From the course: Certified Information Systems Auditor (CISA) Cert Prep
Unlock this course with a free trial
Join today to access over 24,200 courses taught by industry experts.
Indicators for application attacks
From the course: Certified Information Systems Auditor (CISA) Cert Prep
Indicators for application attacks
- [Kelly] Our next section, we're going to examine some potential indications of application-based attacks. And really, you know, when we think about it, the majority of our vulnerabilities are in our applications. If we would spend more time focusing on strengthening our applications using a secure process for software development, verifying security requirements upfront and implementing security throughout all the stages of the SDLC, then obviously our applications would be stronger and we would be less dependent on some of these external security mechanisms. But alas, the world we live in continues the way that it's been for many, many years. We focus on application design, focus on function rather than security. And then security kind of comes up as an afterthought. And you know, we release an application and say, oh, we'll patch it and fix all the security vulnerabilities. And that continues to not work for us. So as application developers, and I know many of you are application…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
(Locked)
Introduction and privacy principles5m 40s
-
(Locked)
Physical and environmental controls3m 1s
-
(Locked)
Identity and access management5m 21s
-
(Locked)
SOCs and SLAs2m 48s
-
(Locked)
Networking basics11m 34s
-
(Locked)
The OSI and TCP reference models7m 9s
-
(Locked)
OSI Layers 1 and 215m 11s
-
(Locked)
OSI Layers 3–7 and TCP model15m 54s
-
(Locked)
Network devices10m 36s
-
(Locked)
NAT and PAT5m 38s
-
(Locked)
Firewalls10m 38s
-
(Locked)
Additional security devices, part 110m 23s
-
(Locked)
Additional security devices, part 26m 4s
-
(Locked)
Cryptography basics2m 23s
-
(Locked)
Symmetric cryptography9m 1s
-
(Locked)
Asymmetric cryptography18m 13s
-
(Locked)
Hybrid cryptography5m 21s
-
(Locked)
Integrity4m 45s
-
(Locked)
PKI and wrap-up6m 4s
-
(Locked)
Wireless security5m 6s
-
(Locked)
Indicators of attacks, part 114m 9s
-
(Locked)
Indicators of attacks, part 213m 13s
-
(Locked)
Indicators for application attacks7m 15s
-
(Locked)
Cross-site attacks9m 3s
-
(Locked)
Timing attacks6m 6s
-
(Locked)
Memory issues2m 20s
-
(Locked)
Network-based attacks18m 49s
-
(Locked)
Threat actors and vectors8m 17s
-
(Locked)