WorksheetsFormative Assessment MYP 3
Total questions: 48
Worksheet time: 26mins
Viruses, worms, and trojans are common security threats that are often used in spreading. What is the name for them all?
Malware
Formalware
Scams
The Spreading attackers
Fake e-mail message appearing to be from a trusted business, social network or other contact Asks for personal information or requests a user to click on a link or download a file to verify personal information Hackers can secretly collect personal information and passwords
Farming
Pharming
Phishing
Fishing
Cyber security consists of the processes, practices and technologies designed to protect networks, computers, programs and data from attack, damage or unauthorised access
True
False
Which one of the following is NOT a type of CyberSecurity Attack?
Worms
Randsomware
Spyware
Password Management
Which one of the following is NOT a security threat?
Worms
Hacking
Anti-Virus
Pharming
Unlike a virus, a ________ can spread without any action on the part of the user, and can take advantage of vulnerabilities in a computer's operating system and spread through networks.
Virus
Spyware
Worm
Ransomware
________ is a type of malware that is designed to secretly monitor a user's online activities, such as browsing history and keystrokes, and send this information back to a third party.
Virus
Spyware
Worm
Ransomware
________ is a type of malware that encrypts a user's files and demands payment in exchange for the decryption key, often leaving the user unable to access their own data.
Virus
Spyware
Worm
Ransomware
What is a type of attack that redirects a user to a fake website that looks like a legitimate one?
Malware
Pharming
Denial of service
Phishing
What is a type of attack that overwhelms a server or network with traffic, causing it to become unavailable?
Malware
Pharming
Denial of service
Phishing
What is a type of software designed to harm or exploit any computer system, network, or device without the knowledge or consent of the owner or user?
Malware
Pharming
Denial of service
Phishing
How can individuals protect themselves from phishing attacks?
Click on all links in unsolicited emails
Ignore suspicious emails and click on all attachments
Provide personal information to any sender without verifying their legitimacy
Be cautious of unsolicited emails, not clicking on suspicious links, and verifying the legitimacy of the sender before providing any personal information.
What are the common ways ransomware is spread?
Regularly updating security patches
Phishing emails, malicious attachments, infected websites, and software vulnerabilities
Downloading free antivirus software
Using strong and unique passwords
What is a Denial of Service (DoS) attack?
A type of computer virus
A method of encrypting data
A cyber attack that seeks to make a network resource unavailable to its intended users
A form of social engineering attack
............. is the use of cyber attacks against an enemy state, causing comparable harm to actual warfare and/or disrupting vital computer systems.
Phishing
Hacking
Cyberwarfare
Ransomware
What is smishing?
A type of fishing technique used by professional anglers
A method of building relationships in a professional setting
A form of phishing attack conducted through text messages or SMS
A type of software used to protect against cyber attacks
What are the potential impacts of a successful DoS attack?
Increase in customer trust, financial gains, improved reputation
Enhanced security measures, improved customer satisfaction, increased revenue
No impact on services, no financial losses, no damage to reputation
Disruption of services, financial losses, damage to reputation, and loss of customer trust
Several users have called the help desk to complain that they are being redirected to websites different from the addresses they entered. Which type of attack is taking place?
IP spoofing
ARP spoofing
DNS spoofing
Man-in-the-middle
What does DDOS stand for?
Denial Data Operation System
Distributed Domain Or Service
Domain Data Overwrite Service
Distributed Denial Of Service
Programs that look useful, but cause damage to your computer
phishing
worms
trojans
spyware
What does 'integrity of data' mean?
"Accuracy and completeness of the data"
"Data should be access by only the right people"
"Data should be viewable at all times"
"None of the above"
What is a Business Impact Analysis (BIA)?
A tool for document all activities across the business for better understanding
A method of challenging preconceptions about service delivery
An analysis tool for a building loss
A process of analyzing activities and the effect that a business disruption might have upon them
Which of the following describes the concept of RPO?
Recovery Point Occurrence describes the the data that is logged when a failure occurs
Recovery Point Operation describes the work required to recovery from a failure
Recovery Point Objective describes the acceptable amount of data loss over a given time
Recovery Point Objective describes a point in time at which a disaster occurs
What is the definition of RTO?
