj0
1. C2: At which point of the cyberattack lifecycle stage does the attacker achieve "hands on keyboard" control of the
target device?
2. They are pervasive .
They often are used as part of an APT .: Which two characteristics are common among commodity
threats ? ( Choose two . )
3. Port scanning
Ping sweep: Name 2 examples of active reconnaissance.
4. Network segmentation
Zone protection
External dynamic lists
Security policy rules: Name 4 Palo Alto features that help prevent or mitigate reconnaissance.
5. Host sweeps
Port scan protection: How do zone protection profiles protect/mitigate reconnaissance attacks?
6. Weaponization Stage: The attacker prepares the malware that they will deliver to the target machine in a
later stage .
7. Enticing the user
Direct access to service or application: What are 2 ways an attacker can deliver weaponized malware
to a target?
8. Exploitation stage: At what stage of the cyberattack lifecycle is the delivered malware executed?
9. Security Policy rules
URL Filtering
File Blocking Profile
Wildfire Profile: What are 4 ways that a firewall protections at the installation stage?
10. Allow only known application traffic Control access to unknown websites and
domains
Block access using EDLS
Decrypt and inspect encrypted traffic: Name 4 ways a firewall blocks C2 traffic.
11. Exfiltrate Data
Corrupt data
Encrypt data
Initiate DoS attack
Reach Actual Target: What are some reasons that an attack might occur?
1/4
Study online at https://quizlet.com/_hr8gj0
1. C2: At which point of the cyberattack lifecycle stage does the attacker achieve "hands on keyboard" control of the
target device?
2. They are pervasive .
They often are used as part of an APT .: Which two characteristics are common among commodity
threats ? ( Choose two . )
3. Port scanning
Ping sweep: Name 2 examples of active reconnaissance.
4. Network segmentation
Zone protection
External dynamic lists
Security policy rules: Name 4 Palo Alto features that help prevent or mitigate reconnaissance.
5. Host sweeps
Port scan protection: How do zone protection profiles protect/mitigate reconnaissance attacks?
6. Weaponization Stage: The attacker prepares the malware that they will deliver to the target machine in a
later stage .
7. Enticing the user
Direct access to service or application: What are 2 ways an attacker can deliver weaponized malware
to a target?
8. Exploitation stage: At what stage of the cyberattack lifecycle is the delivered malware executed?
9. Security Policy rules
URL Filtering
File Blocking Profile
Wildfire Profile: What are 4 ways that a firewall protections at the installation stage?
10. Allow only known application traffic Control access to unknown websites and
domains
Block access using EDLS
Decrypt and inspect encrypted traffic: Name 4 ways a firewall blocks C2 traffic.
11. Exfiltrate Data
Corrupt data
Encrypt data
Initiate DoS attack
Reach Actual Target: What are some reasons that an attack might occur?
1/4