Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 3 out of 27 pages
Exam (elaborations)

ACC3303 Exam 3 Questions With Accurate Answers

Document preview thumbnail
Preview 3 out of 27 pages

ACC3303 Exam 3 Questions With Accurate Answers ...

Content preview

ACC3303 Exam 3 Questions With Accurate Answers


Bluesnarfing - ANSWER Stealing (snarfing) contact lists, images, and other data using
flaws in Bluetooth applications.

Buffer overflow attack - ANSWER Inputting so much data that the input buffer overflows.
The overflow contains code that takes control of the computer.

Chipping - ANSWER Planting a chip that records transaction data in a legitimate credit
card reader.

Denial-of-service attack - ANSWER An attack designed to make computer resources
unavailable to its users. For example, sending so many e-mail messages that the
Internet service provider's e-mail server is overloaded and shuts down.

Evil twin - ANSWER A wireless network with the same name as another wireless access
point. Users unknowingly connect to the evil twin; hackers monitor the traffic looking for
useful information.

Keylogger - ANSWER Using spyware to record a user's keystrokes.

Lebanese Looping - ANSWER Inserting a sleeve into an ATM that prevents it from
ejecting the card. The perpetrator pretends to help the victim, tricking the person into
entering the PIN again. Once the victim gives up and leaves, the thief removes the card
and uses it and the PIN to withdraw money.

Man-in-the-middle (MITM) attack- - ANSWER A hacker placing himself between a client
and a host to intercept network traffic; also called session hijacking.

Packet sniffers - ANSWER Inspecting information packets as they travel across
computer networks.

Phishing - ANSWER Communications that request recipients to disclose confidential
information by responding to an e-mail or visiting a website

Piggybacking - ANSWER 1. Clandestine use of someone's Wi-Fi network.2. Tapping into
a communications line and entering a system by latching onto a legitimate user.3.
Bypassing physical security controls by entering a secure door when an authorized
person opens it.

Ransomware - ANSWER Software that encrypts programs and data until a ransom is
paid to remove it.

Rootkit - ANSWER A means of concealing system components and malware from the
operating system and other programs; can also modify the operating system.

Round-down fraud - ANSWER Truncating interest calculations at two decimal places

,and placing truncated amounts in the perpetrator's account.

salami technique - ANSWER Stealing tiny slices of money over time.

Shoulder surfing - ANSWER When perpetrators look over a person's shoulders in a
public place to get information such as ATM PIN numbers or user IDs and passwords.

Skimming- - ANSWER Double-swiping a credit card in a legitimate terminal or covertly
swiping a credit card in a small, hidden, handheld card reader that records credit card
data for later use.

Social engineering - ANSWER Techniques that trick a person into disclosing confidential
information.

Spoofing - ANSWER Altering some part of an electronic communication to make it look
as if someone else sent the communication to gain the trust of the recipient. Many things
are spoofed, such as email addresses, caller IDs, IP addresses, address resolution
protocols, SMS messages, web pages, and domain name systems.

Steganoghrapy - ANSWER Concealing data within a large MP3 or other file (often image
files).

SQL insertion (injection) - ANSWER Inserting a malicious SQL query such that it is
passed to and executed by an application program.

Trojan horse - ANSWER Unauthorized code in an authorized and properly functioning
program.

Typosquatting/URL hijacking - ANSWER Websites with names similar to real websites;
users making typographical errors are sent to a site filled with malware.

Virus - ANSWER Executable code that attaches itself to software, replicates itself, and
spreads to other systems or files. When triggered, it makes unauthorized alterations to
the way a system operates.

Worm - ANSWER Similar to a virus; a program rather than a code segment hidden in a
host program. Actively transmits itself to other systems. It usually does not live long but
is quite destructive while alive.

XSS Attack - ANSWER Cross -site scripting) A vulnerability in dynamic web pages that
allows an attacker to bypass a browser's security mechanisms and instruct the victim's
browser to execute code, thinking it came from the desired website. (Malicious code
embedded in a Web link.)

internal controls - ANSWER the processes and procedures implemented to provide
reasonable assurance that control objectives are met efficiently and in an error free
manner

SCALP - ANSWER segregation of duties, comparisons, adequate records, limited

, access, proper approvals

adequate records (A in SCALP) - ANSWER "garbage in garbage out" encourage data
entry controls ex) require a last name for a flight

SOX - ANSWER Sarbanes-Oxley Act (biggest part is establishing board)

SOX section 404 - ANSWER about internal controls, govern what is good and what
internal controls looks like, mgt takes ownership in controls. In FS there must be a
statement about I/C including the risks

SOX section 302 - ANSWER personal certification of financial statements by corporate
executives, about limited liability now CEO has to personally sign FS and if it's wrong the
CEO is liable)

COBIT - ANSWER Control Objectives for Information and Related Technology, another
framework controlling management of IT (IT does not mean error free)

COSO - ANSWER Committee of Sponsoring Organizations, professionals everywhere
monitor this, mindset of how you implement controls in a framework

control environment (1 in COSO) - ANSWER company culture (foundation for all other
internal control components)

risk appetite (2 in COSO) - ANSWER amount of risk company is willing to make

control activities (3 in COSO) - ANSWER rules that provide assurance control objectives
are met/ risk response carried out (when the auditor actually comes in)

info and communication (4 in COSO) - ANSWER communication from management to
employees so internal controls informs

monitoring activities (5 in COSO) - ANSWER enforce those controls



S in SCALP - ANSWER segregation of accounting duties, your people are tyour best
control (risk versys salaries), not too much responsibility for one person



CAR - ANSWER custody, authorization, records



C in car - ANSWER custody- handling cash, tools, inv, fixed assets



A in car - ANSWER authorization0 authorize transactions and decisions

Document information

Uploaded on
March 13, 2025
Number of pages
27
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$12.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Zayla
3.4
(18)
Sold
135
Followers
13
Items
16957
Last sold
1 day ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions