wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Hacker Academy - Ethical Hacking Quiz

Total questions: 100

Worksheet time: 2hrs 40mins

Name
Class
Date
1.
a)

Maintaining access

b)

Gaining access

c)

Reconnaissance

d)

Scanning

2.

How many phases are there in hacking?

a)

4

b)

5

c)

7

d)

6

3.

____________ is the information gathering phase in ethical hacking from the target user.

a)

Reconnaissance

b)

Scanning

c)

Gaining access

d)

Maintaining access

4.

Which of the following is not a reconnaissance tool or technique for information gathering?

a)

NMAP

b)

Hping

c)

whois lookup

d)

Nexpose

5.

There are ______ subtypes of reconnaissance.

a)

2

b)

3

c)

4

d)

5

6.

Which of the following is an example of active reconnaissance?

a)

Searching public records

b)

Telephone calls as a help desk or fake customer care person

c)

Looking for the target’s details in the database

d)

Searching the target’s details in paper files

7.

________________ is a component of the reconnaissance stage that is used to gather possible information for a target computer system or network.

a)

Fingerprinting

b)

3D printing

c)

Footprinting

d)

Data printing

8.

Which of them is not an information source over the internet for target attackers?

a)

Whois

b)

Youtube

c)

Nslookup

d)

Nikto

9.

Spywares can be used to steal _______________ from the attacker’s browser.

a)

browsing history

b)

company details

c)

plug-ins used

d)

browser details

10.

Footprinting is used to collect information such as namespace, employee info, phone number and emails, job details.

a)

True

b)

False

11.

https://whois.domaintools.com a popular site where one can enter a domain name in its search box for finding out how the site was looking at a given date.

a)

True

b)

False

12.

Using spyware is an example of _________ type of information gathering.

a)

active

b)

passive

c)

active & passive

d)

non-passive

13.

Collecting freely available information over the internet is an example of ____________ type of information gathering.

a)

active

b)

passive

c)

active & passive

d)

non-passive

15.

How does a worm infect a computer?

a)

E-mail attachments

b)

Through security loopholes, your computer is not up to date

c)

Suspicious web links

d)

On memory sticks

16.
a)

Attack

b)

Vulnerability

c)

Threat

d)

Exploit

17.
a)

Data Breach

b)

Data infiltration

c)

Information compromise

d)

Data Hack

18.
a)

Scanning

b)

Gaining access

c)

Reconnaissance

d)

Maintaining access

19.
a)

Hack

b)

Attack

c)

Offense

d)

Exploit

20.
a)

File Scanner

b)

Network Scanner

c)

Code Scanner

d)

Malware Scanner

21.

Which of the following refers to someone who has a conviction?

a)

Someone who has committed a crime

b)

Someone who witnessed a crime

c)

Someone who has been found guilty of a crime

d)

Someone who is caught in the act of committing a crime

22.

Two CDs containing details of the last 500 employee sickness records has gone missing. These CD's were not encrypted.


Which one of the following laws has been broken?

a)

Police and Justice Act

b)

Computer Misuse Act

c)

Regulation of Investigatory Powers Act

d)

Data Protection Act

23.

Which one of the following is the name of the software that is designed to record every action which is typed with the aim of stealing sensitive data?

a)

Trojan horse

b)

Worm

c)

Keylogger

d)

Virus

24.

Which one of the following defines the various programs used to communicate instructions to a computer and connected devices

a)

Operating system software

b)

Hardware devices

c)

Office application software

25.

Having a password that consists of a combination of letters, both uppercase and lowercase, numbers and symbols is known as which of the following?

a)

Secure password

b)

Solid password

c)

Keylogger password

d)

Trojan password

26.

What does RIPA stand for?

a)

Regulation of Investigatory Powers Act

b)

Regulation of Information Powers Act

c)

Regulation of Investigatory Protection Act

d)

Recovery of Investigatory Powers Act

e)

Recovery of Information Powers Act

27.

Which of the following laws prevents unlawful and authorised interception of electronic communication?

a)

Regulation of Investigatory Powers Act

b)

Regulation of Investigation Act

c)

Regulator of Investigation Powers Act

d)

Regulating of Investigations Act

28.

