wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Recap Assignment 1 and 2

Total questions: 97

Worksheet time: 48mins

Name
Class
Date
1.
Unsafe IT practice by an employee is an example of what type of security threat?
a)
Internal
b)
External
c)
Physical
2.
If IT equipment is damage intentionally or accidentally is an example of what type of security threat?
a)
Internal
b)
External
c)
Physical
3.

What is phishing?

a)

Software which is specifically designed to disrupt, damage, or gain authorized access to a computer system

b)

Attempting to obtain sensitive information, often for malicious reasons, by disguising as a trustworthy entity in an electronic communication.

4.

Standalone malware computer program that replicates itself in order to spread to other computers. Often, it uses a computer network to spread itself, relying on security failures on the target computer to access it.

a)

Malicious Code

b)

Computer Worm

c)

Anti Virus Software

d)

Computer Virus

5.

A type of malicious software program (malware) that, when executed, replicates by reproducing itself (copying its own source code) or infecting other computer programs by modifying them.

a)

Computer Virus

b)

Computer Worm

c)

MyDoom

d)

Malicious Code

6.
What is the definition of a brute force attack?
a)
Repeatedly trying usernames/passwords to access a system
b)
Physically threatening someone to give up personal information
c)
Physically breaking into a device to hack it
d)
Being a very strong hacker
7.

Which are benefits of a firewall?

a)

Blocks access to a network from unauthorised sources

b)

Helps to prevent CPU overheating

c)

Helps to protect confidential information on your computer

d)

Avoids all viruses entering a system

e)

Can give you reports on any threats to the system

8.

What is "a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data. This includes breaches that are the result of both accidental and deliberate causes?"

a)

Employee Actions

b)

Data Theft

c)

Accidental Loss

d)

Unintentional disclosure or damage to data

9.

What "happens when data is destroyed, corrupted, or made unreadable by software applications and users?"

a)

Employee Actions

b)

Data Theft

c)

Accidental Loss

d)

Unintentional disclosure or damage to data

10.

Natural events (floods), other environmental conditions (heavy rain, extreme temperatures), terrorist actions and other disasters are examples of what?

a)

Internal Threats

b)

External Threats

c)

Physical Threats

d)

Social Engineering and Software Driven threats

11.

What is "a type of malware that downloads onto a computer disguised as a legitimate program?"

a)

Malware

b)

Virus

c)

Worm

d)

Trojan Horse

12.

Select 2 examples of internal threats.

a)

Data theft

b)

Accidental loss

c)

Email phishing Threats

d)

Pigbacking

13.

Select 2 examples of external threats.

a)

Malware attack

b)

Accidental loss

c)

Hacking

d)

Laptop theft

14.

What is a Virus?

a)

a program that copies and inserts itself into programs running on your computer system

b)

standalone programs that spread through tunneling through a network and exploiting security holes in systems to gain access

c)

a harmful program that masquerades as a legitimate software application

d)

a malicious program that monitors user activity for the purpose of stealing personal information

15.

What is a Worm?

a)

a small animal that lives in the earth

b)

a program that copies and inserts itself into programs running on your computer system

c)

standalone programs that spread through tunneling through a network and exploiting security holes in systems to gain access

d)

a malicious program that monitors user activity for the purpose of stealing personal information

16.

What is a Trojan?

a)

a program that copies and inserts itself into programs running on your computer system

b)

a malicious program that monitors user activity for the purpose of stealing personal information

c)

a harmful program that masquerades as a legitimate software application

d)

a horse

17.

What is Spyware?

a)

MI6 computer software

b)

a malicious program that monitors user activity for the purpose of stealing personal information

c)

standalone programs that spread through tunneling through a network and exploiting security holes in systems to gain access

d)

a program that copies and inserts itself into programs running on your computer system

18.

Which of these are Malware? (Select all that apply)

a)

Viruses

b)

Worms

c)

Firewalls

d)

Trojans

19.

What is a hacker?

a)

A person charged with monitoring computer software

b)

Someone who steals from IT stores

c)

Someone who gains unauthorized access to a computer system

20.

