wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

social engineering

Total questions: 63

Worksheet time: 47mins

Name
Class
Date
1.

A set of methods used by cyber criminals to deceive individuals into handing over information that they can use for fraudulent purposes’ is a definition of what?

a)

Impersonatin

b)

Shoulder Surfing

c)

Phishing

d)

Social Engineering

2.

What would be a key indicator of a phishing email?

a)

a new email from a friend arranging a meet

b)

unexpected email with request for information

c)

work email from a client with personal attachments

d)

a email from family with a picture

3.

What is one way somebody could protect themselves from shoulder surfing?

a)

share your pin with someone you trust

b)

create a pin that is easy to remember

c)

have a pin that is the same as your friends

d)

be aware of who is around you

4.

What is a common way to spot a phishing email?

a)

New email

b)

Lots of pictures

c)

Names of people you know

d)

Email address it is sent from

5.

While waiting in the lobby of your building for a guest, you notice a man in a red shirt standing close to a locked door with a large box in his hands. He waits for someone else to come along and open the locked door and then proceeds to follow her inside. What type of social engineering attack have you just witnessed?

a)

Impersonation

b)

Phishing

c)

Boxing

d)

Tailgating

6.

 A user in your organization contacts you to see if there’s any update to the “account compromise” that happened last week. When you ask him to explain what he means, and the user tells you he received a phone call earlier in the week from your department and was asked to verify his user ID and password. The user says he gave the caller his user ID and password. This user has fallen victim to what specific type of attack?

a)

Spear phishing

b)

Vishing

c)

Phishing

d)

Replication

7.

Coming into your office, you overhear a conversation between two security guards. One guard is telling the other she caught several people digging through the trash behind the building early this morning. The security guard says the people claimed to be looking for aluminum cans, but only had a bag of papers—no cans. What type of attack has this security guard witnessed?

a)

Spear phishing

b)

Pharming

c)

Dumpster diving

d)

Rolling refuse

8.

How are people targeted through Phishing?

a)

via Email

b)

on Websites

9.

Social Engineering takes advantage of which security flaw in a computer system?

a)

The User

b)

The Network

c)

The Password

10.

What cyber scam is described by this statement - "a cyber attack intended to redirect a website's traffic to another, fake site."

a)

Phishing

b)

Pharming

c)

DNS Hijacking

11.

What cyber scam is described by this statement - " fraudulent attempt to obtain sensitive information such as usernames, passwords and credit card details by disguising as a trustworthy entity in an electronic communication."

a)

Phishing

b)

Pharming

c)

DNS Hijacking

12.

How are people targeted through Pharming?

a)

via Email

b)

on Websites

13.

True or False: You can always tell the difference between a real website and a fake pharming website?

a)

true

b)

false

14.
Select the Phishing Schemes that apply to the following email:
From:  no_reply@emailinternet.chase.com
Subject:  Account Status
Attention US Bank Customer,
Due to a recent security check on your account, we require you to confirm your details.  Failure to do so within 24 hours will lead to account suspension.  Sorry for the inconveenince.
Click here to confirm your account

Regards,
US Bank Online Customer Service
This email has been sent by US Bank.
                                                         
a)
Generic greeting & Link to email
b)
Sense of urgency & Spelling errors
c)
Need to verify account info
d)
ALL of the previous choices are in the email.
15.

What is the term for making a phone call or e-mail that appear to be from somebody else instead of the real sender?

a)

Hoaxing

b)

Spoofing

c)

Blagging

d)

Pancaking

e)

Defenestrating

16.

What is spear phishing

a)

attacks that are carried out over the phone

b)

attacks that are targeted at a specific company or individual

c)

attacks that occur over text messaging

d)

attacks that capture user info through a fake login page

17.

What is phishing?

a)

Attack that uses human interactions (social skills) to obtain info about an organization and computer systmes

b)

Attack that floods a network and servers with traffic to overload resources and bandwidth

c)

Attack where a hacker inserts malicious code into a website to force it to return protected info

d)

Attack that uses emails to ask form personal info by posing as a trustworthy organization

18.

Coming into your office, you overhear a conversation between two security guards. One guard is telling the other she caught several people digging through the trash behind the building early this morning. The security guard says the people claimed to be looking for aluminum cans, but only had a bag of papers—no cans. What type of attack has this security guard witnessed?

a)

Spear phishing

b)

Pharming

c)

Dumpster diving

d)

Rolling refuse

19.

 A user in your organization contacts you to see if there’s any update to the “account compromise” that happened last week. When you ask him to explain what he means, and the user tells you he received a phone call earlier in the week from your department and was asked to verify his user ID and password. The user says he gave the caller his user ID and password. This user has fallen victim to what specific type of attack?

a)

Spear phishing

b)

Vishing

c)

Phishing

d)

Replication

20.

Social Engineering takes advantage of which security flaw in a computer system?

a)

The User

b)

The Network

c)

The Password

21.

