From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Memory issues
From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep
Memory issues
- [Instructor] Okay, I just want to quickly address some memory issues here. We'll continue to talk about memory issues as we continue through and we start talking about secure software and how we, you know, mitigate against certain types of attacks. But there are a couple of issues that can come up specifically with memory. Overflows. So the idea is each application has a certain amount of memory that is allotted to the application. And so, if that application tries or needs additional memory other than what's allocated, that's considered to be an overflow. And there's several ways that these sort of overflows can happen. One is an integer overflow. So let's say that I ask you for a value between one and five and you type in the number six. That's a value out of an expected range, right? It's a value that I don't expect and anticipate. So that's called an integer overflow. And that can simply, that's not necessarily tied into memory per se, but it can cause an application to…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
(Locked)
Introduction and privacy principles5m 40s
-
(Locked)
Physical and environmental controls3m 1s
-
(Locked)
Identity and access management5m 21s
-
(Locked)
SOCs and SLAs2m 48s
-
(Locked)
Networking basics11m 34s
-
(Locked)
The OSI and TCP reference models7m 9s
-
(Locked)
OSI Layers 1 and 215m 11s
-
(Locked)
OSI Layers 3–7 and TCP model15m 54s
-
(Locked)
Network devices10m 36s
-
(Locked)
NAT and PAT5m 38s
-
(Locked)
Firewalls10m 38s
-
(Locked)
Additional security devices, part 110m 23s
-
(Locked)
Additional security devices, part 26m 4s
-
(Locked)
Cryptography basics2m 23s
-
(Locked)
Symmetric cryptography9m 1s
-
(Locked)
Asymmetric cryptography18m 13s
-
(Locked)
Hybrid cryptography5m 21s
-
(Locked)
Integrity4m 45s
-
(Locked)
PKI and wrap-up6m 4s
-
(Locked)
Wireless security5m 6s
-
(Locked)
Indicators of attacks, part 114m 9s
-
(Locked)
Indicators of attacks, part 213m 13s
-
(Locked)
Indicators for application attacks7m 15s
-
(Locked)
Cross-site attacks9m 3s
-
(Locked)
Timing attacks6m 6s
-
(Locked)
Memory issues2m 20s
-
(Locked)
Network-based attacks18m 49s
-
(Locked)
Threat actors and vectors8m 17s
-
(Locked)