Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Malhub Cybersecurity Quiz 1

Total questions: 35

Worksheet time: 17mins

Name
Class
Date
1.

What does CIA stand for in cybersecurity?

a)

Cybercrime Investigation Agency

b)

Confidentiality, Integrity, Availability

c)

Cloud Infrastructure Architecture

d)

Certified Information Auditor

2.

Which of the following is NOT a principle of the CIA triad?

a)

Reliability

b)

Confidentiality

c)

Integrity

d)

Availability

3.

An employee accidentally clicks on a malicious link in a phishing email. This scenario represents what type of threat?

a)

External threat

b)

Internal threat (accidental)

c)

Internal threat (intentional)

d)

Network vulnerability

4.

A weakness in a software program that could allow attackers to gain unauthorized access is an example of a:

a)

Phishing attack

b)

Denial-of-service attack

c)

Vulnerability

d)

Social engineering tactic

5.

Which of the following is NOT a common type of cyberattack?

a)

Cryptojacking

b)

Data encryption

c)

Password attack

d)

Man-in-the-middle attack

6.

Why is it important to understand vulnerabilities in cybersecurity?

a)

To comply with fashion trends

b)

To prioritize security efforts effectively

c)

To learn how to exploit them ethically

d)

To understand the history of hacking

7.

Malicious software that aims to disrupt systems, steal data, or extort money is classified as:

a)

Zero-day exploit

b)

Malware

c)

Denial-of-service attack

d)

Phishing email

8.

Which of the following statements about social engineering is TRUE?

a)

It relies solely on technical exploits.

b)

It exploits human vulnerabilities and emotions.

c)

It is always detected by antivirus software

d)

It involves no human interaction.

9.

What is the main purpose of a Denial-of-Service (DoS) attack?

a)

To steal sensitive information

b)

To gain unauthorized access to a system

c)

To overload a system and make it unavailable

d)

To inject malicious code into a database

10.

What is the best way to stay informed about new cyber threats?

a)

Rely solely on your existing security software.

b)

Regularly update software and follow cybersecurity news.

c)

Never click on any links in emails.

d)

Trust all messages that appear legitimate.

11.

What kind of hacker is one who intends to do harm?

a)

Grey Hat

b)

White Hat

c)

Black Hat

d)

Hacker

12.

What is the primary purpose of a firewall in a cybersecurity context?

a)

To prevent physical access to a computer.

b)

To block all incoming and outgoing network traffic.

c)

To monitor and control network traffic based on a set of security rules.

d)

To encrypt all data on a computer.

13.

Phishing is a cyberattack method that involves tricking individuals into revealing sensitive information through deceptive emails or websites.

a)

True

b)

False

14.

What type of Malware is this:

Transnet has been hacked through a Denial of Service attack , the hackers want money in crypto to allow Transet to resume operations.

a)

Adware

b)

Spyware

c)

Ransomware

d)

Malware

15.

Which of the following is an example of two-factor authentication (2FA)?

a)

Using a username and password to log in.

b)

Using a fingerprint scan and a retinal scan to log in.

c)

Using a smart card and a PIN to log in.

d)

Using a CAPTCHA to log in.

16.

What is the main goal of a DDoS (Distributed Denial of Service) attack?


a)

To steal sensitive data from a computer .

b)

To overload a network or website with traffic, making it unavailable to users.

c)

To gain unauthorized access to a computer system.

d)

To spread malware to multiple devices.

17.

Which encryption protocol is commonly used to secure web traffic by ensuring data confidentiality and integrity?

a)

HTTPS

b)

FTP

c)

SMTP

d)

SNMP

18.

What does the acronym "VPN" stand for in the context of cybersecurity?

a)

Virtual Private Network.

b)

Very Personal Network.

c)

Virtual Public Network

d)

Visual Private Network

19.

Imagine you've been hired to break into a top-secret facility guarded by a highly advanced AI security system.

