Comum · Saberes
Attack vector
Method which malicious code utilizes to infect a computer or propagates itself
In computer security, an attack vector is a specific path, method, or scenario that can be exploited to break into an IT system, thus compromising its security. The term was derived from the corresponding notion of vector in biology.
Na Wikipédia
Texto em inglês Ainda não há artigo no seu idioma: trecho em inglês.
In computer security, an attack vector is a specific path, method, or scenario that can be exploited to break into an IT system, thus compromising its security. The term was derived from the corresponding notion of vector in biology. An attack vector may be exploited manually, automatically, or through a combination of manual and automatic activity. Often, this is a multi-step process. For instance, malicious code (code that the user did not consent to being run and that performs actions the user would not consent to) often operates by being added to a harmless seeming document made available to an end user. When the unsuspecting end user opens the document, the malicious code in question (known as the payload) is executed and performs the abusive tasks it was programmed to execute, which may include things such as spreading itself further, opening up unauthorized access to the IT system, stealing or encrypting the user's documents, etc. In order to limit the chance of discovery once installed, the code in question is often obfuscated by layers of seemingly harmless code. Some common attack vectors: exploiting buffer overflows; this is how the Blaster worm was able to propagate. exploiting webpages and email supporting the loading and subsequent execution of JavaScript or other types of scripts without properly limiting their powers. exploiting networking protocol flaws to perform unauthorized actions at the other end of a network connection. phishing: sending deceptive messages to end users to entice them to reveal confidential information, such as passwords.
Texto: Wikipédia em inglês, CC BY-SA 4.0. ·
Cartas próximas
-
T★
Transient execution CPU vulnerability
Computer vulnerability using speculative execution
-
★★★
Injeção de dependência
-
★
Vehicular automation
Field of research
-
★★
Security alarm
System that detects unauthorised entry or hazards, often including sensors, cameras, and control units, and may be professionally monitored
-
★
Undetectable AI
-
★★
snippet
Programming term for a small region of re-usable source code, machine code, or text
-
A★★
Anti Piracy Screen
A function that the main unit detects when you play a game that violates copyright and displays a warning of legal violation
-
★★
insumo
In computing, input of a program or process, i.e. a command or signal from outer sources
-
S★★
Security as a service
Business model in which a service provider integrates their security services into a corporate infrastructure on a subscription basis more cost effectively than most individuals or corporations can provide on their own
-
M★★
Model-view-viewmodel
Model-view-viewmodel (MVVM) é um padrão de arquitetura de software ou esquema de design de software. É uma variante do padrão “Presentation Model Design” de Martin Fowler.
-
A★
Ataque da preimagem
-
★
Ligador
-
S★
System seller
Video game that convinces a significant number of consumers to purchase a specific video game console in order to access and play that video game
-
★★★
Vigilantism
Act of preventing and punishing crimes without legal authority
-
m★
modelagem e simulação
Use of models – physical, mathematical, or otherwise logical representation of a system, entity, phenomenon, or process – as a basis for simulations – methods for implementing a model (either statically or) over time
-
★★★
Autovalores e autovetores
-
A★
ATT&CK
-
★★★
Compilador
Compilador é um ambiente computacional que tem o dever de testar fórmulas de códigos,muito usado na programação