Typically, corporate firewalls may respond to a port scan in one of the following ways EXCEPT: Group of answer choices open security alert closed no response
Added by Martin W.
Step 1
A port scan is a method used to identify open ports and services available on a networked device. It helps in assessing the security of the system. Show more…
Show all steps
Your feedback will help us improve your experience
Akash M and 79 other AP CS educators are ready to help you.
Ask a new question
Labs
Want to see this concept in action?
Explore this concept interactively to see how it behaves as you change inputs.
Key Concepts
Recommended Videos
Which of these ports would you be least likely to find open to a native service on a Linux host? a) 139 b) 53 c) 22 d) 443 2. What is the netmask of the network associated with host 128.227.224.196 having 8,190 hosts? a) 255.255.255.192 b) 255.255.192.0 c) 255.255.224.0 d) 255.255.255.0 3. Which of these precautions will not interfere with a traditional SSLStrip attack from working? a) Disallowing multiple MAC addresses for a single host in a network b) Always using https c) Using a separate process in each browser d) Navigating to a site whose HSTS super-cookie is loaded in your browser 4. Although nmap warns about -Pn slowing down a scan, proxychains nmap -Pn 10.70.184.1-254 -p 445 actually runs faster than the following nmap: proxychains nmap 10.70.184.1-254 -p 445. Why would that be? a) When -Pn isn't specified, both UDP and TCP ports are scanned. b) If ping fails, nmap will check an extra port (80) c) Because ICMP echo replies are always delivered as fast as port 445 replies. d) When -Pn isn't specified, the 10,000 most popular ports will be scanned. 5. What can Linux file access control lists do that normal file modes cannot do? a) They can provide special permission sets for individual users. b) They can set a file to run as the root user when executed, no matter who the owner of the file is. c) They can restrict permissions for a group of users in /etc/group d) They can set permissions on a link to a file. 6. Which of these ISO layer messages is likely to have the largest number of embedded protocol data units in it? a) Datalink. b) Session c) Network d) Application
Akash M.
Texts: Sally Parr is a social media editor for Bravo Manufacturing, a company which builds ruggedized computer systems for the aerospace and defense industries. Among Sally's duties is monitoring a discussion forum which the company hosts on one of the web servers in its DMZ. Bill Fernley is a web developer and administrator who maintains the company's Internet-facing systems - web server, mail gateway, etc. He works closely with Mike Chambers, a security analyst reporting to the CISO. On Monday morning, Sally is reviewing the weekend's posts on the discussion forum to make sure that any customer questions get answered. When she opens one discussion thread, a browser dialog window pops up, reading "Test - please ignore". She calls Bill to ask whether he is doing any testing, but he says, "No - the system hasn't been patched or updated for over a month". Bill executes an SQL query on the database which backs the discussion forum, in order to get the text of the last week's posts: SELECT post_text FROM forum_posts WHERE post_date BETWEEN '2019-01-18' AND '2019-01-25'; He immediately spots an entry from the previous evening with text that reads: '<script>alert("Test - please ignore");</script>'. Bill reports what he has found to Mike, who must quickly install some kind of compensating control. Which control would be most appropriate? Select one: 1) A packet-filtering firewall 2) A spam filter 3) A web application firewall. Which phase of the cyber intrusion kill chain has the attack reached, according to this evidence? Select one: 1) Weaponize 2) Reconnaissance 3) Deliver.
Network Firewall Visualization File Options Help Network Traffic: DNS Database traffic Email VOIP Web traffic Chat Traffic Workstation traffic Active Attacks: OS Exploits Virus Trojan Syn Scan Ack Scan Web Attacks Trojan Reply System Scanned Successful Attack 192.168.1.* 192.168.2.* Speed: Congestion: Firewall Log: -FW1: Cloud to Chat:5222 TCP -FW1: Cloud to Chat:31337 TCP -FW1: Cloud to VOIP:38287 TCP -FW1: Cloud to DNS:53 UDP -FW1: Cloud to DNS:53 UDP -FW1: Work1 to Cloud:80 TCP -FW1: DNS to Cloud:53 UDP -FW1: VOIP to Cloud:38287 TCP -FW1: DNS to Cloud:53 UDP -FW1: Cloud to Database:3306 TCP -FW1: Cloud to Chat:31337 TCP -FW1: Cloud to DNS:53 UDP -FW1: DNS to Cloud:53 UDP -FW1: Cloud to VOIP:38287 TCP -FW1: Cloud to Web:31337 TCP -FW1: DNS to Cloud:53 UDP -FW1: DNS to Cloud:53 UDP -FW1: DNS to Cloud:53 UDP -FW1: Mail to Cloud:25 TCP Malicious Traffic Allowed 0 Legitimate Traffic Denied: 94
Recommended Textbooks
Computer Science and Information Technology
Introduction to Programming Using Python
Computer Science - An Overview
Transcript
18,000,000+
Students on Numerade
Trusted by students at 8,000+ universities
Watch the video solution with this free unlock.
EMAIL
PASSWORD