What is Phishing?

a)

An activity that involves catching fish on a hook

b)

An Olympic sport

c)

A method of stealing personal information

21.

Select examples of Accidental Damage

a)

Dropping a device and breaking it

b)

Overwriting files

c)

Spilling liquid onto it

d)

All of the above

22.

What is the purpose of a keylogger?

a)

To track and record keystrokes on a computer

b)

To enhance internet speed

c)

To prevent malware infections

d)

To improve file storage efficiency

23.

What is the term for a network of computers infected with malware and controlled by a single entity for malicious purposes?

a)

Botnet

b)

Firewall

c)

Encryption network

d)

Spy network

24.

What is a "zero-day" vulnerability in the context of malware?

a)

A software bug that occurs once every 24 hours

b)

A security flaw that is exploited before the software developer releases a patch

c)

A type of antivirus software

d)

A virus that spreads rapidly within a day

25.
What is the definition of a brute force attack?
a)
Repeatedly trying usernames/passwords to access a system
b)
Physically threatening someone to give up personal information
c)
Physically breaking into a device to hack it
d)
Being a very strong hacker
26.

Which are ways that an operating system can increase system security?

a)

Offering the use of password protection

b)

Different levels of user access

c)

Keeping software updated

d)

Disk Defragmentation

e)

The use of virtual memory

27.

What are benefits of a firewall?

a)

Blocks access to a network from unauthorised sources

b)

Helps to prevent CPU overheating

c)

Helps to protect confidential information on your computer

d)

Avoids all viruses entering a system

e)

Can give you reports on any threats to the system

28.
When thieves go searching through dumpsters, trash cans, recycling bins, and even trash heaps at the landfill to find personal information.
a)
Pharming
b)
Credit Card Fraud
c)
Dumpster Diving
d)
Phishing
29.
A form of identity theft when thieves create fake websites designed to look like a bank or online store and then trick people out of account or login information.
a)
Social Engineering
b)
Skimming
c)
Phishing
d)
Pharming
30.
A protocol used by secure websites that protects your personal information when making online purchases or entering your credit card information.
a)
Secure Hypertext Protocol (HTTPS)
b)
Spam
c)
Spyware
d)
Antivirus
31.
Junk mail sent by advertisers that is sometimes used in identity theft scams.
a)
Spam
b)
Antivirus
c)
Spyware
d)
Personal Information
32.
When a thief watches a person punch in a credit card number, debit card pin, or listens in on private conversations to get personal information.
a)
Identity Theft
b)
Credit Card Fraud
c)
Dumpster Diving
d)
Shoulder Surfing
33.

What are 2 internal threats to a company?

a)

Staff passing confidential information on

b)

Users overriding security controls

c)

Misuse of equipment

d)

Getting hacked and viruses

34.

Which of the following are physical protection from threats?

a)

firewall

b)

CCTV

c)

fences

d)

locks

e)

encryption

35.

Encryption which uses different keys to encrypt and decrypt the data is known as (a)   encryption.

36.

In a school, user access levels are used to...

a)

Allow students to open files from shared drives, but not to edit or delete them

b)

Prevent students from installing games on their computers

c)

Stop teachers from deleting software

d)

Prevent students from accessing games on the internet

37.

Which of these are the two biggest software vulnerabilities?

a)

Unpatched software

b)

Not updating your antivirus

c)

Having a weak password

d)

Installing programs off the internet

e)

Falling for phishing scams

38.

What is meant by the term 'white hat hacker'?

a)

Illegal hacker – intent on doing harm, stealing for personal gain e.g. taking credit card details.

b)

Doesn’t necessarily steal but may access IT systems without permission which is still illegal.

c)

Ethical hacker – paid by companies to test their systems for vulnerabilities.

39.

What is meant by a 'grey hat hacker'?

a)

Doesn’t necessarily steal but may access IT systems without permission which is still illegal.

b)

Illegal hacker – intent on doing harm, stealing for personal gain e.g. taking credit card details.

c)

Ethical hacker – paid by companies to test their systems for vulnerabilities.

