What types of malware are there?
What is a virus?
Spread via “hosts”, modifies code without consent
What is a worm?
Self-replicating malware
What is a RAT?
Remote Access Trojan, that opens a backdoor in a system?
What is a rootki?
Malware with steal features that are hard to detect and remove
What is spyware?
(unwanted) Monitors user actions to gather data.
What is Ransomware?
Restricts user access to data/programs until a Ransome is paid.
What is a keylogger?
Hardware/software devices that capture typed keys
What are cryptominers?
Use (steal) CPU power to mine cryptocurrency
What is stalkerware?
Broader than keyloggers, monitors activity, location, messages.
What is Fileless Malware?
Exists only in RAM, leverage OS services to do whatever
What is zombie botnet?
Computers under external control to span networks
What are malware symptons?
What are secure DNS services?
DNS’ with security features like servers that have a list of blocked websites that contain malware.
What is UEFI Secure Boot?
Ensures boot loader is properly signed and valid to boot
What is System Restore (Windows)?
A form of recovery media, that lets you reinstall OS and applications
What is System Image Recovery (windows)?
Allows you to restore an entire image of a disk
What is EDR?
Endpoint Detection and Response. Basic cybersecurity approach in which endpoints have software agents that:
monitor, detect, report and respond to threats
What is MDR?
Managed Detection Response. EDR as a service, monitoring and threat analysis by a team of security experts
What is XDR?
Extended Detection and Response. Monitors and detects all data flows across an ogranization