What is pretexting?

a)

Pretending to be someone else to gain access to information, either in person or by phone.

b)

Planning an important text message before sending.

22.

What is shouldering (or shoulder surfing) in social engineering?

a)

Impersonating a trusted authority figure

b)

Using deceptive emails to trick individuals

c)

Physically observing someone entering confidential information

d)

None of the above

23.
An act of pretending to be another person for the purpose of entertainment or fraud
a)
Impersonation
b)
Logic Bomb
c)
Adware
24.

Phish or No Phish?

a)

Phish

b)

No Phish

25.

Phish or No Phish?

a)

Phish

b)

No Phish

26.

Phish or No Phish?

a)

Phish

b)

No Phish

27.

Phish or No Phish?

a)

Phish

b)

No Phish

c)

Not Sure

28.

Phish or No Phish?

a)

Phish

b)

No Phish

29.

Which two of the following e-mail addresses would you rate as trust users from?

a)

@gmail.com

b)

@trafford.gov.uk

c)

@oxfam.charity.org

d)

@stretfordgrammar.com

30.

What is quid pro quo?

a)

Promising a free gift or service in exchange for information.

b)

An ancient Greek game.

31.

What is tailgating?

a)

Following an employee into a secure location.

b)

Hanging out with friends before the big game.

32.

What is pretexting?

a)

Pretending to be someone else to gain access to information, either in person or by phone.

b)

Planning an important text message before sending.

33.

Phish or No Phish?

a)

Phish

b)

No Phish

34.

Which of these is not a good password?

a)

Has minimum 12 Characters

b)

isn’t a Dictionary Word or Combination of Dictionary Words

c)

includes Numbers, Symbols, Capital Letters, and Lower-Case Letters

d)

Use your birthday

35.

Which passwords below would be considered strong?

a)

abc123

b)

John007

c)

W@lk+hed0g

d)

qwerty000

36.

Phish or No Phish?

a)

Phish

b)

No Phish

37.

Phish or No Phish?

a)

Phish

b)

No Phish

38.

Phish or No Phish?

a)

Phish

b)

No Phish

39.

Phish or No Phish?

a)

Phish

b)

No Phish

40.

Phish or No Phish?

a)

Phish

b)

No Phish

c)

Not Sure

41.

Phish or No Phish?

a)

Phish

b)

No Phish

42.

Phish or No Phish?

a)

Phish

b)

No Phish

43.

Phish or No Phish?

a)

Phish

b)

No Phish

44.

Phish or No Phish?

a)

Phish

b)

No Phish

45.

Phish or No Phish?

a)

Phish

b)

No Phish

c)

Not Sure

46.

Phish or No Phish?

a)

Phish

b)

No Phish

47.

Phish or No Phish?

a)

Phish

b)

No Phish

48.

Phish or No Phish?

a)

Phish

b)

No Phish

49.

Phish or No Phish?

a)

Phish

b)

No Phish

50.

Phish or No Phish?

a)

Phish

b)

No Phish

c)

Not sure

51.

What is Phishing?

a)

Someone trying to log your keys

b)

someone sending you a virus

c)

Someone pretending to be a legitimate business

52.

The best way to avoid phishing is to

a)

be skeptical about any online requests for personal information.

b)

not share your email address.

c)

stay off social media.

d)

Use the same password for all accounts

53.

Which passwords below would be considered strong?

a)

abc123

b)

John007

c)

W@lk+hed0g

d)

qwerty000

54.

Which is not a type of phishing

a)

Vishing

b)

Spear Phishing

c)

Smishing

d)

Wishing

55.

Which two of the following e-mail addresses would you rate as trust users from?

a)

@gmail.com

b)

@trafford.gov.uk

c)

@oxfam.charity.org

d)

@stretfordgrammar.com

56.

Which of the following people should you share your password with when they ask?

a)

Network managers

b)

Call centre workers

c)

Security experts

d)

Company managers

e)

Nobody

57.

Making phone calls to trick people into giving up information is known as...

a)

Vishing

b)

Phishing

c)

Pharming

58.

Social Engineering takes advantage of which security flaw in a computer system?

a)

The User

b)

The Network

c)

The Password

59.

What cyber scam is described by this statement - " fraudulent attempt to obtain sensitive information such as usernames, passwords and credit card details by disguising as a trustworthy entity in an electronic communication."

a)

Phishing

b)

Pharming

c)

DNS Hijacking

60.

What is pretexting?

a)

Pretending to be someone else to gain access to information, either in person or by phone.

b)

Planning an important text message before sending.

61.

What is baiting?

a)

A real-world ‘Trojan Horse’ that uses physical media, such as a flash key, and relies on the curiosity of the victim.

b)

Preparing to fish.

62.

What is tailgating?

a)

Following an employee into a secure location.

b)

Hanging out with friends before the big game.

63.

What is quid pro quo?

a)

Promising a free gift or service in exchange for information.

b)

An ancient Greek game.