To bypass it, you decide to use a classic hacking technique.

What is the name of this technique where you attempt to guess a secret password by trying many combinations until you succeed?

a)

Cybersleuthing

b)

Whiz-hacking

c)

Brute-force attack

d)

Quantum phreaking

20.

Which Port Numbers are part of the File Transfer Protocol (FTP)?

a)

50

b)

20/21

c)

62/63

d)

1/0

21.

Encryption is the process of converting data into a code to prevent unauthorized access, and it can be used to protect data both at rest and in transit.

a)

True

b)

False

22.

The process of verifying the identity of a user or system is known as:

a)

Encryption

b)

Authentication

c)

Authorization

d)

Accounting

23.

 What solution is recommended to address the risk posed by outdated software and systems?

 

a)

Implement multi-factor authentication (MFA)

b)

Encourage the use of weak passwords

c)

Regularly update and patch software

d)

Increase user access privileges

24.

The main difference between an IDS and an IPS is:

a)

An IDS detects and prevents attacks, whereas an IPS only detects attacks

b)

An IDS encrypts data, whereas an IPS does not

c)

An IPS can take actions to prevent threats, whereas an IDS only monitors and alerts

d)

An IPS is software-based, while an IDS is hardware-based

25.

What does encryption protect?

a)

Physical access to computer hardware

b)

The identity of the user

c)

The network from all forms of cyber attacks

d)

Data Privacy by making it unreadable without the correct key.

26.

Which principle aims to limit user access to only the necessary permissions for their roles?

 

a)

Defense in Depth

b)

The CIA Triad

c)

Non-repudiation

d)

The Principle of Least Privilege

27.

What is the primary goal of cybersecurity?

a)

To promote software sales

b)

To increase internet speed

c)

To protect digital assets and information from cyber threats

d)

To ensure the fastest data transmission

28.

Multifactor Authentication (MFA) enhances security by:

a)

Allowing users to choose any form of identity verification they prefer

b)

Using only biometric verification for all users

c)

Using a single, complex password

d)

Requiring multiple methods of authentication from different categories of credentials

29.

Which of the following best exemplifies the concept of Defense in Depth?

a)

Layering multiple security measures such as firewalls, antivirus software, and encryption

b)

Keeping software up to date

c)

Implementing a strong policy against sharing passwords

d)

Using a strong password

30.

A zero-day vulnerability is:

a)

A vulnerability that is fixed within a day of discovery

b)

A flaw in software that is unknown to the vendor

c)

A type of virus that spreads in 24 hours

d)

A security patch released by software vendors

31.

In the context of cybersecurity, __________ is to preserving secrecy as __________ is to ensuring data is accurate and untampered.

a)
  • Authentication, Authorization

b)
  • Confidentiality, Integrity

c)
  • Firewall, Encryption

d)
  • Risk reduction, Risk acceptance

32.

__________ exploit unknown vulnerabilities, similarly, __________ can bypass security from within the organization.

a)

Hacktivists, Criminals

b)

Cyber espionage, DDoS attacks

c)

Zero-day exploits, Insider threats

d)

Malware, Phishing attacks

33.

The goal of __________ is to steal information, whereas __________ aims to overload and disrupt services.

a)
  • Cyber espionage, SQL injection


b)

DDoS attacks, Insider threats

c)

Hacktivists, Nation-states

d)

Cyber espionage, DDoS attacks

34.

What is the primary difference between vulnerabilities and risks in cybersecurity?

a)

Vulnerabilities focus on potential loss, while risks focus on system weaknesses

b)

Vulnerabilities depend on external factors, while risks exist independently

c)

Vulnerabilities are conditional, while risks are inherent

d)

Vulnerabilities represent system weaknesses, while risks represent potential loss or damage

35.

Hackers are to malicious intent as hacktivists are to which motivation?

a)

Financial gain

b)

Social or political agenda

c)

Personal curiosity

d)
  • Technical skills