wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Module 3

Total questions: 15

Worksheet time: 6mins

Name
Class
Date
1.

Which security term is used to describe anything of value to the organization? It includes people, equipment, resources, and data.

a)

Vulnerability

b)

Exploit

c)

Asset

d)

Risk

2.

Which security term is used to describe a weakness in a system, or its design, that could be exploited by a threat?

a)

Mitigation

b)

Risk

c)

Asset

d)

Vulnerability

3.

Which security term is used to describe a potential danger to a company’s assets, data, or network functionality?

a)

Vulnerability

b)

Exploit

c)

Threat

d)

Risk

4.

Which security term is used to describe a mechanism that takes advantage of a vulnerability?

a)

Exploit

b)

Threat

c)

Risk

d)

Mitigation

5.

Which security term is used to describe the counter-measure for a potential threat or risk?

a)

Vulnerability

b)

Exploit

c)

Asset

d)

Mitigation

6.

Which security term is used to describe the likelihood of a threat to exploit the vulnerability of an asset, with the aim of negatively affecting an organization?

a)

Vulnerability

b)

Exploit

c)

Threat

d)

Risk

7.

Which objective of secure communications is achieved by encrypting data?

a)

Integrity

b)

Authentication

c)

Availability

d)

Confidentiality

8.

What type of malware has the primary objective of spreading across the network?

a)

Virus

b)

Trojan horse

c)

Worm

d)

Botnet

9.

Which cyber attack involves a coordinated attack from a botnet of zombie computers?

a)

Address spoofing

b)

DDoS

c)

ICMP redirect

d)

MITM

10.

What specialized network device is responsible for enforcing access control policies between networks?

a)

Firewall

b)

Bridge

c)

IDS

d)

Switch

11.

Which type of hacker is described in the scenario: After hacking into ATM machines remotely using a laptop, I worked with ATM manufacturers to resolve the security vulnerabilities that I discovered.

a)

White Hat

b)

Gray Hat

c)

Black Hat

12.

The IT department is reporting that a company web server is receiving an abnormally high number of web page requests from different locations simultaneously. Which type of security attack is occurring?

a)

phishing

b)

social engineering

c)

spyware

d)

adware

e)

DDoS

13.

For detecting malicious activity, an IPS uses a set of rules called signatures to detect patterns in network traffic.

a)

to detect patterns of malicious traffic by the use of signature files

b)

to filter traffic based on defined rules and connection context

c)

to enforce access control policies based on packet content

d)

to filter traffic based on Layer 7 information

14.

A cleaner attempts to enter a computer lab but is denied entry by the receptionist because there is no scheduled cleaning for that day. What type of attack was just prevented?

a)

phishing

b)

social engineering

c)

Trojan

d)

shoulder surfing

15.

Which type of DNS attack involves the cybercriminal compromising a parent domain and creating multiple subdomains to be used during the attacks?

a)

tunneling

b)

cache poisoning

c)

amplification and reflection

d)

shadowing