Describe some malware countermeasure elements

Assignment Help Computer Engineering
Reference no: EM132464399

Part 1: Question 1. Give examples of applications of IPsec.

Question 2. What services are provided by IPsec?

Question 3. What parameters identify an SA and what parameters characterize the nature of a particular SA?

Question 4. What is the difference between transport mode and tunnel mode?

Question 5. What is a replay attack?

Question 6. Why does ESP include a padding field?

Question 7. What are the basic approaches to bundling SAs?

Question 8. What are the roles of the Oakley key determination protocol and ISAKMP in IPsec?

Part 2: Question 1. What are three broad mechanisms that malware can use to propagate?

Question 2. What are four broad categories of payloads that malware may carry?

Question 3. What are typical phases of operation of a virus or worm?

Question 4. What mechanisms can a virus use to conceal itself?

Question 5. What is the difference between machine-executable and macro viruses?

Question 6. What means can a worm use to access remote systems to propagate?

Question 7. What is a "drive-by-download" and how does it differ from a worm?

Question 8. What is a "logic bomb"?

Question 9. Differentiate among the following: a backdoor, a bot, a keylogger, spyware, and a rootkit? Can they all be present in the same malware?

Question 10. List some of the different levels in a system that a rootkit may use.

Question 11. Describe some malware countermeasure elements.

Question 12. List three places malware mitigation mechanisms may be located.

Question 13. Briefly describe the four generations of antivirus software.

Question 14. How does behavior-blocking software work?

Question 15. What is a distributed denial-of-service system?

Part 3: Question 1. List and briefly define three classes of intruders.

Question 2. What are two common techniques used to protect a password file?

Question 3. What are three benefits that can be provided by an intrusion detection system?

Question 4. What is the difference between statistical anomaly detection and rule-based intrusion detection?

Question 5. What metrics are useful for profile-based intrusion detection?

Question 6. What is the difference between rule-based anomaly detection and rule-based penetration identification?

Question 7. What is a honeypot?

Question 8. What is a salt in the context of UNIX password management?

Question 9. List and briefly define four techniques used to avoid guessable passwords.

Part 4: Question 1. List three design goals for a firewall.

Question 2. List four techniques used by firewalls to control access and enforce a security policy.

Question 3. What information is used by a typical packet filtering firewall?

Question 4. What are some weaknesses of a packet filtering firewall?

Question 5. What is the difference between a packet filtering firewall and a stateful inspection firewall?

Question 6. What is an application-level gateway?

Question 7. What is a circuit-level gateway?

Question 8. What are the common characteristics of a bastion host?

Question 9. Why is it useful to have host-based firewalls?

Question 10. What is a DMZ network and what types of systems would you expect to find on such networks?

Question 11. What is the difference between an internal and an external firewall?

Reference no: EM132464399

Questions Cloud

Margin of error based on a confidence interval : For this problem, carry at least four digits after the decimal in your calculations. Answers may vary slightly due to rounding.
Would a diagram make more sense than a checklist : Think of a business process that you have had to perform in the past. How would you document this process? Would a diagram make more sense than a checklist?
Discuss task of evaluating investment opportunities : Discuss task of Evaluating investment opportunities.Investment analysis is simply a process of identifying risks and opportunities, developing and analyzing
Reflect the actual abilities of the players : In terms of the law of large numbers, what can we assume about how accurately these career averages reflect the actual abilities of the players?
Describe some malware countermeasure elements : List some of the different levels in a system that a rootkit may use. Describe some malware countermeasure elements. List three places malware mitigation.
Develop your response for a crisis or risk situation : Explain the best course of action when previous communications have been misunderstood or when communications are interrupted.
What resistance to the changes do you expect and why : What resistance to the changes do you expect and why? How would you advise key decision makers on the best ways to successfully affect the planned changes?
Describe three cultural differences in nonverbal behaviors : Describe three cultural differences in nonverbal behaviors and explain how they might cause problems in international business negotiations.
Describe graphically the trend of the stock prices : Describe graphically the trend of the stock prices during the last 4 months and, in more detail, during the las 3 weeks.Explain the observed trends

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd