Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

final cnt3409c

Total questions: 109

Worksheet time: 55mins

Name
Class
Date
1.

A ________ is a legitimate user who accesses data, programs, or resources for which such access is not authorized, or who is authorized for such access but misuses his or her privileges.

a)

emissary

b)

masquerader

c)

misfeasor

2.

detection focuses on characterizing the past behavior of individual users or related groups of users and then detecting significant deviations.

a)

Threshold

b)

Profile-based anomaly

c)

Statistical anomaly

d)

Action condition

3.

A backdoor is any mechanism that bypasses a normal security check.

a)

True

b)

False

4.

_________ can result in pop-up ads or redirection of a browser to a commercial site

a)

Adware

b)

Flooders

c)

Bots

d)

RootKits

5.

detection focuses on characterizing the past behavior of individual users or related groups of users and then detecting significant deviations.

a)

Threshold

b)

Statistical anomaly

c)

Action condition

d)

Profile-based anomaly

6.

Unauthorized intrusion into a computer system or network is not one of the most serious threats to computer security

a)

True

b)

False

7.

Statistical approaches attempt to define proper behavior and rule-based approaches attempt to define normal or expected behavior.

a)

True

b)

False

8.

A _________ is an individual who is not authorized to use the computer and who penetrates a system's access controls to exploit a legitimate user's account.

a)

clandestine user

b)

masquerader

c)

misfeasor

d)

sniffer

9.

is software that collects information from a computer and transmits it to another system

a)

Trojan horse Spyware Exploit Flooder

b)

Spyware

c)

Exploit

d)

Flooder

10.

A ________ lies dormant until a predefined condition is met; the program then triggers an unauthorized act

a)

logic-bomb

b)

worm

11.

IP security is a capability that can be added to either current version of the Internet Protocol by means of additional headers.

a)

true

b)

false

12.

Typically housed in the user's computer, a _________ is referred to as a client e-mail program or a local network e-mail server

a)

MUA

b)

dns

c)

pgp

13.

The _________ payload allows peers to identify packet flows for processing by IPsec services.

a)

EAP

b)

flags

c)

IAB

14.

The __________ mechanism assures that a received packet was in fact transmitted by the party identified as the source in the packet header and assures that the packet has not been altered in transit.

a)

key management

b)

confidentiality

c)

authenticationsecurity

15.

Video content will be identified as _________ type.

a)

MPEG.

b)

pgp

c)

(MIME)

16.

The _________ accepts the message submitted by a Message User Agent and enforces the policies of the hosting domain and the requirements of Internet standards.

a)

mail submission agent

b)

message user agent

c)

mail delivery agent

d)

message transfer agent

17.

The ________ MIME field is a text description of the object with the body which is useful when the object is not readable as in the case of audio data

a)

Content-Description

b)

Content-ID

c)

Content-Transfer-Encoding

d)

MIME-Version

18.

Transport mode provides protection to the entire IP packet

a)

true

b)

false

19.

S/MIME cryptographic algorithms use __________ to specify requirement level.

a)

SHOULD and MUST

b)

not

c)

maybe

20.

Authentication applied to all of the packet except for the IP header is _________ .

a)

Transport mode

b)

Tunnel Mode

c)

ESP

21.

In using cloud infrastructures, the client necessarily cedes control to the CP on a number of issues that may affect security

a)

true

b)

false

22.

The ____________ knows the passwords of all users and stores these in a centralized database and also shares a unique secret key with each server

a)

authentication server

b)

EAP Transport Layer Security

c)

EAP Tunneled TLS

23.

Cloud computing gives you the ability to expand and reduce resources according to only to Cloud provider availability.

a)

true

b)

false

24.

Public-key encryption is also referred to as conventional encryption, secret-key, or single-key encryption.

a)

true

b)

false

25.

saves the complexity of software installation, maintenance, upgrades, and patches.

a)

SaaS

b)

SecaaS

c)

IaaS

26.

Verifying that users are who they say they are and that each input arriving at the system came from a trusted source

a)

Authenticity

b)

Accountability

27.

The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity

a)

Accountability

b)

Authenticity

28.

_________ provides secure, remote logon and other secure client/server facilities.

a)

SSH.

b)

HTTPS

c)

TLS

d)

SLP

29.

The strength of a hash function against brute-force attacks depends solely on the length of the hash code produced by the algorithm

a)

true

b)

false

30.

