[
  {
    "instruction": "A while back, the IT folks got a number of complaints that one of our campus computers was sending out Viagra spam. They checked it out, and the reports were true: a hacker had installed a program on the computer that made it automatically send out tons of spam email without the computer owner\u2019s knowledge.\n\nHow do you think the hacker got into the computer to set this up?",
    "context": "",
    "output": "A: This was actually the result of a hacked password. Using passwords that can\u2019t be easily guessed, and protecting your passwords by not sharing them or writing them down can help to prevent this. Passwords should be at least 8 characters in length and use a mixture of upper and lower case letters, numbers, and symbols.\n\nEven though in this case it was a hacked password, other things that could possibly lead to this are:\n\nOut of date patches/updates\nNo anti-virus software or out of date anti-virus software",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "context": "A while back, the IT folks got a number of complaints that one of our campus computers was sending out Viagra spam. They checked it out, and the reports were true: a hacker had installed a program on the computer that made it automatically send out tons of spam email without the computer owner\u2019s knowledge.",
      "question": "How do you think the hacker got into the computer to set this up?",
      "answer": "This was actually the result of a hacked password. Using passwords that can\u2019t be easily guessed, and protecting your passwords by not sharing them or writing them down can help to prevent this. Passwords should be at least 8 characters in length and use a mixture of upper and lower case letters, numbers, and symbols.\n\nEven though in this case it was a hacked password, other things that could possibly lead to this are:\n\nOut of date patches/updates\nNo anti-virus software or out of date anti-virus software"
    }
  },
  {
    "instruction": "There is this case that happened in my computer lab. A friend of mine used their yahoo account at a computer lab on campus. She ensured that her account was not left open before she left the lab. Someone came after her and used the same browser to re-access her account. and they started sending emails from it.\n\nBased on the above text, answer a question. What do you think might be going on here?",
    "context": "",
    "output": "The first person probably didn\u2019t log out of her account, so the new person could just go to history and access her account.\n\nAnother possibility is that she did log out, but didn\u2019t clear her web cache. (This is done through the browser menu to clear pages that the browser has saved for future use.)",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "context": "There is this case that happened in my computer lab. A friend of mine used their yahoo account at a computer lab on campus. She ensured that her account was not left open before she left the lab. Someone came after her and used the same browser to re-access her account. and they started sending emails from it.",
      "question": "What do you think might be going on here?",
      "answer": "The first person probably didn\u2019t log out of her account, so the new person could just go to history and access her account.\n\nAnother possibility is that she did log out, but didn\u2019t clear her web cache. (This is done through the browser menu to clear pages that the browser has saved for future use.)"
    }
  },
  {
    "instruction": "Write an answer to the following question: Explain steps to secure web server.",
    "context": "",
    "output": "Follow the following steps to secure your web server:\n\nUpdate ownership of file.\nKeep your webserver updated.\nDisable extra modules in the webserver.\nDelete default scripts.",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "question": "Explain steps to secure web server.",
      "answer": "Follow the following steps to secure your web server:\n\nUpdate ownership of file.\nKeep your webserver updated.\nDisable extra modules in the webserver.\nDelete default scripts."
    }
  },
  {
    "instruction": "Write an answer to the following question: What is a Botnet?",
    "context": "",
    "output": "A Botnet is a number of devices connected to the internet where each device has one or more bots running on it. The bots on the devices and malicious scripts used to hack a victim. Botnets can be used to steal data, send spams and execute a DDOS attack.",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "question": "What is a Botnet?",
      "answer": "A Botnet is a number of devices connected to the internet where each device has one or more bots running on it. The bots on the devices and malicious scripts used to hack a victim. Botnets can be used to steal data, send spams and execute a DDOS attack."
    }
  },
  {
    "instruction": "One of the staff members in XYZ subscribes to many free magazines. Now, to activate her subscriptions one of the magazines asked for her month of birth, second asked for her year of birth, the other one asked for her maiden name.\n\nBased on the above text, answer a question. What do you infer from this situation? Justify.",
    "context": "",
    "output": "All three newsletters probably have the same parent company or are distributed through the same service. The parent company or service can combine individual pieces of seemingly-harmless information and use or sell it for identity theft\n\nIt is even possible that there is a fourth newsletter that asks for a day of birth as one of the activation questions\n\nOften questions about personal information are optional. In addition to being suspicious about situations like the one described here, never provide personal information when it is not legitimately necessary, or to people or companies, you don\u2019t personally know.",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "context": "One of the staff members in XYZ subscribes to many free magazines. Now, to activate her subscriptions one of the magazines asked for her month of birth, second asked for her year of birth, the other one asked for her maiden name.",
      "question": "What do you infer from this situation? Justify.",
      "answer": "All three newsletters probably have the same parent company or are distributed through the same service. The parent company or service can combine individual pieces of seemingly-harmless information and use or sell it for identity theft\n\nIt is even possible that there is a fourth newsletter that asks for a day of birth as one of the activation questions\n\nOften questions about personal information are optional. In addition to being suspicious about situations like the one described here, never provide personal information when it is not legitimately necessary, or to people or companies, you don\u2019t personally know."
