Font size
WorksheetsRecap Assignment 1 and 2
Total questions: 97
Worksheet time: 48mins
What is phishing?
Software which is specifically designed to disrupt, damage, or gain authorized access to a computer system
Attempting to obtain sensitive information, often for malicious reasons, by disguising as a trustworthy entity in an electronic communication.
Standalone malware computer program that replicates itself in order to spread to other computers. Often, it uses a computer network to spread itself, relying on security failures on the target computer to access it.
Malicious Code
Computer Worm
Anti Virus Software
Computer Virus
A type of malicious software program (malware) that, when executed, replicates by reproducing itself (copying its own source code) or infecting other computer programs by modifying them.
Computer Virus
Computer Worm
MyDoom
Malicious Code
Which are benefits of a firewall?
Blocks access to a network from unauthorised sources
Helps to prevent CPU overheating
Helps to protect confidential information on your computer
Avoids all viruses entering a system
Can give you reports on any threats to the system
What is "a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data. This includes breaches that are the result of both accidental and deliberate causes?"
Employee Actions
Data Theft
Accidental Loss
Unintentional disclosure or damage to data
What "happens when data is destroyed, corrupted, or made unreadable by software applications and users?"
Employee Actions
Data Theft
Accidental Loss
Unintentional disclosure or damage to data
Natural events (floods), other environmental conditions (heavy rain, extreme temperatures), terrorist actions and other disasters are examples of what?
Internal Threats
External Threats
Physical Threats
Social Engineering and Software Driven threats
What is "a type of malware that downloads onto a computer disguised as a legitimate program?"
Malware
Virus
Worm
Trojan Horse
Select 2 examples of internal threats.
Data theft
Accidental loss
Email phishing Threats
Pigbacking
Select 2 examples of external threats.
Malware attack
Accidental loss
Hacking
Laptop theft
What is a Virus?
a program that copies and inserts itself into programs running on your computer system
standalone programs that spread through tunneling through a network and exploiting security holes in systems to gain access
a harmful program that masquerades as a legitimate software application
a malicious program that monitors user activity for the purpose of stealing personal information
What is a Worm?
a small animal that lives in the earth
a program that copies and inserts itself into programs running on your computer system
standalone programs that spread through tunneling through a network and exploiting security holes in systems to gain access
a malicious program that monitors user activity for the purpose of stealing personal information
What is a Trojan?
a program that copies and inserts itself into programs running on your computer system
a malicious program that monitors user activity for the purpose of stealing personal information
a harmful program that masquerades as a legitimate software application
a horse
What is Spyware?
MI6 computer software
a malicious program that monitors user activity for the purpose of stealing personal information
standalone programs that spread through tunneling through a network and exploiting security holes in systems to gain access
a program that copies and inserts itself into programs running on your computer system
Which of these are Malware? (Select all that apply)
Viruses
Worms
Firewalls
Trojans
What is a hacker?
A person charged with monitoring computer software
Someone who steals from IT stores
Someone who gains unauthorized access to a computer system
What is Phishing?
An activity that involves catching fish on a hook
An Olympic sport
A method of stealing personal information
Select examples of Accidental Damage
Dropping a device and breaking it
Overwriting files
Spilling liquid onto it
All of the above
What is the purpose of a keylogger?
To track and record keystrokes on a computer
To enhance internet speed
To prevent malware infections
To improve file storage efficiency
What is the term for a network of computers infected with malware and controlled by a single entity for malicious purposes?
Botnet
Firewall
Encryption network
Spy network
What is a "zero-day" vulnerability in the context of malware?
A software bug that occurs once every 24 hours
A security flaw that is exploited before the software developer releases a patch
A type of antivirus software
A virus that spreads rapidly within a day
Which are ways that an operating system can increase system security?
Offering the use of password protection
Different levels of user access
Keeping software updated
Disk Defragmentation
The use of virtual memory
What are benefits of a firewall?
Blocks access to a network from unauthorised sources
Helps to prevent CPU overheating
Helps to protect confidential information on your computer
Avoids all viruses entering a system
Can give you reports on any threats to the system
What are 2 internal threats to a company?
Staff passing confidential information on
Users overriding security controls
Misuse of equipment
Getting hacked and viruses
Which of the following are physical protection from threats?
firewall
CCTV
fences
locks
encryption
Encryption which uses different keys to encrypt and decrypt the data is known as (a) encryption.