40.

What is meant by a 'black hat hacker'?

a)

Doesn’t necessarily steal but may access IT systems without permission which is still illegal.

b)

Illegal hacker – intent on doing harm, stealing for personal gain e.g. taking credit card details.

c)

Ethical hacker – paid by companies to test their systems for vulnerabilities.

41.
you have been asked to lead a class on preventing social engineering. what topic should you be sure to cover?
a)
viruses and worms
b)
Shoulder surfing
c)
hardware theft
d)
copy
42.
What is the purpose of a firewall?
a)
To detect viruses on a system and prevent them from attacking it and spreading
b)
To prevent unauthorised connections coming in to and out of a network
c)
To prevent a hacker from logging on to the network
43.
What is data encryption?
a)
Making data unreadable by anyone
b)
Scrambling data so it is only readable to authorised people
c)
Putting a password on data files
44.
What is a firewall?
a)
A wall made offline
b)
A way of protecting from unauthorised access
c)
The cloud
d)
Mum's burnt cooking
45.
description of wifi
a)
�a technology that uses radio waves to provide network connectivity
b)
a personal computer that is designed to fit conveniently on top of a typical office desk
c)
dvices are extremely portable, powerful computers with touchscreen controls
d)
compatable with an ethernet cable (RJ-45)) - has two LED lights that blink when port is active
46.
benefits of wifi
a)
allows user to connect without wires, standards are agreed, eas to set up
b)
Their development is at very early stages, concerns about security of personal data
c)
expensive, requires accurately formatted forms for completion
d)
fragile,more expensive, smaller screen, battery goes flat quickly
47.
description of fibre
a)
cables made from glass that becomes very flexible when thin
b)
rarely turned off, lot of RAM, possibly RAID
c)
covers large geographical area, affordable
d)
Exteremely fast data connection over long distnces
48.
benefits of bluetooth
a)
cheap, automatic, low energy consumption connectivity
b)
software diagnostic disk, multimeter, cable tester, POST card
c)
allows the computer to send audio information to an audio device, like speakers, a pair of headphones, etc.
d)
the short-range wireless interconnection of mobile phones, computers, and other electronic devices
49.
limitations of wifi
a)
connectivity affected by resistance of buildings and interference, limited range, slow
b)
hardware�capable of holding information either temporarily or permanently which can easily be demoved from the device
c)
used to print in warehouses where duplicate forms (such as delivery notes) are required
d)
used for outdoor events, satellite to satellite communication, emegency data links
50.
limitations of bluetooth
a)
connectivity method with short range, slow transfer rate, interference
b)
high cartridge cost, slower than laser, documents can smudge before drying
c)
to provide services to client computers
d)
cheap connectivity, low power devices, no interference
51.
description of 3G
a)
networks that allow mobile broadband from smartphone without wifi router
b)
can cause hearing loss, uncomfortable if worn for long period, dangers not heard
c)
Can read peoples input added to a marking template quickly and accurately
d)
Allows computer to be connected to a network
52.
description of bluetooth
a)
the short-range wireless interconnection of mobile phones, computers, and other electronic devices
b)
�display monitor that is able to sense the location of a finger touching the screen
c)
cables made from highly conductive metal which carry electrical signals
d)
lets your computer run much faster beacuse there are no moving parts
53.

What is the biggest cyber security threat?

a)

The human factor

b)

Malware of any kind

c)

Unencrypted communication

d)

Theft of mobile devices

54.

Which UK law gives you the right to access the data an organisation stores on you?

a)

The Freedom of Information Act

b)

The Computer Misuse Act

c)

The Data Protection Act

d)

The Copyright, Designs, and Patents Act

55.

What is the difference between a threat, vulnerability, and attack?

a)

C. A threat is a deliberate act, a vulnerability is a possibility of an attack, and an attack is a weakness

b)

B. A threat is a weakness, a vulnerability is a possibility of an attack, and an attack is a deliberate act

c)

D. A threat is a weakness, a vulnerability is a deliberate act, and an attack is a possibility of an attack

d)

A. A threat is a possibility of an attack, a vulnerability is a weakness, and an attack is a deliberate act

56.

