NEW
Font size
WorksheetsCybersecurity Quiz
Total questions: 80
Worksheet time: 40mins
The fraudulent practice of sending emails claiming to be from reputable companies in order to induce individuals to reveal personal information, such as passwords and credit card numbers, is also known as ____.
phishing
white hat hacking
instant messaging
surfing
When thieves steal your personal information to take over or open new accounts, file fake tax returns, rent or buy properties, or do other criminal things in your name, you have been a victim of identity ____.
theft
spamming
encryption
surfing
Denial of access or of misusing websites or computer networks is known as _____.
hacking
spoofing
skipping
spyware
A type of malicious software that threatens to publish the victim's information or block access to it unless a fee is paid is called ____.
ransomware
cryptoware
spyware
trojan
After an intrusion has occurred and the intruder has been removed from the system, the next step is to ____.
recover and restore functionality
deploy new countermeasures
update the security policy
delete all logs regarding the incident
An important aspect of evidence gathering is _____.
backing up all log files
monitoring user access to compromised systems
purging transaction logs
restoring damaged data from backup media
The network administrator has recently discovered information on a computer drive that might indicate evidence of illegal activity. To perform forensic activities on the disk to see what kind of information it contains, the first step is to _____.
make a bit-level copy of the disk
fire the employee who uses the computer
obtain a search warrant
run forensic tools to examine the hard drive contents
A security incident is best described as ____.
violation of a company security policy
inappropriate web surfing
activity by tailgating
compromise of local hard drive resources
It would be most acceptable for an organization to accept a risk if the likelihood of a risk is _____ and the impact is _____.
low and the impact is extremely low
low and the impact is extremely high
high and the impact is extremely low
high and the impact is extremely high
A hacker successfully exploits a vulnerability in a computer or device and gains access to its files and network. This is called a/an _____.
breach
spoof
attack
passport
_____ is an umbrella term that describes all forms of malicious software designed to wreak havoc on a computer such as viruses, trojans, worms, and ransomware.
malware
spyware
morphware
mountware
A piece of malware included within another program that often allows a hacker to gain remote access to a computer is called a/an _____.
trojan horse
ransomware
virus
worm
An attack that aims to make a service such as a website unusable by "flooding" it with malicious traffic or data from multiple sources is called ________.
Distributed Denial of Service (DDoS)
a virus
ransomware
phishing
To convert 8750 kilobytes to megabytes, one would _____.
Divide 8750 by 1024.
Multiply 8750 by 1000.
Multiply 8750 by 1024.
Divide 8750 by 1000.
A cipher where each letter represents a different letter is called a ________ cipher.
substitution
static
polyalphabetic
monolithic
_____ cipher rearranges the letters in the message.
transposition
monolithic
substitution
dynamic
One of the oldest and simplest forms of encrypting a message is a substitution cipher known as ________.
Caesar
Two-Square
Beaufort
Running Key
When creating a secret message, the use of a cipher to create that message is called ________.
cryptography
steganography
cartography
stenography
Making small, imperceptible changes to images to mark them in a manner that is invisible to the unaided eye is an example of ________.
steganography
cryptography
polyalphabetic changes
monolithic changes
In cryptography, when a cipher is only used one time, it is known as ________.
One Time Pass code
Playfair
Railfence
ROT13
What encryption process uses the same key for encryption and decryption? _____
symmetric
transposition
asymmetric
block
Data encryption is the process of _____.
translating data into secret codes to safeguard it
unscrambling coded data into its original form
destroying data that is no longer needed
restricting data access to individuals with appropriate passwords
A user selects a news article hyperlink and accidentally installs malware. This is known as _____.
clickjacking
pharming
injection attack
buffer overflow
An attack in which the password is compared against a list of words is called a/an _____ attack.
dictionary
injection
known plaintext
static
A computer was originally configured to launch the company’s website when a web browser was accessed, but the web browser is now being automatically redirected to a malicious website. A technician should check the _____ to see if it was modified.
proxy server configuration
security level for the internet
advanced privacy settings
general browsing history
Running outdated or older software increases the chances of _____.
exploitable vulnerabilities
system overheating
system crashing
not being able to upgrade hardware
To protect user accounts and web application accounts, the best practice is to _____.
use different passwords for different accounts
change password every 15 days
use at least six characters for each account
use uppercase and lowercase letters
To reduce the risk of email exploitation attacks, _____ should never be allowed to the network.