In a school, user access levels are used to...
Allow students to open files from shared drives, but not to edit or delete them
Prevent students from installing games on their computers
Stop teachers from deleting software
Prevent students from accessing games on the internet
Which of these are the two biggest software vulnerabilities?
Unpatched software
Not updating your antivirus
Having a weak password
Installing programs off the internet
Falling for phishing scams
What is meant by the term 'white hat hacker'?
Illegal hacker – intent on doing harm, stealing for personal gain e.g. taking credit card details.
Doesn’t necessarily steal but may access IT systems without permission which is still illegal.
Ethical hacker – paid by companies to test their systems for vulnerabilities.
What is meant by a 'grey hat hacker'?
Doesn’t necessarily steal but may access IT systems without permission which is still illegal.
Illegal hacker – intent on doing harm, stealing for personal gain e.g. taking credit card details.
Ethical hacker – paid by companies to test their systems for vulnerabilities.
What is meant by a 'black hat hacker'?
Doesn’t necessarily steal but may access IT systems without permission which is still illegal.
Illegal hacker – intent on doing harm, stealing for personal gain e.g. taking credit card details.
Ethical hacker – paid by companies to test their systems for vulnerabilities.
What is the biggest cyber security threat?
The human factor
Malware of any kind
Unencrypted communication
Theft of mobile devices
Which UK law gives you the right to access the data an organisation stores on you?
The Freedom of Information Act
The Computer Misuse Act
The Data Protection Act
The Copyright, Designs, and Patents Act
What is the difference between a threat, vulnerability, and attack?
C. A threat is a deliberate act, a vulnerability is a possibility of an attack, and an attack is a weakness
B. A threat is a weakness, a vulnerability is a possibility of an attack, and an attack is a deliberate act
D. A threat is a weakness, a vulnerability is a deliberate act, and an attack is a possibility of an attack
A. A threat is a possibility of an attack, a vulnerability is a weakness, and an attack is a deliberate act
What is the main difference between a virus, worm, and trojan horse?
C. Viruses need human intervention, worms need human intervention, trojan horse can replicate independently
B. Viruses can replicate independently, worms need human intervention, trojan horse does not need to be attached to an executable file
D. Viruses can replicate independently, worms can replicate independently, trojan horse needs human intervention
A. Viruses need human intervention, worms can replicate independently, trojan horse does not need to be attached to an executable file
What is the purpose of a backdoor malware?
B. To gain remote access to the computer
D. All of the above
A. To exploit the operating system's vulnerability
C. To modify access levels and system files
What is it called when you log into the system and it has been set up for what you can and cannot see.
Access Rights
Access Path
Ethics Access
Phishing emails are an example of a social engineering threat to IT systems. What are two possible goals of a phishing email?
To infect your computer with malware, so confidential data can be stolen later.
To delete all your confidential data on your hard disk drive.
To get users to respond with confidential data.
To launch a denial of service attack to take down a server storing confidential data.
Which of the following is a common reason individuals perform hacking attacks?
Furthering a political agenda.
Stealing personal data for bank fraud.
Accessing confidential information.
All of the above.
Operational Loss is..?
Damages of the operating capability of an organisation.
The loss of trust and lowered opinion of people to a business.
Where product designs or trade secrets are stolen.
Damages to the wealth of an organisation.
Reputation Loss is..?
Damages to the wealth of an organisation.
Where product designs or trade secrets are stolen.
The loss of trust and lowered opinion of people to a business.
Damages of the operating capability of an organisation.
Property loss is..?
Damages to the wealth of an organisation.
Where product designs or trade secrets are stolen.
The loss of trust and lowered opinion of people to a business.
Damages of the operating capability of an organisation.
Financial Loss is..?
Damages to the wealth of an organisation.
Where product designs or trade secrets are stolen.
The loss of trust and lowered opinion of people to a business.
Damages of the operating capability of an organisation.
Cyber security threats tend to not change often.
True
False
What is a system vulnerability?
A weak point in a system that can be exploited
A strong point in a system that cannot be exploited
A point in a system that is not important
A point in a system that is difficult to exploit
Which of the following is a mobile device vulnerability?
Outdated system software
Strong security measures
Regular system updates
Limited access to sensitive data