What is the main difference between a virus, worm, and trojan horse?

a)

C. Viruses need human intervention, worms need human intervention, trojan horse can replicate independently

b)

B. Viruses can replicate independently, worms need human intervention, trojan horse does not need to be attached to an executable file

c)

D. Viruses can replicate independently, worms can replicate independently, trojan horse needs human intervention

d)

A. Viruses need human intervention, worms can replicate independently, trojan horse does not need to be attached to an executable file

57.

What is the purpose of a backdoor malware?

a)

B. To gain remote access to the computer

b)

D. All of the above

c)

A. To exploit the operating system's vulnerability

d)

C. To modify access levels and system files

58.
Protecting networks, computers and programs from attack, damage and unauthorised access
a)
Cyber security
b)
Unpatched software
c)
Trojan
d)
Spyware
e)
Virus
59.
Gaining access to data or systems without permission, often through a cyber attack
a)
Unauthorised access
b)
Cyber attack
c)
Cyber security
d)
Unpatched software
e)
Trojan
60.
Permissions granted to users, programs or workstations. Attackers can exploit misconfiguration such as basic users with admin rights, these should be properly configured and checked regularly
a)
Access rights
b)
Default password
c)
Weak password
d)
Pharming
e)
Removable media
61.
A document that defines what users are (not) permitted to do on a system.
a)
Algorithm
b)
User Policy
c)
Protocol
d)
Instruction manual
62.
A standard way of providing authentication.
a)
IP Address
b)
Password
c)
eMail
d)
User Id
63.
Authentication system that requires more than one item to log in.
a)
Ultra Secure Authentication
b)
High Security Authentication
c)
Standard Authentication
d)
Two Factor Authentication
64.

What is it called when you log into the system and it has been set up for what you can and cannot see.

a)

Access Rights

b)

Access Path

c)

Ethics Access

65.

Phishing emails are an example of a social engineering threat to IT systems. What are two possible goals of a phishing email?

a)

To infect your computer with malware, so confidential data can be stolen later.

b)

To delete all your confidential data on your hard disk drive.

c)

To get users to respond with confidential data.

d)

To launch a denial of service attack to take down a server storing confidential data.

66.

Which of the following is a common reason individuals perform hacking attacks?

a)

Furthering a political agenda.

b)

Stealing personal data for bank fraud.

c)

Accessing confidential information.

d)

All of the above.

67.

Operational Loss is..?

a)

Damages of the operating capability of an organisation.

b)

The loss of trust and lowered opinion of people to a business.

c)

Where product designs or trade secrets are stolen.

d)

Damages to the wealth of an organisation.

68.

Reputation Loss is..?

a)

Damages to the wealth of an organisation.

b)

Where product designs or trade secrets are stolen.

c)

The loss of trust and lowered opinion of people to a business.

d)

Damages of the operating capability of an organisation.

69.

Property loss is..?

a)

Damages to the wealth of an organisation.

b)

Where product designs or trade secrets are stolen.

c)

The loss of trust and lowered opinion of people to a business.

d)

Damages of the operating capability of an organisation.

70.

Financial Loss is..?

a)

Damages to the wealth of an organisation.

b)

Where product designs or trade secrets are stolen.

c)

The loss of trust and lowered opinion of people to a business.

d)

Damages of the operating capability of an organisation.

71.

Cyber security threats tend to not change often.

a)

True

b)

False

72.

What is a system vulnerability?

a)

A weak point in a system that can be exploited

b)

A strong point in a system that cannot be exploited

c)

A point in a system that is not important

d)

A point in a system that is difficult to exploit

73.

