wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Cybersecurity Unit 4

Total questions: 57

Worksheet time: 29mins

Name
Class
Date
1.
What are the two forms of authenticated modes of operations?
a)
Single-sided and double-sided
b)
Disconnected and mutual
c)
Single-sided and mutual
d)
Dual and unilateral
2.
Authenticated modes of encryption validate the integrity of the ciphertext, verifying it has not been modified.
a)
True
b)
False
3.
What is a mode of operation?
a)
The choice on boot between running in BIOS or loading the OS
b)
Choosing whether to work with traditional medicine or black magic
c)
Determining whether the game difficulty is easy, medium, hard, or impossible
d)
An algorithm used with a block cipher to make an encryption algorithm
4.
Which of the following is true about CTR mode?
a)
It authenticates and encrypts at the same time
b)
It is a block cipher acting like a stream cipher
c)
It is a stream cipher acting like a block cipher
d)
The counter decreases by one from one block to the next
5.
What is a blockchain?
a)
A chain of block ciphers
b)
a distributed and immutable public ledger
c)
A series of encryption algorithms designed to secure governmental data
d)
None of the above
6.
What is a stream cipher?
a)
A symmetric key cipher that encrypts plaintext one byte at a time
b)
An asymmetric key cipher that encrypts plaintext one stream at a time
c)
A symmetric key cipher that encrypts plaintext one block at a time
d)
An asymmetric key cipher that encrypts plaintext one hash at a time
7.
What is a block cipher?
a)
A symmetric key cipher that encrypts plaintext one byte at a time
b)
An asymmetric key cipher that encrypts plaintext one stream at a time
c)
A symmetric key cipher that encrypts plaintext one block at a time
d)
An asymmetric key cipher that encrypts plaintext one hash at a time
8.
If the plaintext cant be divided evenly into equal sized blocks, what is done to bring the plaintext to a proper length?
a)
Filling
b)
Completing
c)
Repeating
d)
Padding
9.
What is ECB?
a)
Encryption Cipher Box
b)
Engineering Cryptographic Bytes
c)
Electronic Codebook
d)
Exocipher Byte
10.
What does CBC add on top of ECB?
a)
Authentication
b)
Obfuscation
c)
Randomization
d)
None of the above
11.
What does CBC use for the first plaintext block since it doesn't have a ciphertext block preceding it?
a)
Initial vector
b)
Padding
c)
Nothing
d)
Obfuscation
12.
Which of the following is true about CTR mode?
a)
It authenticates and encrypts at the same time
b)
It is a block cipher acting like a stream cipher
c)
It is a stream cipher acting like a block cipher
d)
The counter decreases by one from one block to the next
13.
GCM and GMAC are given their names after which famous mathematician?
a)
Galois
b)
Gauss
c)
Germain
d)
Gadella
14.
What is steganography?
a)
The practice and study of writing or solving codes
b)
The practice of hiding information in ways to prevent the detection of hidden messages
c)
The practice of graphing a Stegosaurus drinking eggnog, but only in September in Europe
d)
The process of assigning a code to something for the purposes of classification or identification
15.
What does the Greek word steganos mean?
a)
Staggered
b)
Writing
c)
Covered
d)
Graphing
16.
What does the Greek word graphia mean?
a)
Staggered
b)
Writing
c)
Covered
d)
Graphing
17.
What is obfuscation?
a)
A philosopher known for Obfuscationism
b)
An arrangement or rearrangement of the members of a set into a sequence or linear order
c)
The state of being unknown, inconspicuous, or unimportant
d)
The art of making something obscure, unclear, or unintelligible
18.
What does TCP stand for?
a)
Technical Cipher Program
b)
Trichloramine Phosphate
c)
Transmission Control Protocol
d)
Testifying to Congress in Private
19.
Which of the following is NOT considered when implementing cryptographic techniques?
a)
Power consumption
b)
Resiliency
c)
Economic status
d)
Latency
20.
What is confidentiality?
a)
Secrecy
b)
Informant
c)
Smugness
d)
Blurriness
21.
What is integrity?
a)
Having strong moral principles/being honest
b)
Protecting information from being modified by unauthorized parties
c)
A function of which another given function is the derivative
d)
Assurance that a job will be completed without the need for micromanagement
22.
What is authentication?
a)
Unsubstantiation
b)
Testimonial
c)
Declaration
d)
Confirmation
23.
What is the assurance that someone can't dispute a contract or deny the authenticity of their digital signature?
a)
A weight off my shoulders
b)
Intrepidation
c)
Non-repudiation
d)
Adjudication
24.
When planning the implementation of a cryptographic system, what two constraints must be "balanced"?
a)
Encryption and decryption
b)
Resource and security
c)
Time and money
d)
Cipher and key exchange
25.
Which of the following has a weak key?
a)
WEP
b)
WPA
c)
PGP
d)
AES
26.
Which of the following is NOT a cryptography limitation hindered by being too large?
a)
Time
b)
Longevity
c)
Speed
d)
Size
27.
Until a key has been compromised, there is no need to update to a more secure one.
a)
True
b)
False
28.
If the creator of the key has known preferences, which of the following cryptography limitations must be considered?