Hackers who engage in hacking for illegal purposes are known as which of the following?

a)

Red hat hacker

b)

Black hat hacker

c)

Blue hat hacker

d)

White hat hacker

29.

Your personal device is infected with a keylogger.


Which of the following explains the meaning of this?

a)

A small program designed to cause trouble by gaining access to your device. It can copy your personal data or slow your device down.

b)

A person who tries to get into another persons device without consent.

c)

It will gather the users activity such as internet browsing habits and could steal sensitive data.

d)

Every action which is typed is recorded with the aim of stealing sensitive data.

30.

Which one of the following laws extends police powers and grants the home office greater control over operational policing?

a)

Police and Justice Act

b)

Police and Home Office Act

c)

Data Protection Act

d)

Data Police Investigation Act

31.

Your personal device is infected with spyware.


Which of the following explains the meaning of this?

a)

It will gather users activity such as internet browsing habits and could steal sensitive information.

b)

A person who gains remote control over another persons device without consent.

c)

Files are altered or deleted without permission.

d)

Every action which is typed is recorded with the aim of stealing sensitive data.

32.

When paying for products online it is best to check the website starts with the protocol HTTPS and shows a padlock.

What is this known as?

a)

Firewall

b)

Security lab

c)

Secure Socket Layer

d)

Encryption

33.

A banking managers laptop has been stolen from his car. The laptop contained information about personal bank accounts belonging to high profile people, that had not been encrypted.


Which one of the following laws has been broken?

a)

None

b)

Computer Misuse Act

c)

Regulation of Investigatory Powers Act

d)

Data Protection Act

34.

Which of the following refers to someone who is the defendant?

a)

The person who has committed a crime committed against them

b)

The person who witnessed a crime

c)

The lawyer who is defending a person in court

d)

The person being accused of a crime

35.
What is the purpose of anti-virus software?
a)
To make chocolate
b)
To prevent hackers from accessing the network
c)
To block unauthorised connections to the network
d)
To prevent a virus from attacking the network
36.

What is a worm?

a)

A virus that replicates itself through computer networks

b)

A virus that blocks device access until money is paid

c)

A program that will remember your account details, such as name and login details, the next time you visit a website

d)

Software the pretends to be a useful program but is actually carrying out hidden, harmful activity

37.

What is a trojan horse?

a)

A virus that replicates itself through computer networks

b)

A virus that blocks device access until money is paid

c)

A program that will remember your account details, such as name and login details, the next time you visit a website

d)

Software the pretends to be a useful program but is actually carrying out hidden, harmful activity

38.

What does GDPR stand for?

a)

Great Danes Performance Ratings

b)

General Data Protection Records

c)

General Disclosure Protection Regulations

d)

General Data Protection Regulation

39.

Which law is broken if you buy a pirate copy of a DVD?

a)

The Data Protection Act

b)

The Copyright, Designs and Patents Act

c)

Freedom of information Act

d)

Computer Misuse Act

40.
What type of things can be classed as computer misuse?
a)
Looking at personal emails during work time
b)
Sending a joke on the work email to everyone in the system
c)
Using another member of staffs PC when they have left it unlocked
d)
Using a work computer to buy personal items
41.

Code injection is a form of attack in which a malicious user:

a)
  1. Inserts text into a data field that gets interpreted as code

b)
  1. Gets the server to execute arbitrary code using a buffer overflow

c)
  1. Inserts additional code into the JavaScript running in the browser

d)
  1. Gains access to the codebase on the server and inserts new code

42.

Sid is a judge for a programming contest. Before the code reaches him it goes through arestricted OS and is tested there. If it passes, then it moves onto Sid. What is this middle step called?

a)
  1. Fuzzy-testing the code


b)
  1. Third party running the code

c)
  1. Sandboxing the code


d)
  1. String validating the code

43.

Which of the following act requires employer's standard national numbers to identify them onstandard transactions?

a)
  1. SOXIT

b)
  1. HIPAA

c)
  1. DMCA

d)
  1. PCI-DSS

44.

Which of the following is an NMAP script that could help detect HTTP Methods such as GET,POST, HEAD, PUT, DELETE, TRACE?

a)
  1. http-git

b)
  1. http-headers

c)
  1. http enum

d)
  1. http-methods

45.