If both sender and receiver use the same key the system is referred to as _________ encryption.

a)

symmetric encryption

b)

asymmetric

c)

public-key

31.

known as public-key cryptography, is a process that uses a pair of related keys -- one public key and one private key

a)

Asymmetric

b)

symmetric

32.

The World Wide Web is fundamentally a client/server application running over the Internet and UDP/IP intranets.

a)

true

b)

false

33.

Public key cryptography is __________ .

a)

Asymmetric cryptography,

b)

symmetric

34.

The purpose of a ___________ is to produce a "fingerprint" of a file, message, or other block of data

a)

cipher encryption

b)

message authentication.

c)

public key

d)

hash function

35.

The key used in conventional encryption is typically referred to as a _________ key

a)

. secret

b)

cipher

c)

secondary

d)

primary

36.

_________ is the original message or data that is fed into the algorithm as input.

a)

Plaintext

b)

original

c)

first text

37.

__________ is a centralized, automated approach to provide enterprise-wide access to resources by employees and other authorized individuals, with a focus on defining an identity for each user, associating attributes with the identity, and enforcing a means by which a user can verify identity.

a)

Identity management

b)

Cloud broker

c)

Cloud carrier

38.

The protection of data from unauthorized disclosure is _________ .

a)

Confidentiality

b)

Integrity

c)

Availability

39.

Patient information stored in a database – inaccurate information could result in serious harm or death to a patient and expose the hospital to massive liability

a)

Integrity

b)

Availability

c)

Confidentiality

40.

The more critical a component or service, the higher the level of_______________required

a)

Availability

b)

Integrity

c)

Confidentiality

41.

The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity is _________ .

a)

Accountability

b)

Authenticity

42.

A __________ takes place when one entity pretends to be a different entity

a)

masquerade

b)

Accountability

c)

Authenticity

43.

____Involves the passive capture of a data unit and its subsequent retransmission to produce an unauthorized effect

a)

Replay

b)

Modification of messages

c)

Denial of service

44.

______Some portion of a legitimate message is altered, or messages are delayed or reordered to produce an unauthorized effect

a)

Modification of messages

b)

Masquerade

c)

Denial of service

45.

_______Prevents or inhibits the normal use or management of communications facilities

a)

Denial of

service

b)

Replay

c)

Modification of messages

46.

A _________ is a person, organization, or entity responsible for making a service available to interested parties.

a)

Cloud Provider

b)

cloud Carrier

c)

cloud auditor

47.

_____An independent entity that can assure that the CP conforms to a set of standards

a)

Cloud auditor

b)

Cloud broker

c)

Cloud carrier

48.

_____A networking facility that provides connectivity and transport of cloud services between cloud consumers and CPs

a)

Cloud auditor

b)

Cloud broker

c)

Cloud carrier

49.

_____• Useful when cloud services are too complex for a cloud consumer to easily manage • Three areas of support can be offered by a cloud broker: • Service intermediation • Value-added services such as identity management, performance reporting, and enhanced security • Service aggregation • The broker combines multiple cloud services to meet consumer needs not specifically addressed by a single CP, or to optimize performance or minimize cost • Service arbitrage • A broker has the flexibility to choose services from multiple agencies

a)

Cloud auditor

b)

Cloud broker

c)

Cloud carrier

50.

Wireless networks, and the wireless devices that use them, introduce a host of security problems over and above those found in wired networks.

a)

true

b)

false

51.

____________ is an umbrella term for managing access to a network

a)

Network access control (NAC)

b)

EAP Transport Layer Security

c)

EAP Generalized Pre-Shared Key

52.

________Authenticates users logging into the network and determines what data they can access and actions they can perform

a)

NAC

b)

DHCP

c)

Firewall

53.

what are the Common NAC enforcement methods

a)

Virtual local area networks (VLANs)

b)

Firewall

c)

DHCP management

d)

IEEE 802.1X

e)

all the above

54.

What are the approaches to message authentication?

a)

Symmetric encryption

authentication tag

includes an error detection code and a sequence number

timestamp

authentication function at the destination

b)

One-way Hash

55.

attacks include impersonating another user, altering messages in transit between client and server, and altering information on a Web site

a)

passive

b)

active

c)

full force

56.

What type of passive attacks?

a)

eavesdropping

b)

The release of message contents

c)

Traffic analysis

d)

all the above

57.

Active Attacks

(a)  

(b)  

(c)   ​ ​ (d)  

a)

Masquerade

b)

Replay

c)

Denial of service

d)

Access control

e)

all the above

58.