    }
  },
  {
    "instruction": "Write an answer to the following question: What is a three-way handshake?",
    "context": "",
    "output": "It is a process that happens in a TCP/IP network when you make a connection between a local host and the server. It is a three-step process to negotiate the acknowledgment and synchronization of packets before communication starts.\nStep 1: The client makes a connection with the server with SYN.\nStep 2: The server responds to the client\u2019s request with SYN+ACK.\nStep 3: The client acknowledges the server\u2019s response with ACK, and the actual data transmission begins.",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "question": "What is a three-way handshake?",
      "answer": "It is a process that happens in a TCP/IP network when you make a connection between a local host and the server. It is a three-step process to negotiate the acknowledgment and synchronization of packets before communication starts.\nStep 1: The client makes a connection with the server with SYN.\nStep 2: The server responds to the client\u2019s request with SYN+ACK.\nStep 3: The client acknowledges the server\u2019s response with ACK, and the actual data transmission begins."
    }
  },
  {
    "instruction": "Write an answer to the following question: What are Polymorphic viruses?",
    "context": "",
    "output": "Polymorphic viruses are sophisticated file infectors that may build changed versions of themselves in order to avoid detection while maintaining the same fundamental behaviors after each infection. Polymorphic viruses encrypt their programming and employ various encryption keys each time to alter their physical file makeup throughout each infection.\nMutation engines are used by polymorphic viruses to change their decryption routines every time they infect a machine. Because typical security solutions do not use a static, unchanging code, traditional security solutions may miss them. They are considerably more difficult to detect because they use complicated mutation engines that generate billions of decryption routines.",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "question": "What are Polymorphic viruses?",
      "answer": "Polymorphic viruses are sophisticated file infectors that may build changed versions of themselves in order to avoid detection while maintaining the same fundamental behaviors after each infection. Polymorphic viruses encrypt their programming and employ various encryption keys each time to alter their physical file makeup throughout each infection.\nMutation engines are used by polymorphic viruses to change their decryption routines every time they infect a machine. Because typical security solutions do not use a static, unchanging code, traditional security solutions may miss them. They are considerably more difficult to detect because they use complicated mutation engines that generate billions of decryption routines."
    }
  },
  {
    "instruction": "In our computing labs, print billing is often tied to the user\u2019s login. Sometimes people call to complain about bills for printing they never did only to find out that the bills are, indeed, correct.\nRead the text above and answer this question: What do you infer from this situation? Justify.",
    "context": "",
    "output": "Sometimes they realize they loaned their account to a friend who couldn\u2019t remember his/her password, and the friend did the printing. Thus the charges. It\u2019s also possible that somebody came in behind them and used their account\n\nThis is an issue with shared or public computers in general. If you don\u2019t log out of the computer properly when you leave, someone else can come in behind you and retrieve what you were doing, use your accounts, etc. Always log out of all accounts, quit programs, and close browser windows before you walk away.",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "context": "In our computing labs, print billing is often tied to the user\u2019s login. Sometimes people call to complain about bills for printing they never did only to find out that the bills are, indeed, correct.",
      "question": "What do you infer from this situation? Justify.",
      "answer": "Sometimes they realize they loaned their account to a friend who couldn\u2019t remember his/her password, and the friend did the printing. Thus the charges. It\u2019s also possible that somebody came in behind them and used their account\n\nThis is an issue with shared or public computers in general. If you don\u2019t log out of the computer properly when you leave, someone else can come in behind you and retrieve what you were doing, use your accounts, etc. Always log out of all accounts, quit programs, and close browser windows before you walk away."
    }
  },
  {
    "instruction": "Write an answer to the following question: Give examples of System-based attacks",
    "context": "",
    "output": "Examples of system-based attacks are:\n\nVirus\nBackdoors\nBots\nWorm\n",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "question": "Give examples of System-based attacks",
      "answer": "Examples of system-based attacks are:\n\nVirus\nBackdoors\nBots\nWorm\n"
    }
  },
  {
    "instruction": "Write an answer to the following question: Explain the concept of session hijacking",
    "context": "",
    "output": "TCP session hijacking is the misuse of a valid computer session. IP spoofing is the most common method of session hijacking. In this method, attackers use IP packets to insert a command between two nodes of the network",
    "category": "SecurityInterviewFlan",
    "instruction_type": "retrieval1",
    "parsed_raw_data": {
      "question": "Explain the concept of session hijacking",
      "answer": "TCP session hijacking is the misuse of a valid computer session. IP spoofing is the most common method of session hijacking. In this method, attackers use IP packets to insert a command between two nodes of the network"
    }
  }
]