What is the process of logging, recording, and resolving events that take place in anorganization?

a)
  1. Incident Management Process

b)
  1. Security Policy

c)
  1. Internal Procedure

d)
  1. Metrics

46.

Ethical Hacking can be called as

a)

White Hat Hacking

b)

Black hat hacking

c)

Attacking systems

d)

none

47.

How can you define coding ?

a)

Code tells a computer what actions to take

b)

sometimes called computer programming

c)

Communication medium between user and computer

d)

All Above

48.

Which OS (Operating System) was used by MOHAN SIR in practical demonstration ?

a)

Windows OO

b)

Apple iOS

c)

Kali Linux

d)

Ubuntu OS

49.

Do you think CODING is important for ethical hacking ?

a)

YES

b)

NO

50.

Syntax of Python to execute simple blocks

a)

print("Hello, World!")

Hello, World!

b)

<Python> Hello world <?python>

c)

$#(pt.r^*)@ pthon.

d)

All are correct

51.

Extension for python code file

a)

.py

b)

.ptn

c)

.python

d)

.pdf

52.

Name of the organization which provided you this FREE WORKSHOP ?

(a)  

53.

Ethical hacking is good to learn because..

a)

The future needs more cyber experts

b)

The future is computer world

c)

Both

d)

NONE

54.

Is Python case sensitive when dealing with identifiers?

a)

yes

b)

no

c)

machine dependent

d)

none

55.

What is the answer to this expression, 22 % 3 is?

a)

7

b)

1

c)

0

d)

5

56.

Ransomware...

a)

Erases all files in your computer

b)

pops up images of cats on your screen

c)

encrypts files in your computer and asks for money to decrypt them

d)

changes your operative system's language and mocks you

57.

I.O.T means...

a)

Interweb of this

b)

Internet on tanks

c)

Internet over time

d)

Internet of things

58.

Reconnaissance is a passive stage during an attack

a)

True

b)

False

59.

The first three phases of an attack in order are:

a)

Scan, Recon, Exploit

b)

Recon, Scan, Exploit

c)

Exploit, Recon, Scan

d)

Scan, Exploit, Recon

60.

One of the most common O.S with lots of hacking tools is named

a)

Kali

b)

Hades

c)

Shiva

d)

Satan

61.

The framework developed by the MITRE Corporation to assign scores to vulnerabilities is

a)

VCSS

b)

VCE

c)

CVE

d)

CVSS

62.

Regarding the evolution of hacking

a)

First hackers were motivated by the money.

b)

Last phase is where APTs appeared.

c)

Insiders can only perform low complexity attacks.

d)

Crackers from second phase only use zero day attacks.

63.

Regarding the different kinds of tests performed by ethical hackers to prevent their customers

a)

Robots are pentesters and pirates are automated scans

b)

Ninjas are Red Teamers and pirates are automated scans

c)

Pentesters are pirates and Ninjas are Red teamers

d)

Pentesters are zombies and Red teamers are warriors

64.

The C.I.A triad stands for

a)

Confidence, Intelligence, Agility

b)

Central Intelligence Agency

c)

Certified Internal Auditor

d)

Confidentiality, Integrity, Avaliability

65.

You need to have an IP address to be able to communicate using the internet

a)

True

b)

False

66.

The first computer virus that spread all over the internet and caused important economic damages was

a)

The Willis virus

b)

The wannacry ransomware

c)

The Morris Worm

d)

The Bel Air Unicorn

67.

The Ransomware problem is about to be solved by the industry. There are less and less attacks.

a)

True

b)

False

68.

A social engineering attack where the attacker generates a fraudulent email, text, or websites to trick a victim into surrendering sensitive information.

a)

Phishing

b)

Malware

c)

Ransomware

d)

Viruses

69.

Subversive use of computer systems to promote a political/social agenda.

a)

Hacktivist

b)

Industrial Spies

c)

Nation State Hacker

d)

Botnet

70.

Which of the following do Cyber attackers commonly target for fetching IP address of a target or victim user?

a)

ip tracker

b)

emails

c)

websites

d)

webpages

71.

Which of the following acts violate cybersecurity?

a)

Exploit

b)

Attack

c)

Threat

d)

Vulnerability

72.

