====== Security+ Exam ====== https://www.professormesser.com/security-plus/sy0-701/sy0-701-video/sy0-701-comptia-security-plus-course/ ===== General Security Concepts ===== [[Security Controls]] [[CIA Triad]] [[non-repudiation]] [[Authentication, Authorization, and Accounting]] [[Gap Analysis]] [[Zero Trust]] [[Deception and Disruption]] [[Change Management]] [[Public Key Infrastructure]] [[Encryption]] [[Blockchain]] [[Certificates]] ===== Threats, Vulnerabilities, Mitigation ===== [[Threat Actors]] [[Threat Vectors]] [[Incident Response]] [[Phishing]] [[Watering Hole Attacks]] [[Social Engineering]] [[DNS Poisoning]] [[Replay Attack]] [[Remote Access Trojan (RAT)]] [[Logic Bomb]] [[Rootkit]] [[On path attack]] [[Host-based firewall]] ===== Types of Vulnerabilities ===== [[Memory Injections]] [[Buffer Overflows]] [[Race Conditions]] [[Malicious Updates]] [[Operating System Vulnerabilities]] [[SQL Injection]] [[Cross Site Scripting XSS]] [[Hardware Vulnerabilities]] [[Virtualization Vulnerabilities]] [[Cloud Specific Vulnerabilities]] ===== Contract Related ===== [[MOA]] [[SOW]] ===== Certificate Related ===== [[CA]] [[CSR]] [[CRL]] [[OCSP]] ===== Email Security ===== [[DMARC]] [[SPF]] [[DKIM]] ===== Benchmarking ===== [[MTBF]] [[MTTR]] ===== Networking ===== [[802.1x]] [[EAP]] [[Networking Ports]] [[SDN]] [[IPS]] [[IDS]] [[NAC]] [[WPA]] ===== Hardware ===== [[Secure Enclave]] [[HSM]] ===== Firewalls ===== [[NGFW]] [[WAF]] ==== Unorganized ==== [[List of Security Plus Acronyms]] [[SCADA]] [[SIEM]] [[UTM]] [[EDR]] [[HIPS]] [[NMAP]] [[PCI DSS]] [[RADIUS Server]] [[COPE]] [[CISSP Data Roles]] [[OSInt]] [[LDAP]] [[SNMP Traps]]