>_ The Cyber Casebook // AP CYBER · AP NETWORKING · AI
Home / All case studies / Mail Guard Under Fire

Key terms

Zero-dayPath traversalEmail gatewayWorkaround

AP Cybersecurity alignment

  • 4.4.A.2An indicator of compromise (IoC) is evidence that an adversary has compromised a device or network.Learning objective: Explain how to detect attacks against devices.
  • 5.1.B.10In a directory traversal attack, adversaries modify URLs and GET requests to attempt to access sensitive data (e.g., usernames and passwords) on a server’s file system.Learning objective: Explain how application attacks exploit vulnerabilities.
  • 5.5.B.2When creating a program that takes user input, programmers should use a function to verify that user input meets their expected criteria and does not include any control characters that could be used to manipulate the system.…Learning objective: Explain how user input sanitization protects applications.

AP Networking alignment

  • 4.1.A.3When confidentiality is compromised, systems are vulnerable to having sensitive data exposed or stolen. A breach of confidentiality can be identified by: • unauthorized access • network traffic showing exfiltration of…Learning objective: Identify evidence of compromised confidentiality, integrity, or availability.
  • 4.5.B.4Security controls to limit the impact of unauthorized access include: • enforcing strong password policies and account lockout settings • applying the principle of least privilege • implementing segmentation to restrict access…Learning objective: Determine appropriate security controls to limit the impacts of common threats and vulnerabilities in a managed network.
  • 4.6.B.4Applying and documenting software updates and patches reduces the risk of failure and reduces recovery time if an outage occurs.Learning objective: Identify ways to improve the reliability and availability of networked systems.

Related case studies