a)
Size
b)
Predictability
c)
Reuse
d)
Speed
29.
Which of the following attacks is a concern if keys are reused?
a)
MitM
b)
Impersonation
c)
Passive decryption
d)
All of the above
30.
______ refers to the randomness collected by a system for use in algorithms that require random data.
a)
Chaos
b)
Entropy
c)
Enthalpy
d)
Order
31.
______ is the concept that information which has been converted and stored in binary digital form is subject to the laws of the country in which it is located.
a)
Bureaucracy
b)
Government intervention
c)
Data sovereignty
d)
Binary ownership
32.
Data that is on a computer and is being accessed/processed is considered to be ______.
a)
Data-in-Transit
b)
Data-in-Use
c)
Data-at-Rest
d)
Data-in-Storage
33.
Data that is moving on a network is considered to be ______.
a)
Data-in-Transit
b)
Data-in-Use
c)
Data-at-Rest
d)
Data-in-Storage
34.
Data that is on a driver or server being stored for later access is considered to be ______.
a)
Data-in-Transit
b)
Data-in-Use
c)
Data-at-Rest
d)
Data-in-Storage
35.
Which of the following is PII?
a)
Date of birth
b)
SSN
c)
Name
d)
All of the above
36.
Personal information that includes your health status or payments for healthcare is known as ______.
a)
Protected Health Information
b)
Protected Health Events
c)
Protected Health Records
d)
Protected Health Birth Information
37.
What does DLP stand for?
a)
Data Loss Preventor
b)
Data Liability Prevention
c)
Database Loss Prevention
d)
Data Loss Prevention
38.
A DLP technique that filters which files go into/out of cloud is called a(n) ______.
a)
Web-based DLP technique
b)
File-based DLP technique
c)
Cloud-based DLP technique
d)
Record-based DLP technique
39.
A DLP technique that filters or limits different attachment types is called a(n) ______.
a)
Web-based DLP technique
b)
Email DLP technique
c)
MX Record DLP technique
d)
Communication DLP technique
40.
Preventing the use of USB storage devices on a computer can be considered a DLP technique.
a)
True
b)
False
41.
A ______ is a security tool that will randomly send information into the input of an application.
a)
Sniffer
b)
Fuzzer
c)
Buffer
d)
Sizzler
42.
Validating inputs will help prevent which type of attack?
a)
XSS
b)
XSRF
c)
CSRF
d)
All of the above
43.
______ are defined functions that are stored in a database engine.
a)
Database functions
b)
Stored procedures
c)
Database algebra
d)
Database arithmetic
44.
What uses asymmetric encryption to digitally sign an executable?
a)
Code signing
b)
Encryption
c)
Decryption
d)
Digitizer signature
45.
What is dead code?
a)
An attack that disables critical components
b)
Code that when run will terminate an OS
c)
Code which is executed but whose result is never used in any other computation
d)
Code that infiltrates a bank account and transfers all money into another ghost account
46.
Server-side validation and client-side validation can not be used together.
a)
True
b)
False
47.
What can memory manipulation be used for?
a)
Controlling a person to give you access to their account
b)
Accessing parts of an application you shouldn't have access to
c)
Confusing a person into thinking they have wrong credentials
d)
None of the above
48.
Attackers exploit ______ issues by overwriting the memory of an application.
a)
Buffer overflow
b)
RAM exhaustion
c)
CPU throttling
d)
Bottlenecking
49.
What does SDK stand for?
a)
Super Donkey Kong
b)
Software Developers Kit
c)
Software Decipher Kit
d)
Software Decryption Kit
50.
What is it called when two hashes are the same?
a)
Mathematical Error
b)
Overflow
c)
Race Condition
d)
Collision
51.
What is the Birthday problem?
a)
Considers the probability that in a set of N randomly chosen people, two people will have the same birthday
b)
Considers the probability that in a set of N randomly chosen people, another person will share your birthday
c)
Considers the probability that in a set of N uniformly chosen people, two people will have the same birthday
d)
Considers the probability that in a set of N randomly chosen people, 50% of the people will have the same birthday
52.
How are passwords typically stored within a database?
a)
Hashed
b)
Encrypted
c)
Encoded
d)
In Binary Format
53.
How many characters long are MD5 hashes?
a)
16
b)
32
c)
64
d)
128
54.
What is a brute force attack?
a)
Physically breaking into a secure repository to steal information
b)
Attempting to randomly guess based on some probability what the right answer would be
c)
Trying all possible combinations and permutations until the right guess works
d)
Use a logarithmic algorithm to reduce the numbers of potential guesses before selecting from the options available
55.
Which hashing algorithm was first published in 1992 and had collisions verified in 1996?
a)
MD1
b)
MD3
c)
MD5
d)
MD7
56.
One way to help strengthen a hashed password to ______.
a)
Use multiple passwords
b)
Salt the password
c)
Save passwords in a file
d)
Encrypt passwords
57.
A ______ attack is when a malicious actor is able to attack a system by using older version of software.
a)
downgrade
b)
prehistoric
c)
pen and paper
d)
precursory