The process of deleting or masking personal identifiers, such as personal name from a set of data.
Card 122
Question
demilitarized zone (DMZ)
Answer
A network logically separate from the intranet where resources that will be accessed from the outside world are made available to unauthenticated users.
Card 123
Question
denial-of-service (DoS) attack
Answer
An attack in which attackers flood a device with enough requests to degrade the performance of the targeted device.
Card 124
Question
dereference
Answer
Occurs when a pointer with a value of NULL is used as though it pointed to a valid memory area.
Card 125
Question
destruction
Answer
The destroying of the media on which data resides.
Card 126
Question
detective control
Answer
A type of control that is in place to detect an attack while it is occurring.
Card 127
Question
deterrent control
Answer
A type of control that deters or discourages an attacker.
Card 128
Question
DevSecOps
Answer
A development concept that grew out of the DevOps approach to software development that emphasizes security in all phases.
Card 129
Question
DHCP snooping
Answer
Used to prevent a poisoning attack on the DHCP database.
Card 130
Question
Diamond Model of Intrusion Analysis
Answer
Intrusion analysis model that emphasizes the relationships and characteristics of four basic components: the adversary, capabilities, infrastructure, and victims.
Card 131
Question
digital rights management (DRM)
Answer
Used to control the use of digital content.
Card 132
Question
digital signature
Answer
A hash value encrypted with the sender’s private key.
Card 133
Question
digital watermarking
Answer
Involves embedding a logo or trademark in documents, pictures, or other objects.
Card 134
Question
directive control
Answer
A type of control that specifies acceptable practice within an organization.
Card 135
Question
directory traversal
Answer
One of the ways malicious individuals are able to access parts of a directory to which they should not have access.
Card 136
Question
disassembly
Answer
Reading the machine code into memory and then outputting each instruction as a text string.
Card 137
Question
dissemination
Answer
The step in the intelligence cycle where information is shared with those responsible for designing security controls to address issues.
Card 138
Question
DNP3
Answer
A master/slave protocol used in building automation that uses port 19999 when using Transport Layer Security (TLS) and port 20000 when not using TLS.
Card 139
Question
DOM XSS
Answer
XSS attack in which the entire tainted data flow from source to sink takes place in the browser. The source of the data is in the DOM, the sink is also in the DOM, and the data flow never leaves the browser.
Card 140
Question
domain bridging
Answer
Using as a hotspot a device that has been made a member of the domain, allowing access to the organizational network to anyone using the hotspot.
How to use this set
Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.