wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Blue Team Assesment

Total questions: 17

Worksheet time: 17mins

Name
Class
Date
1.

Why are log files important for an organization to detect and investigate cyber incidents?

a)

For performance monitoring

b)

For backups

c)

To detect and respond to security incidents

d)

To archive the organization's history

2.

Which files contains user's password hashes on Linux?

a)

/var/log/auth.log

b)

/etc/passwd

c)

/etc/shadow

d)

iptables.log

3.

What is the function of a firewall?

a)

Cleans malware

b)

Monitors and controls network traffic

c)

Speeds up data transfer between computers

d)

Provides email security

4.

What does an "Intrusion Detection System (IDS)" monitor to prevent unauthorized access to a network?

a)

Network traffic and detects attacks

b)

finds missing patches

c)

Encrypts email messages

d)

Implements system updates

5.

Why is incident response important in cybersecurity?

a)

For training purposes

b)

To update web browsers

c)

To respond quickly to cyberattacks

d)

To increase network speed

6.

What does network security monitoring help organizations track?

a)

System performance

b)

User activities

c)

Log data

d)

Weather conditions

7.

What type of application attack is SQL injection an example of?

a)

DoS attack

b)

Ransomware attack

c)

XSS (Cross-Site Scripting) attack

d)

Database security attack

8.

IPS stands for (a)  

9.

Which one is connection oriented protocol?

a)

TCP

b)

UDP

10.

DNS is a OSI layer 4 protocol. T/F

a)

True

b)

False

11.

Type a few Web Application Attacks that you know..

4 lines
12.

Type some OSINT tool names that you know.

4 lines
13.

Which one is a web protocol?

a)

SSH

b)

TELNET

c)

DNS

d)

HTTP

14.

If you've installed Anti-Virus solution you're safe.(T/F)

a)

True

b)

False

15.

Regarding the picture, can you trust this e-mail? and why?

4 lines
16.

Let's say you've received an alert containing the following URL.

http:/website.com/displayPicture?filenamE=../../../../etc/passwd
Which
of the following BEST describes the attack?

a)

SQL injection

b)

Cross Site Scripting

c)

Directory Traversal

d)

DDoS Attack

17.

Which protol map domain names to IP address?

a)

ARP

b)

SMTP

c)

DNS

d)

HTTP