Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

1.3 - Surveying the Cyberspace

Total questions: 15

Worksheet time: 8mins

Name
Class
Date
1.

The use of deception to manipulate individuals into divulging confidential or personal information that may be used for fraudulent purposes.

a)

Man in the middle

b)

Packet sniffing

c)

Social engineering

d)

Malware attacks

2.

An attacker, pretending to be a trusted entity, dupes a victim into opening an email, instant message, or text message. The recipient is then tricked into clicking a malicious link.

a)

Whaling

b)

Fishing attack

c)

Code injection

d)

Phishing attack

3.

A common cyberattack where malicious software executes unauthorized actions on the victim’s system.

a)

Code injection

b)

Malware attacks

c)

Lack of segregation

d)

Default credentials

4.

This attack uses trial-and-error to guess login info, encryption keys, or to find a hidden web page.

a)

Brute force attack

b)

Trial and error attack

c)

Password reuse attack

d)

Encryption attack

5.

Which of these vulnerabilities in a database happens when a user can access the information of another user with the same login credentials?

a)

Default credentials

b)

Unpatched database

c)

Lack of authentication

d)

Lack of segregation

6.

Which of the following vulnerabilities in a database occurs when the developer does not configure a production database after creating it?

a)

Default components and values

b)

Default credentials

c)

Failed configurations

d)

Unpatched database

7.

Users inundated with requirements to supply complex passwords to different systems often resort to reusing the same password across multiple accounts so that they can easily manage their credentials. This leads to which of the following vulnerabilities?

a)

Faulty sessions

b)

Identity theft

c)

Credential reuse

d)

Need a secretary to manage all my passwords

8.

Which of the following might be a good solution to the problem of credential reuse?

a)

Password manager

b)

Requirement of monthly password reset

c)

Setting good minimum standards for passwords

d)

Hacking into people’s accounts to prove a point

9.

A cybersecurity term for when an attacker positions themselves in a conversation between two entities in a network and intercepts messages

a)

Inception

b)

Interception

c)

Man in the middle

d)

Eavesdropping

10.

Which of the following security vulnerabilities can result in credential loss, identity theft, or blackmailing?

a)

Being vulnerable to an attractive person

b)

Hardware theft

c)

Being insecure in formal communications and speaking engagements

d)

Social engineering

11.

Which of the following suggestions would not be good to advise as a cybersecurity professional?

a)

Good password habits like minimum length, symbols, numbers, and using a password manager

b)

Implementing a strong multi factor authentication solution

c)

That a company does not need to spend on security training if their systems are strong enough

d)

To ensure that physical access to servers is protected by multiple layers of physical security

12.

Which of the following actions could you suggest to protect against injection attacks?

a)

To sanitize hands before leaving the bathroom and continuing work

b)

To ensure that all password field contents are hidden in the UI

c)

To remove dangerous characters from the office by calling the police

d)

To implement prepared statements instead of string interpolation for database calls

13.

In the context of cybersecurity, what are sniffing attacks?

a)

When someone gets a bit too close for you to be comfortable

b)

When an attacker uses specialized software to intercept and read data passing through a network

c)

Using a software sniffing tool to analyze faulty coroutines in consumer software

d)

Injecting malware into a victim’s computer to find vulnerabilities on their system

14.

Which of the following suggestions would not be good to advise as a cybersecurity professional?

a)

To expire user cookies and sessions upon logout

b)

To add user details to JSON authentication tokens for easier development

c)

To keep a short expiry time for authentication tokens and cookies

d)

To ensure that all server endpoints are rate limited

15.

Which of the following links is most likely to be a legitimate Google website?

a)

https://au.yahoo.com/

b)

https://transparencyreport.googie.com/

c)

https://unsafe.google.com/

d)

file:///myaccount.google.com/

e)

https://customer.google.one-support.com/