Cybersecurity & Digital Surveillance Flashcards
7 cards from real CSP practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Cybersecurity & Digital Surveillance flashcards as text
Which of the following best describes a 'honeyspot' or 'honeypot' used in a surveillance cybersecurity strategy?
Answer: A decoy system designed to attract and detect attackers by mimicking a real target
A honeypot is a deliberately vulnerable decoy system that lures attackers, allowing security teams to detect intrusion attempts and study attacker methods without risking real assets.
What is the purpose of certificate pinning in a surveillance mobile viewing application?
Answer: To ensure the app only communicates with servers presenting a specific trusted certificate, preventing MitM attacks
Certificate pinning hardcodes or pins a specific server certificate in an app so it rejects any other certificate, even a valid CA-signed one, protecting against man-in-the-middle attacks.
Under the NDAA Section 889, which action is required for federal agencies and their contractors regarding certain surveillance equipment?
Answer: Agencies must ban the purchase and use of surveillance equipment from specific Chinese manufacturers
NDAA Section 889 prohibits federal agencies and contractors from purchasing or using video surveillance equipment from certain Chinese manufacturers including Hikvision, Dahua, and Huawei due to national security concerns.
What is the cybersecurity risk associated with using surveillance cameras that have reached 'end of life' (EOL)?
Answer: EOL cameras no longer receive security patches, leaving known vulnerabilities permanently unresolved
End-of-life devices no longer receive firmware updates or security patches from the manufacturer, meaning newly discovered vulnerabilities will never be fixed, permanently increasing attack risk.
A surveillance operator notices that camera footage appears frozen but the timestamp continues advancing. This may indicate:
Answer: A replay or video injection attack substituting live footage with a loop
Frozen video with a running timestamp is a classic indicator of a video feed injection or replay attack, where an attacker substitutes a recording for the live camera stream.
What is the role of audit logs in maintaining cybersecurity accountability for a digital surveillance system?
Answer: They record who accessed the system, what actions were taken, and when, enabling forensic investigation
Audit logs create a tamper-evident record of all user actions and system events, supporting forensic investigations, compliance verification, and detection of insider threats.
Which practice helps protect a surveillance network against 'credential stuffing' attacks?
Answer: Implementing unique passwords per device combined with account lockout policies
Credential stuffing uses lists of breached username/password pairs to attack multiple systems; unique per-device passwords and lockout policies defeat this by ensuring one breach does not compromise all devices.