What is the weakest link in cybersecurity?

a)

Weak encryption

b)

Humans

c)

Short passwords

d)

Systems

73.

Which method of hacking will record all your keystrokes?

a)

Keyhijacking

b)

Keyjacking

c)

Keylogging

d)

Keyboard Monitoring

74.

The fullform of EDR is ______

a)

Endpoint Detection and Recovery

b)

Early Detection and Response

c)

Endpoint Detection and Response

d)

Endless Detection and Recovery

75.

Which of the following is the hacking approach where cyber-criminals design fake websites or pages for tricking or gaining additional traffic?

a)

Pharming

b)

Website-Duplication

c)

Mimicking

d)

Spamming

76.

Word "Cyberspace" was coined by _______

a)

Richard Stallman

b)

William Gibson

c)

Andrew Tannenbaum

d)

Scott Fahlman

77.

An attacker, who is an employee of your firm may _______ to know your your system password.

a)

Do peeping

b)

Perform network jamming

c)

Do shoulder surfing

d)

Steal your laptop

78.

Which of the following can diminish the chance of data leakage?

a)

Steganography

b)

Chorography

c)

Cryptography

d)

Authentication

79.

Which of the following ethical hacking technique is used for determining which operating system (OS) is running on a remote computer?

a)

Operating system fingerprinting

b)

Operating system penetrating testing

c)

Digital-printing

d)

Machine printing

80.

Site-to-Site VPN architecture is also known as ________

a)

Remote connection based VPNs

b)

Peer-to-Peer VPNs

c)

Country-to-Country VPNs

d)

Extranet based VPN

81.

Network enumeration is a finding of _________ or devices on a network.

a)

Hosts

b)

Servers

c)

Network Connection

d)

Cloud Storage

82.

Which of the following is the least strong security encryption standard?

a)

WPA3

b)

WPA2

c)

WPA

d)

WEP

83.

Government hired some highly skilled hackers for providing cyber security for the country or state. These types of hackers are termed as _______.

a)

Nation/State sponsored hackers

b)

CIA triad

c)

Special Hackers

d)

Government Hackers

84.

Which of the following information security technology is used for avoiding browser-based hacking?

a)

Anti-malware in browsers

b)

Remote browser access

c)

Adware remover in browsers

d)

Incognito mode in browser

85.
How does a computer virus infect a pc?
a)
Email attachments
b)
Attached to files on memory sticks
c)
Suspicious web links
d)
All of the above
86.

What is Malware?

a)

Bad computer equipment

b)

Pop up adverts on your computer

c)

Software designed to do harm to a computer

d)

Fake web sites

87.

Do you think that hacking is difficult?

a)

yes

b)

no

88.
What type of ethical hack tests access to the physical infrastructure?
a)
Internal network
b)
Remote network
c)
External network
d)
Physical access
89.
The security, functionality, and ease of use triangle illustrates which concept?
a)
As security increases, functionality and ease of use increase
b)
As security decreases, functionality and ease of use increase
c)
As security decreases, functionality and ease of use decrease
d)
Security does not affect functionality and ease of use
90.
Which type of hacker represents the highest risk to your network?
a)
Disgruntled employees
b)
Black-hat hackers
c)
Gray-hat hackers
d)
Script kiddies
91.
Which of the following is a system, program, or network that is the subject of a security analysis?
a)
Owned system
b)
Vulnerability
c)
Exploited system
d)
Target of evaluation
92.
Who uses their hacking skills for destructive purposes?
a)
Cracker
b)
Ethical hacker
c)
Script kiddie
d)
White-hat hacker
93.
MAC address spoofing is which type of attack?
a)
Encryption
b)
Brute-force
c)
Authentication
d)
Social engineering
94.
a)

Ethical

b)

Unethical

95.
a)

Ethical

b)

Unethical

96.
a)

Ethical

b)

Unethical

97.
a)

Ethical

b)

Unethical

98.

hardware firewalls are built in ______

a)

computers

b)

routers

c)

networks

d)

websites

99.

we need to ______ our data

a)

scan

b)

secure

c)

protect

d)

safe keep

100.

Phishing is cybercrime where an attacker sends emails that appear to be from a ______ source.

a)

trusted

b)

virus

c)

known

d)

phishing