.exe
.doc/.docx
.zip
.txt
An anti-virus, anti-malware scanner operates by searching for _____.
signatures of known threats
trojans
worms
executables in external email
_____ should be installed on a system to detect malicious code and help prevent theft or corruption of information.
anti-virus software
firewall hardware
IDS hardware
IPS software
To prevent a threat from spreading throughout the network, _____.
remove the compromised computer from the network
restart the computer and log in to the network
reimage the computer
shut down the computer
If a computer appears to be infected, the network administrator should first _____.
run an antivirus scan with the latest virus definitions
restart the computer immediately
run an antivirus scan upon bootup
shut down the computer and reimage the drive
Virus files contain bits of code that, when broken down, display certain patterns called _____.
signatures
autographs
images
portfolios
An incoming employee is given the profile that has been pre-established for the job they have been hired to fill. This is called _______.
Role-Based Access Control (RBAC)
Discretionary Access Control (DAC)
Mandatory Access Control (MAC)
Unrestricted Access Control (UAC)
_____ is the least restrictive access control.
Discretionary Access Control (DAC)
Role-Based User Account (RBUA)
Mandatory Access Control (MAC)
User Account Control (UAC)
When someone is assigned only the rights and privileges necessary to do his/her job, this is referred to as _____.
least privilege
controlled access
administrator privilege
super user
A zero day exploit is a vulnerability that _____.
has no known fix yet
does not get used
is patched immediately
remains undetected
A client receives an email asking to verify credit card information. The client's best response is to _______.
use the contact information on the back of the credit card and call the credit card company
respond to the email, asking for more information to clarify the request
use the contact information in the email and call the credit card company
do exactly what the email asks them to do
A ping of death attack, to mitigate the attack, the best response is to _______.
block the ICMP protocol at the firewall
disconnect the server from the network
unplug the power from the server
reboot the server to stop the attack
A physical configuration that allows only one person access at a time is called a _______ trap.
man
person
animal
verification
Maintaining the latest versions of anti-virus software, anti-spyware, and anti-malware is _____.
part of a regular preventive maintenance program
not necessary as all programs automatically update
performed annually by the system administrator
the first steps after installation
To help mitigate exploits after a new system installation, the network system administrator should _______.
disable any non-essential services
ensure strong passwords are reset
reboot and then backup the network
disconnect the system from the internet
An existing host system that has been secured should be _____.
should be validated periodically according to company security policy
should be checked annually for updates to operating systems
can have anti-virus software removed to improve performance
can be left alone because once it is secured, it needs nothing else
When a software company releases fixes for specific security vulnerabilities and/or bugs in their program, it is known as a _____.
firmware update
patch
feature update
program upgrade
When a software update is released, it should be _____.
tested before being installed companywide
installed immediately to get the new features
ignored if the OS is functioning properly
installed during non-peak hours
A wireless router manufacturer has released a firmware update and a client installed it. Now the client's wireless network is not visible when attempting to connect to it. The most likely cause is that the _____.
router settings were reset to the default
wireless adapter in the laptop is disabled
connection to the ISP is down
client changed the SSID
Data in the cloud is backed up and stored across multiple servers in the world. This is an example of _____.
data redundancy
decreased data capacity
increased data capacity
data degradation
An unknown person closely following an authorized person into a limited access secure area is called _____.
tailgating
sharing
following
cruising
Unauthorized viewing of a computer display to gain information is referred to as shoulder _____.
surfing
watching
peeking
nesting
A whaling attack targets _____.
high-profile employees
the biggest server
the main firewall
large companies
To access the network, the Access Control List in the _____.
firewall
host
system
server
An Access Control List (ACL) can restrict a user or group's ability to _____.
read, write, and execute files
copy, delete, and write files
read, write, and view files
edit, view, and execute files
When creating a directory inside a directory, the new sub-directory _____ the default Access Control List.
inherits
creates
removes
absorbs
Select the most secure password from the list below.
