Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

2.1 Understanding Attacks

Total questions: 15

Worksheet time: 9mins

Name
Class
Date
1.

A subcategory of hacker threat agents. They are willing to take more risks and use more extreme tactics for financial gain.

a)

Cybercriminal

b)

Black Hat Hacker

c)

Gray Hat Hacker

d)

Cyberterrorist

2.

A sovereign state threat agent that may wage an all-out war on a target and have significant resources for the attack.

a)

Script Kiddie

b)

Hacktivist

c)

Nation State

3.

A threat that seeks to gain access to a network and remain there undetected.

a)

Persistent Threat

b)

Non-Persistent Threat

4.

A threat that focuses on getting into a system and stealing information. It is usually a one-time event, so the attacker is not concerned with detection.

a)

Persistent Threat

b)

Non-Persistent Threat

5.

Open-source intelligence (OSINT) is information that is readily available to the public and doesn't require any type of malicious activity to obtain.

a)

False

b)

True

6.

A skilled hacker who uses skills and knowledge for defensive purposes only. The white hat hacker interacts only with systems for which express access permission is given.

a)

Gray hat

b)

Black hat

c)

White hat

d)

Script kiddie

7.

An employee stealing company data could be an example of which kind of threat actor?

a)

External threat

b)

Internal threat

8.

Which of the following is the BEST definition of the term hacker?

a)

Any individual whose attacks are politically motivated.

b)

The most organized, well-funded, and dangerous type of threat actor.

c)

A general term used to describe any individual who uses their technical knowledge to gain unauthorized access to an organization.

d)

A threat actor whose main goal is financial gain.

9.

Which of the following threat actors seeks to defame, shed light on, or cripple an organization or government?

(a)  

10.

The IT manager in your organization proposes taking steps to deflect a potential threat actor. The proposal includes the following:

*Create and follow onboarding and off-boarding procedures.

*Employ the principal of least privilege.

*Have appropriate physical security controls in place.

Which type of threat actor do these steps guard against?

a)

Cybercriminal

b)

Nation State

c)

Competitor

d)

Insider

11.

A script kiddie is a threat actor who lacks knowledge and sophistication. Script kiddie attacks often seek to exploit well-known vulnerabilities in systems.

What is the BEST defense against script kiddie attacks?

a)

Build a comprehensive security approach that uses all aspects of threat prevention and protection.

b)

Keep systems up to date and use standard security practices.

12.

A hacker scans hundreds of IP addresses randomly on the internet until they find an exploitable target. What kind of attack is this?

a)

Targeted attack

b)

Insider attack

c)

Opportunistic attack

d)

Nation state attack

13.

Stealing information and crashing systems fall into which category?

a)

Reconnaissance

b)

Breaching

c)

Escalating privileges

d)

Exploitation

14.

Penetrating system defenses to gain unauthorized access.

a)

Breaching

b)

Staging

c)

Exploitation

d)

Reconnaissance

15.

The constant change in personal habits and passwords to prevent anticipated events and exploitation.

a)

Principle of Least Priviledge

b)

Layering

c)

Variety

d)

Randomness