Hands-On Ethical Hacking and Network Defense - Ch. 9 - Key Terms
Embedded System
Any computer system that's not a general-purpose PC or server.
Which of the following if often found within an embedded OS that can cause a potential vulnerability to an attack?
Web Server
SCADA systems controlling critical infrastructure are usually completely separated from the Internet by which of the following?
air gap
Rootkits that pose the biggest threat to any OS are those that infect what part of the targeted device?
firmware
Which of the following systems should be used when equipment monitoring and automation is critical?
SCADA
Firmware
Software residing on a chip.
Real-time Operating System (RTOS)
A specialized embedded OS designed with algorithms aimed at multitasking and responding predictably; used in devices such as programmable thermostats, appliance controls, planes, and spacecraft.
Multiple Independent Levels of Security/Safety (MILS)
A type of OS (often embedded) certified to run multiple levels of classification (such as unclassified, secret, and top secret) on the same CPU without leakage between levels; used in the U.S. military for high-security environments and in organizations, such as those controlling nuclear power or municipal sewage plants, when separating privileges and functions is crucial.
Embedded Operating System (OS)
An operating system that runs in an embedded system; designed to be small and efficient, so it usually lacks some functions of general-purpose OSs. It can be a small program developed specifically for an embedded system or a stripped-down version of a general-purpose OS.
What type of malicious code could be installed in a system's flash memory to allow an attacker to access the system at a later date?
BIOS based rootkit
What type of viruses and code has been created by security researchers and attackers that could infect phones running Google's Android, Windows Mobile, and the Apple iPhone OS?
Java-based
A device that performs more than one function, such as printing and faxing is called which of the following?
MFD
Multifunction Devices (MFDs)
Peripheral networked devices that perform more than one function, such as printing, scanning, and copying.
Supervisory Control and Data Acquisition (SCADA) Systems
Systems used for equipment monitoring and automation in large-scale industries and critical infrastructure systems, such as power plants and air traffic control towers; these systems contain components running embedded OSs.
Embedded OSs are usually designed to be small and efficient so they do not have some of the functions that general-purpose OSs have.
True
Which of the following source code is now available to the public and was considered a trimmed down version of the Windows desktop OS?
Windows CE
Which one of the following, if compromised might allow attackers the ability to gain complete access to network resources?
router