WorksheetsNetwork Security Revision
Total questions: 10
Worksheet time: 5mins
Some attacks don't always cause damage or change data. Why might an attacker simply steal personal or sensitive data? Select all that apply
Blackmail and extortion
Backups and archiving
SQL injection
Fraud
Industrial espionage
What do we call sending fake emails to fool people into revealing personal information?
Phishing
Blagging
Shouldering
Pharming
Computer systems attached to the internet are more vulnerable to attack than systems which are offline. True or false?
True
False
Phishing emails are often easy to spot. What should you look for? Select all that apply
Poor grammar and spelling
Images and logos are poor quality copies
They are always in the "Spam" or "Junk" folder
"Dear Customer" and no mention of your name
Hyperlinks show a different URL when you hover on them
Manipulating someone into giving out private or confidential information, e.g. through phishing or pretexting, is what type of attack?
Extrinsic motivation
Social engineering
Human persuasion
Physical coercion
If a web form input is not validated, what attack is more likely?
Malware
Denial of Service
SQL Injection
Social Engineering
This attack stops legitimate users from accessing a system, by overloading it with traffic
Website closure
Server soaking
Traffic swamping
Denial of service
Data interception and theft is often called a "passive attack", why is this?
It does no harm to the victim
It doesn't change any data
It requires no skill on the part of the hacker
It cannot be detected
Which of these terms are types of malware? Select all that apply
Trojan
SQL
Worm
Virus
DDos
Which of these are social engineering attacks? Select all that apply
Phishing
SQL Injection
Malware
Pretexting or blagging
Shouldering