Which of the following is a mobile device vulnerability?

a)

Outdated system software

b)

Strong security measures

c)

Regular system updates

d)

Limited access to sensitive data

74.
What is data validation?
a)
Checking that the data entered is wrong
b)
Checking that the data entered is correct
c)
Checking that the data entered is sensible or reasonable
75.
Which of these is not a method for ensuring a program is robust?
a)
Keeping passwords safe
b)
Data Validation
c)
Authentication
d)
Data Sanitisation
76.
Why is code indented?
a)
To group together a function
b)
The code does not use a { syntax and indentation is used instead
c)
To make it easier to read
d)
All of the above
77.
What is data validation?
a)
Checking that the data entered is wrong
b)
Checking that the data entered is correct
c)
Checking that the data entered is sensible or reasonable
78.
Which of these authentication methods is most secure?
a)
Password
b)
Password and username
c)
Key Card
d)
Physical and Code
79.
Which is these IS NOT an example of validation
a)
Checking the number entered is 2 digits
b)
Asking a user to enter the same data in twice
c)
Use of a Lookup table
d)
Use of a presence check
80.
 When a program runs it asks the user to enter their full name. Which is an example of Valid data? 
a)
Mr Jones
b)
Sarah
c)
Sarah Jones
d)
Mrs Jones
81.
What does a range check do?
a)
Checks data across a range of numbers
b)
Checks the data is within an acceptable range
c)
Where three types of data are used
d)
Checks that the data is in the correct format
82.
Which one of these is not a method for planning for misuse?
a)
Limiting the number of login attempts
b)
Requesting a password and user name
c)
Authentication
d)
Not validating the data entry
83.
Which is a not method of authentication?
a)
Password
b)
Password and user name
c)
Pattern Password
d)
Finger print password
84.
What is Maintainability?
a)
Checking programs work
b)
Updating Code so that it is compatible with current requirements
c)
Testing a program for errors
d)
Training staff to use the program correctly
85.
Which one of these is not a method for planning for misuse?
a)
Stripping unwanted characters
b)
Removing duplicated letters
c)
Converting large numbers to smaller numbers.
d)
Converting lowercase to uppercase Letters
86.
Which of these is not a method for authenticating a user?
a)
Password
b)
Password and Username
c)
Finger print scanner
d)
Encryption
87.
Why are comments used in a program?
a)
It is required to make the program run
b)
Comments pad out the program and make it look more professional
c)
To keep the user aware of any program errors and issues.
d)
To help security in the code
88.
When should comments be used within a program?
a)
To help describe what code and structures are expected to do
b)
To remind the developer of when lunch is
c)
To include what tests must be carried out on the code
d)
Every line, so that you know exactly what is happening
89.
What is defensive programming design?
a)
Making your code / program error free
b)
Creating code that is easy to use and understand
c)
A method of ensuring that your code is not misused
d)
Code where the data is validated
90.
 A user attempts to enter in an incorrect password, what method would identify this issue?
a)
Data Validation
b)
Authentication
c)
Program Comments
d)
Indentation
91.
A user enters in extra data attempting to access the system, which method would identify this issue?
a)
Data Validation
b)
Input Sanitisation
c)
Input Check
d)
Format Check
92.
A program has a section of code that could cause errors, which method could be used to identify this issue? 
a)
Maintainability
b)
Authentication
c)
Program Comments
d)
Indentation
93.
 What is the difference between Data Validation and Input Sanitsation? 
a)
Nothing, they are the same?
b)
Data Validation checks the data is reasonable and Sanitsation removes unexpected or unrequired data.
c)
Data Validation checks the data is correct and Sanitsation removes data that contains errors
d)
Sanitisation checks the data is correct and Validation removes invalid
94.
 A section of a program has recently stopped working, which method could be used to resolve this issue? 
a)
Data Validation
b)
Input Sanitsation
c)
Maintainability
d)
Authentication
95.
Which does anti virus software not do?
a)
Delete your files and emails
b)
Scan your computer
c)
Delete malware
d)
Warn you about dangers
96.
Why do you need to update your anti-virus software?
a)
To counter the new viruses
b)
It's a scam
c)
The updates are malware
d)
To delete malware
97.
What is spam?
a)
Any bulk unwanted emails
b)
Emails containing ads
c)
Emails looking for money
d)
Anything sent in bulk