Exam ✓ CRAMSCOR Cram Sheet
Assets, Threats, and Mitigations
Asset |
Threats |
Mitigations |
---|---|---|
Employees |
Phishing, malware, virus, ransomware |
Security awareness and training programs |
Data, trade secrets |
Ransomware, corruption, deletion, exfiltration |
Offline/offsite backups, data loss prevention |
Systems, compute |
Malware, OS and firmware attacks, DDoS |
Updates and patches |
Attack Types
Ransomware: Malicious script or code that allows an attacker to execute unauthorized actions on a victim’s system and lock them out of the data by encrypting it. Attackers demand ransom for encryption keys required to decrypt and restore the data.
Denial of service (DoS) attack: Generates packets sent to the victim or target system to overload the target system ...
Get CCNP and CCIE Security Core SCOR 350-701 Exam Cram now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.