wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Ch1&2

Total questions: 39

Worksheet time: 1hrs 18mins

Name
Class
Date
1.
In the CIA Triad - the "C" stands for:
a)
Confidentiality
b)
Continuation
c)
Congressional
d)
Communication
2.
In the CIA Triad - the "A" stands for:
a)
Availability
b)
Authority
c)
Authentication
d)
Accountability
3.
Which of the following is a breach of integrity in the CIA Triad?
a)
A student getting a teacher password and changing the grades for the last quiz.
b)
A DDos Attack that shuts down a website
c)
Your co-worker reading your emails without your permission
d)
A hacker convincing an elderly person to send money to get a friend out of jail.
4.
__________ is proving who you are so trust can be established between youand another party.
a)

Authentication

b)

Authority

c)

Access

d)

Availability

5.
A school ID is an example of ___________ to prove who you are.
a)
Something you have
b)
Something you know
c)
Something you are
d)
None of the above
6.
A password is an example of ___________ to prove who you are.
a)
Something you know
b)
Something you have
c)
Something you are
d)
None of the above
7.
A software program that automates the process of trying all possiblecombinations of characters to determine a password.
a)
Brute Force
b)
Guess & Check
c)
Stealing
d)
Hackathon
8.
What type of attack will test a weak password against a large number of accounts?
a)
Password spraying
b)
Brute Force
c)
Dictionary
d)
Wildfire
9.
What type of attack will try a lot of known passwords against just one account?
a)
Dictionary
b)
Brute Force
c)
Password Spraying
d)
Wildfire
10.
When a database is exposed or stolen, it is said to be a :
a)
Breach
b)
Takedown
c)
Heist
d)
Hit
11.
A one-way algorithm used to encrypt a password for secure storage or transfer.
a)
Hash
b)
Single Sign-On
c)
SAM registry
d)
Encoding
12.
What is used to authenticate a document or website by a 3rd party to ensure it is coming from the intended source?
a)
Certificate
b)
Proximity Reader
c)
License
d)
Identity Card
13.
Which of the following CANNOT be used for biometric authentication?
a)
All of the above can be used
b)
Fingerprint
c)
Retina Scan
d)
Typing Speed
14.
What is the biggest security weakness in any organization?
a)
Human factors
b)
Passwords not long enough
c)
Not using strong enough filters
d)
Not using two factor authentication
15.
A program that attaches itself to a host file and replicates itself on a system.
a)
Virus
b)
Worm
c)
Trojan
d)
Backdoor
16.
A program that reproduces itself and can transport from system to system without attaching to a file.
a)
Worm
b)
Virus
c)
Trojan
d)
Backdoor
17.
A files that appear to be legitimate programs, but really contain malicious code.
a)
Trojan
b)
Worm
c)
Virus
d)
Backdoor
18.
A program that blocks access to files or use of the device until a ransom is paid.
a)
Ransomware
b)
Logic Bomb
c)
Rootkit
d)
Spyware
19.
Software that gathers data and forwards it to a third party without the consent or knowledge of the user.
a)
Spyware
b)
Logic Bomb
c)
Rootkit
d)
Ransomware
20.
What is the process of making sure the host and the virtual machine are separated for optimization and safety.
a)
Sandbox
b)
Isolation
c)
Firewalls
d)
Moat
21.
The place that text based commands are entered can be called any of the following EXCEPT
a)
GUI
b)
Terminal
c)
Command Prompt
d)
Shell
22.
In Linux, if you don't know what a command is or how it works, you can type in which of the following?
a)
man
b)
help
c)
info
d)
what
23.
In Linux, to find which path I am currently in you can type which of the following?
a)
pwd
b)
cd
c)
ls
d)
help
24.
In Linux, which of the following commands will take you up one level in the path to your parent directory?
a)
cd ..
b)
cd ~
c)
cd /parent
d)
cd parent
25.
Which command line is case sensitive?
a)
Linux only
b)
Windows only
c)
Both Linux and Windows
d)
Neither Linux nor Windows
26.

Which two of the following steps of hacking are most likely to involve the use of social engineering?

a)

Recon / footprinting

b)

Gaining Access

c)

Escalating Privileges

d)

Installing Back Doors

e)

Scanning / probing

27.

What is the goal of social engineering?

a)

To get an authorized user to give information to an unauthorized person

b)

To make people behave better

c)

To help people make more friends

d)

To have an unauthorized user to determine a user's password using brute force

28.

What is the main method used in social engineering?

a)

Deception

b)

Brute Force

c)

Complex Algorithms

d)

Ransom attacks

29.

Which is NOT a reason that Social Engineering is so successful?

a)

Humans are good at problem solving

b)

Humans want to avoid confrontation

c)

Humans make sloppy mistakes

d)

Humans want to be helpful

30.

Which of the following Social Engineering techniques are best protected against by use of a security guard or turnstile?

a)

Piggybacking

b)

Shoulder Surfing

c)

Dumpster Diving

d)

Baiting

31.

This is considered the single biggest threat in the digital world and was used in 67% of cyber attacks last year?

a)

Phishing

b)

Shoulder Surfing

c)

Dumpster Diving

d)

Baiting

32.

Which of the following is NOT an indication that the email might be a phishing email?

a)

Email was sent in the middle of the night

b)

URL doesn't match the text

c)

Misspellings

d)

Sender and email address don't match

33.

Which of the following is a phishing attack that targets a specific individual or organization?

a)

Spear-phishing

b)

Vishing

c)

Smishing

d)

Wishing

34.

In order for data to be considered OSINT, it must satisfy which of the two conditions below? (Pick two)

a)

Free

b)

Recent

c)

Accurate

d)

Public

35.

Which of the following would NOT be considered OSINT?

a)

Google Classroom

b)

YouTube

c)

(X) Twitter

d)

Google Maps

36.

Which of the following is NOT part of the steps in mitigating human risk when pertaining to cybersecurity?

a)

Faster Computers

b)

Developing Policies

c)

User Training

d)

Developing Procedures

37.

Phishing is one of the top 4 most dangerous types of malware.

a)

True

b)

False

38.

Which of the following is NOT a type of phishing?

a)

Sharking

b)

Whaling

c)

Smishing

d)

Vishing

39.

Which of the following would NOT be considered OSINT?

a)

Microsoft Teams

b)

Spokeo

c)

Archive.org

d)

Pinterest