Recovery Time Objective is the time it takes to restore a business process after a failure
Recovery Time Occurrences are the number of systems failures within a given reporting period
Recovery Time Objective is the amount of time that has transpired since a previous failure
Recovery Time Operations are the times associated with each recovery operation needed to recover from a failure
How does a zero-day vulnerability differ from malware?
they are the same type of threat
it is a flaw in software when it was released, not an infection
it can be passed from one computer to another, where malware cannot
it is not a security concern, where malware is a concern
Which security principles are covered by the CIA triad?
certified, integrated, accessible
confidentiality, integrity, availability
continuity, integrity, accessibility
confidentiality, installation, assembly
Which type of hacker doesn't have permission to hack?
Blue hat
grey hat
black hat
white hat
CAPTCHA stands for
“Confidently Automated Piece of Turing testing to tell Computers and Humans Apart"
“Completely Automated Public Turing test to tell Criminals and Happy people Apart"
“Completely Assisted Presence Tutor tests to tell Computers and Humans Apart"
“Completely Automated Public Turing test to tell Computers and Humans Apart")
While Julie was playing an online game, a pop-up appeared, prompting her to click on the flashing lights to receive more points for her game. What should she do?
Click on the flashing lights, in order to receive more points
Click the X in the top right corner to remove the pop-up immediately
Switch off the machine she is playing the game on immediately
Minimise the pop up message until she desperately needs the points
............... is a main, reliable method of keeping your data secure – this scrambles data so anyone intercepting it cannot interpret it
Verification
Authentication
Phishing
Encryption
Which type of hacker has permission to hack?
Blue hat
Black Hat
White hat
Grey hat
What is a keylogger?
Code that will run a malicious function if certain functions are met
A device / program that records the keys pressed.
Malware that steals sensitive information.
Malware that locks your files until you pay the hacker to unlock them
What are the features of cyber security?
Compliance
Threat Prevention
Defense against internal threats
All of the above
A window pops up with the Microsoft logo that says your computer has been infected with a virus. What do you do?
Panic
Call the number on the pop-up
Click the link in the pop up so they can remotely
Don't click anything - report it to the FTC and contact your IT department immediately.
Which is not a type of anti-malware?
Anti-Virus
Anti-Spyware
Malware Scanner
Defragmenter
Which are common types of malware?
Adware
Ransomware
Key Logger
Mouse Hacker
Windows Breaker
What is the definition of a brute force attack?
Repeatedly trying usernames/passwords to access a system
Physically threatening someone to give up personal information
Physically breaking into a device to hack it
Being a very strong hacker
Which are ways that an operating system can increase system security?
Offering the use of password protection
Different levels of user access
Keeping software updated
Disk Defragmentation
The use of virtual memory
What are benefits of a firewall?
Blocks access to a network from unauthorised sources
Can give you reports on any threats to the system
Avoids all viruses entering a system
Helps to protect confidential information on your computer
Helps to prevent CPU overheating
Which are examples of social engineering
Phishing
Sending an email with a virus you created attached to it
Using brute force to access a system
Calling someone pretending to be IT support to steal confidential data
Disguising yourself as an employee to gain access to computer systems
What does RT supply in the field of cyber security?
Market leading cyber security training
AI-powered threat detection software
Secure hardware devices
Cloud-based data storage solutions
How can AI technology be used by hackers?
To create more realistic phishing emails
To improve network security
To develop advanced antivirus software
To enhance data encryption
What is one reason why surveyed Business Leaders feel that cyber security risks are getting worse?
The attacks are becoming more sophisticated
The internet speeds are getting slower
The firmware security is improving
The new technology is more secure
What method are hackers using to bypass multi-factor authentication?
MFA notification spamming
Password guessing
Biometric hacking
Social engineering
Hackers proceed to hide their tracks to mask the origins of the attack. This is called as _____
Reconnaissance
Attack
Expansion
Obfuscation
Malicious programs enable attackers to hide in multiple systems. This is called as _____
Obfuscation
Expansion
Attack
Reconnaissance
the practice of spying or using spies to obtain information about the plans and activities especially of a foreign government or a competing company
Cyber Hacktivist
Cyber espionage
Cyber Criminals
Cyber Threats
Which security measure helps prevent unauthorized access to network resources by requiring users to provide multiple forms of identification?
Firewalls
Encryption
Multi-Factor Authentication (MFA)
Access Control Lists (ACLs)
