wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Social Engineering Attacks

Total questions: 17

Worksheet time: 9mins

Name
Class
Date
1.

This email is what type of attack?

a)

Shouldering

b)

Blagging

c)

Phishing

d)

Hacking

2.

What is the key indication that the email is the type of attack that you gave as your answer in question 1?

a)

Somebody watches you create an account

b)

Suspicious URL

c)

It asks for you to complete a short quiz

d)

It is an invented scenario

3.

A set of methods used by cyber criminals to deceive individuals into handing over information that they can use for fraudulent purposes’ is a definition of what?

a)

Impersonatin

b)

Shoulder Surfing

c)

Phishing

d)

Social Engineering

4.

What would be a key indicator of a phishing email?

a)

a new email from a friend arranging a meet

b)

unexpected email with request for information

c)

work email from a client with personal attachments

d)

a email from family with a picture

5.

What is one way somebody could protect themselves from shoulder surfing?

a)

share your pin with someone you trust

b)

create a pin that is easy to remember

c)

have a pin that is the same as your friends

d)

be aware of who is around you

6.

What is a common way to spot a phishing email?

a)

New email

b)

Lots of pictures

c)

Names of people you know

d)

Email address it is sent from

7.

While waiting in the lobby of your building for a guest, you notice a man in a red shirt standing close to a locked door with a large box in his hands. He waits for someone else to come along and open the locked door and then proceeds to follow her inside. What type of social engineering attack have you just witnessed?

a)

Impersonation

b)

Phishing

c)

Boxing

d)

Tailgating

8.

 A user in your organization contacts you to see if there’s any update to the “account compromise” that happened last week. When you ask him to explain what he means, and the user tells you he received a phone call earlier in the week from your department and was asked to verify his user ID and password. The user says he gave the caller his user ID and password. This user has fallen victim to what specific type of attack?

a)

Spear phishing

b)

Vishing

c)

Phishing

d)

Replication

9.

Coming into your office, you overhear a conversation between two security guards. One guard is telling the other she caught several people digging through the trash behind the building early this morning. The security guard says the people claimed to be looking for aluminum cans, but only had a bag of papers—no cans. What type of attack has this security guard witnessed?

a)

Spear phishing

b)

Pharming

c)

Dumpster diving

d)

Rolling refuse

10.

Which of the following is a type of social engineering attack in which an attacker attempts to obtain sensitive information from a user by masquerading as a trusted entity in an e-mail?

a)

Phishing

b)

Pharming

c)

Spam

d)

Vishing

11.

Which of the following is/are psychological tools used by social engineers to create false trust with a target?

a)

Impersonation

b)

Urgency or scarcity

c)

Authority

d)

All of the above

12.

Your boss thanks you for pictures you sent from the recent company picnic. You ask him what he is talking about, and he says he got an e-mail from you with pictures from the picnic. Knowing you have not sent him that e-mail, what type of attack do you suspect is happening?

a)

Phishing

b)

Spear phishing

c)

Reconnaissance

d)

Impersonation

13.

Lisa received a phone call at work from someone identifying themselves as a person who sells the company hardware regularly. He said he's calling customers to inform them of a problem with database servers they've sold, but he said the problem only affects servers running a specific operating system version. He asks Lisa what OS versions the company is running. Which BEST describes this tactic?

a)

Pretexting

b)

Tailgating

c)

Pharming

d)

Smishing

14.

A man in a maintenance uniform walked up to your organization's receptionist desk. He said he was called by the CIO (Chief Information Officer) and asked to fix an issue with the phones and needed access to the wiring closet. The receptionist asked the man to show his building access badge, and then she verified that he was on the list of approved personnel to access this secure area. What type of attack will the checks the receptionist performed prevent?

a)

Tailgating

b)

Phishing

c)

Impersonation

d)

Whaling

15.

A company's security policy requires employees to place all discarded paper documents in containers for temporary storage. These papers are later burned in an incinerator. Which of the following attacks are these actions MOST likely trying to prevent?

a)

Shoulder surfing

b)

Tailgating

c)

Smishing

d)

Dumpster Diving

16.

Homer, the Chief Financial Officer of a bank, received an email from Lisa, the company's Chief Executive Officer (CEO). Lisa states she is on vacation and that she lost her purse and all her credit cards. She asks Homer to transfer $5,000 to her account. Which of the following best identifies this attack?

a)

Phishing

b)

Vishing

c)

Smishing

d)

Whaling

17.

Homer has been looking for the newest version of a popular smartphone. However, he can't find it in stock anywhere. Today, he received an email advertising the smartphone. After clicking the link, his system was infected with malware. Which of the following principles is the email sender employing?

a)

Authority

b)

Intimidation

c)

Scarcity

d)

Trust