1.1.A.1Social engineering attacks employ psychological tactics to manipulate users into revealing sensitive information (elicitation), downloading a malicious file, or clicking on a malicious link. Social engineering can be performed…Learning objective: Identify common indicators of social engineering tactics.
4.1.C.7Adversaries often attempt to install malware on a device to disrupt or control it. Devices lacking anti-malware software are more vulnerable to this type of attack.Learning objective: Explain how adversaries can exploit common device vulnerabilities to cause loss, damage, disruption, or destruction.
4.3.A.3A software installation policy will describe what (if any) software users are allowed to install on their devices and usually also a process for users to request specialized software they may need to perform their role, and it…Learning objective: Identify managerial controls related to device security.
AP Networking alignment
1.3.A.4Malware can cause devices to behave abnormally, slow down, crash, or become unusable. Malware can allow attackers to access files, monitor activity, or take remote control of a device. Infected devices may also be used to…Learning objective: Identify the impacts of digital and physical attacks on individual devices.
1.3.B.5Security controls to limit the impact of malware can include: • installing and regularly updating antivirus and antimalware software • keeping operating systems and applications updated to patch known vulnerabilitiesLearning objective: Determine appropriate security controls to limit the impacts of common device attacks.
4.5.C.3IDS and IPS logs and alerts can be reviewed for indicators of security threats that suggest potential unauthorized access or malicious activity. These can include: • repeated failed login attempts • access attempts outside of…Learning objective: Identify indicators in intrusion detection system (IDS) or intrusion prevention system (IPS) logs that may suggest potential threats or network issues.