078uhBU*38
hbacon68
qwerty
93niGhkL
The process of verifying the identity of the user is _____.
authentication
checking
authorization
flashing
A combination of two or more authentication techniques is _____ authentication.
multi-factor
user-level
network-level
uni-factor
The process of enforcing policies after the user has been authenticated is _____.
authorization
accounting
authentication
identification
Which of the following is an example of the authentication method, something the user will have?
smart card
PIN
thumbprint
signature
When a user uses one authentication to gain access to all network resources, this is known as ____.
single sign-on
authorization
network login
credentials
A strong password contains ____.
numbers, letters, and special characters
only numbers
only uppercase letters
only lowercase letters
Established ____ methods, such as Secure Sockets Layer (SSL), encode credit card numbers and other information to prevent theft.
encryption
password
programming
digitizing
Iris patterns are an example of ____ recognition.
eye
voice
facial
fingerprint
Keystroke, signature, and voice recognition can be categorized as ____ biometric technology.
behavioral
cognitive
computerized
physical
Which security method analyzes the user's own physical characteristics?
biometrics
firewalls
door access cards
password keys
A security administrator needs to secure the servers located in the data center. A ____ would provide the best physical protection.
biometric
safe
sign-in and sign-out sheet
CCTV
The Human Resource Director would like to implement a biometric time clock at the work site. What method could be used to record employee time and attendances?
fingerprint recognition
video surveillance
faraday cage
sign-in and sign-out sheet
A biometric device is reporting that an authentic user is not recognized. The error is described as a ____.
false negative
false acceptance rate
false positive
crossover error rate
Only ____ should have access to a secure evidence container.
the investigators in the group
the primary investigator
the system administrator
senior-level management
A list of people who have had physical possession of the evidence shows the chain of ________.
custody
officers
users
command
What type of system collects log files that can be used to identify breaches?
intrusion detection
man trap
state machine
digital signatures
Which computer system application in a Windows system can be used to find the list displayed output(s)?
registry
disk management
user document directory
DOS
When verifying that a data device has not been tampered with, which of the following bit-to-bit ratios must be verified?
1:1
2:1
3:1
4:1
What is used to substantiate the integrity of digital evidence with inclusion and exclusion comparisons against known value sets?
Hash Value
Data Format Value
Metadata Value
Data Excluder Value
A procedure that converts plain text to symbols to prevent anyone except the intended recipient from reading the complete message is called ________.
encryption
de-hashing
hashing
de-encryption
To prevent the alteration of digital evidence during collection, who should first document any activity on the computer, devices, or components?
first responders
supervisor
security
CEO
Investigators who have the education, training, and experience to properly analyze sensitive evidence are known as _______.
Certified Digital Forensic
Certified Analog Media
Certified Enforcement
Certified Investigator
Forensic analysis steps include procedure development, evidence assessment, evidence acquisition, evidence examination, documenting, and _______.
reporting
posting
copying
printing
The form that records who, when, and who collected evidence is called _______.
chain of custody
forensic
evidence
timeline
Evidence taken from a crimescene has been bagged, sealed, and labeled. What should the investigator do in order to document every point from the crimescene to the court room?
begin the chain of custody paperwork
make an audio recording of witness statements
analyze digital evidence collected from the scene
record evidence collected from the scene
Evidence collected from a crimescene that is stored or transported should be _______.
secured
opened and checked
video recorded
analyzed