X.800 Service Categories

a)

Authentication • Access control • Data confidentiality • Data integrity

Nonrepudiation

b)

Modification of messages

Denial of service

Replay

59.

With a __________ infrastructure, the cloud infrastructure is made available to the general public or a large industry group and is owned by an organization selling cloud services.

a)

public cloud

b)

Intrusion management

c)

gateway

60.

The core of ___________ is the implementation of intrusion detection systems and intrusion prevention systems at entry points to the cloud and on servers in the cloud

a)

Intrusion management

b)

SIEM

c)

security assessments

61.

s Defined as "a model for enabling ubiquitous, convenient, on demandnetwork access to a shared pool of configurable computing resources that can be rapidlyprovisioned and released with minimal management effort or service providerinteraction

a)

cloud computing

b)

Infrastructure

c)

hybrid

62.

MAC spoofing occurs when an attacker is able to eavesdrop on network traffic and identify the MAC address of a computer with network privileges.

a)

T

b)

f

63.

Sensors and robots, are not vulnerable to physical attacks

a)

f

b)

t

64.

The actual method of key generation depends on the details of the authentication protocol used.

a)

t

b)

f

65.

The layer of the IEEE 802 reference model that includes such functions as encoding/decoding of signals and bit transmission/reception is the _________

a)

physical layer

b)

physical layer

c)

logical link layer

d)

media access layer

66.

In a(n) __________ situation, a wireless device is configured to appear to be a legitimate access point, enabling the operator to steal passwords from legitimate users and then penetrate a wired network through a legitimate wireless access point.

a)

malicious association

b)

identiy thef

c)

network injection

d)

ad hoc network

67.

nd links, such as personal network Bluetooth devices, barcode readers, and handheld PDAs, pose a security risk in terms of both eavesdropping and spoofing

a)

DoS

b)

Accidental association

c)

Nontraditional networks

d)

Ad hoc networks

68.

A signature is created by taking the hash of a message and encrypting it with the sender's

a)

private key

b)

Handshake Protocol

c)

session identifier

d)

all of the above

69.

The SSL Internet standard version is called _________

a)

SSH

b)

SLP

c)

HTTP

d)

TLS

70.

What are the uses of bots?

a)

Distributed denial-of-service (DDoS) attacks • Spamming • Sniffing traffic • Keylogging • Spreading new malware • Installing advertisement add-ons and browser helper objects (BHOs) • Attacking Internet Relay Chat (IRC)

b)

Keylogger

Spyware

Phishing

71.

what are intruders ?

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

72.

________An individual who is not authorized to use the computer and who penetrates a system’s access controls to exploit a legitimate user’s account

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

73.

________A legitimate user who accesses data, programs, or resources for which such access is not authorized, or who is authorized for such access but misuses his or her privileges

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

74.

________An individual who seizes supervisory control of the system and uses this control to evade auditing and access controls or to suppress audit collection

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

75.

________Can be motivated by revenge or simply a feeling of entitlement

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

Insider Attacks

76.

________Traditionally, those who hack into computers do so for the thrill of it or for status

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

Hackers

77.

________Objective of the intruder is to gain access to a system or to increase the range of privileges accessible on a system • Most initial attacks use system or software vulnerabilities that allow a user to e

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

one way functionning

Access controlfunctioningcontrol functioning

78.

________Objective of the intruder is to gain access to a system or to increase the range of privileges accessible on a system • Most initial attacks use system or software vulnerabilities that allow a user to e

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

Intrusion Techniques

79.

________Ways to protect a password file:

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

One-way functioning

Access control

80.

________The system stores only the value of a function based on the user’s password

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

One-way functioning

81.

________Access to the password file is limited to one or a very few accounts

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

Access control

82.

________involves the collection of data relating to the behavior of legitimate users over a period of time • Then statistical tests are applied to observed behavior to determine whether that behavior is not legitimate user behavior

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

Statistical anomaly detection

83.

________This approach involves defining thresholds, independent of user, for the frequency of occurrence of various events

a)

Masquerader

b)

Misfeasor

c)

Clandestine user

d)

all the above

e)

Threshold detection

84.

profile based of the activity of each user is developed and used to detect changes in the behavior of individual accounts

a)

t

b)

f

85.

Rule-based detection • Involves an attempt to define a set of rules or attack patterns that can be used to decide that a given behavior is that of an intruder • Often referred to as signature detection

a)

t

b)

f

86.

