Network and Node Security Flashcards
7 cards from real Blockchain Technology practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Network and Node Security flashcards as text
A BGP hijack reroutes a mining pool's traffic through an attacker. What category does this fall under?
Answer: Network-layer routing attack
BGP hijacking manipulates internet routing to intercept or partition blockchain traffic at the network layer.
What is the benefit of encrypting peer-to-peer connections between nodes?
Answer: Prevents eavesdropping and traffic tampering
Encrypted transport stops passive snooping and active modification of messages exchanged between nodes.
Which configuration reduces the risk of a node being partitioned from the honest network?
Answer: Maintaining diverse, manually added trusted peers
Diverse and trusted peer connections make it harder for an attacker to isolate or eclipse the node.
A node's logs show a flood of malformed packets degrading performance. What attack is most likely?
Answer: Denial-of-service (DoS) attack
A flood of malformed or excessive traffic aimed at exhausting resources is a denial-of-service attack.
Why should validator nodes use separate sentry nodes in some networks?
Answer: To shield the validator's IP from direct DoS targeting
Sentry node architecture hides the validator behind proxy nodes, protecting it from direct denial-of-service attacks.
What risk arises from running a node on default credentials for its monitoring dashboard?
Answer: Attackers can log in and reconfigure or stop the node
Default credentials are widely known and let attackers take control of the node's management interface.
Which approach helps detect a compromised node early?
Answer: Continuous monitoring and alerting on anomalous behavior
Monitoring metrics and alerting on anomalies enables early detection of compromise or attack.