>_ The Cyber Casebook // AP CYBER · AP NETWORKING · AI
Home / All case studies / The Fake Zoom Trap

Key terms

BackdoorGatekeeperFake installerC2 server

AP Cybersecurity alignment

  • 1.1.A.1Social engineering attacks employ psychological tactics to manipulate users into revealing sensitive information (elicitation), downloading a malicious file, or clicking on a malicious link. Social engineering can be performed…Learning objective: Identify common indicators of social engineering tactics.
  • 4.1.C.7Adversaries often attempt to install malware on a device to disrupt or control it. Devices lacking anti-malware software are more vulnerable to this type of attack.Learning objective: Explain how adversaries can exploit common device vulnerabilities to cause loss, damage, disruption, or destruction.
  • 4.3.A.3A software installation policy will describe what (if any) software users are allowed to install on their devices and usually also a process for users to request specialized software they may need to perform their role, and it…Learning objective: Identify managerial controls related to device security.

AP Networking alignment

  • 1.3.A.4Malware can cause devices to behave abnormally, slow down, crash, or become unusable. Malware can allow attackers to access files, monitor activity, or take remote control of a device. Infected devices may also be used to…Learning objective: Identify the impacts of digital and physical attacks on individual devices.
  • 1.3.B.5Security controls to limit the impact of malware can include: • installing and regularly updating antivirus and antimalware software • keeping operating systems and applications updated to patch known vulnerabilitiesLearning objective: Determine appropriate security controls to limit the impacts of common device attacks.
  • 4.5.C.3IDS and IPS logs and alerts can be reviewed for indicators of security threats that suggest potential unauthorized access or malicious activity. These can include: • repeated failed login attempts • access attempts outside of…Learning objective: Identify indicators in intrusion detection system (IDS) or intrusion prevention system (IPS) logs that may suggest potential threats or network issues.

Related case studies