Firewall limitations Cannot protect against attacks that bypass the firewall

a)

t

b)

f

87.

Firewall limitations A laptop, PDA, or portable storage device may be used and infected outside the corporate network, and then attached and used internally

a)

t

b)

f

88.

Firewall limitations May not protect fully against internal threats, such as a disgruntled employee or an employee who unwittingly cooperates with an external attacker

a)

t

b)

f

89.

Firewall limitations Cannot guard against wireless communications between local systems on different sides of the internal firewall

a)

t

b)

f

90.

firewalls Weaknesses

a)

Because packet filter firewalls do not examine upper-layer data, they cannot prevent attacks that employ application-specific vulnerabilities or functions • Because of the limited information available to the firewall, the logging functionality present in packet filter firewalls is limited • Most packet filter firewalls do not support advanced user authentication schemes • Packet filter firewalls are generally vulnerable to attacks and exploits that take advantage of problems within the TCP/IP specification and protocol stack • Due to the small number of variables used in access control decisions, packet filter firewalls are susceptible to security breaches caused by improper configurations

b)

Its simplicity • Transparent to users and are very fast

91.

firewalls Strengths

a)

Because packet filter firewalls do not examine upper-layer data, they cannot prevent attacks that employ application-specific vulnerabilities or functions • Because of the limited information available to the firewall, the logging functionality present in packet filter firewalls is limited • Most packet filter firewalls do not support advanced user authentication schemes • Packet filter firewalls are generally vulnerable to attacks and exploits that take advantage of problems within the TCP/IP specification and protocol stack • Due to the small number of variables used in access control decisions, packet filter firewalls are susceptible to security breaches caused by improper configurations

b)

Its simplicity • Transparent to users and are very fast

92.

Attacks

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

93.

A suitabled countermeasures for __________ is to discard packets with an inside source address if the packet arrives on an external interface

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

94.

A suitabled countermeasures for __________ is to discard all packets that use this option

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

95.

A suitabled countermeasures for __________ is to enforce a rule that the first fragment of a packet must contain a predefined minimum amount of the transport header

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

96.

__________The intruder transmits packets from the outside with a source IP address field containing an address of an internal host

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

97.

__________The source station specifies the route that a packet should take as it crosses the internet, in the hopes that this will bypass security measures that do not analyze the source routing information

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

98.

__________The intruder uses the IP fragmentation option to create extremely small fragments and force the TCP header information into a separate packet fragment

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

all the above

99.

__________Also called an application proxy • Acts as a relay of application-level traffic • If the gateway does not implement the proxy code for a specific application, the service is not supported and cannot be forwarded across the firewall • The gateway can be configured to support only specific features of an application that the network administrator considers acceptable while denying all other features • Tend to be more secure than packet filters • Disadvantage: • The additional processing overhead on each connection

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

Level Gateway

100.

__________A system identified by the firewall administrator as a critical strong point in the network’s security

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

Bastion Host

101.

__________A software module used to secure an individual host • Is available in many operating systems or can be provided as an add-on package • Filters and restricts the flow of packets • Common location is a server • Advantages: • Filtering rules can be tailored to the host environment • Protection is provided independent of topology • Used in conjunction with stand-alone

a)

IP address spoofing

b)

Source routing attacks

c)

Tiny fragment attacks

d)

Host-Based Firewall

102.

Personal Firewall Controls the traffic between a personal computer or workstation on one side and the Internet or enterprise network on the other side

a)

t

b)

f

103.

Host-resident firewall this category includes personal firewall software and firewall software on servers • Can be used alone or as part of an in-depth firewall deployment

a)

t

b)

f

104.

Screening router • single router between internal and external networks with stateless or full packet filtering • This arrangement is typical for small office/home office (SOHO) applications

a)

t

b)

f

105.

Single bastion inline • A single firewall device between an internal and external router • This is the typical firewall appliance configuration for small-to-medium sized organizations

a)

t

b)

f

106.

Single bastion T • Similar to single bastion inline but has a third network interface on bastion to a DMZ where externally visible servers are placed

a)

t

b)

f

107.

double bastion inline • DMZ is sandwiched between bastion firewalls

a)

t

b)

f

108.

double bastion T • DMZ is on a separate network interface on the bastion firewall

a)

t

b)

f

109.

distributed firewall configuration • Used by some large businesses and government organizations

a)

t

b)

f