NEW
Font size
WorksheetsCybersecurity I
Total questions: 40
Worksheet time: 20mins
Attack tools can initiate new attacks without any human participation, thus increasing the speed at which systems are attacked.
True
False
Automated attack software downloaded from websites is primarily used by script kiddies.
True
False
Spying on computer input over an extended period of time is usually accomplished by the work of state actors.
True
False
Script kiddies typically have advanced knowledge of computers and networks.
True
False
In a well-run information security program, attacks will never get through security perimeters and local defenses.
True
False
Browsers such as Chrome, Safari, and Firefox are the most popular attack vectors, that is, they are the favored way to deliver malware.
True
False
Today, many attack tools are freely available and do not require any technical knowledge to use.
True
False
A doorbell camera is an example of a universally connected device and can be hacked.
True
False
There is a straightforward and easy solution to securing computers.
True
False
Under which law must healthcare enterprises guard protected health information and implement policies and procedures to safeguard it, whether it be in paper or electronic format?
Sarbox
COPPA
GLBA
HIPAA
Which attacker category might have the objective of retaliation against an employer?
cybercriminal
insider
hacktivist
state-sponsored attacker
Which of the following is NOT a term associated with cybersecurity?
risk
information assurance
malware
goal
What term is frequently used to describe the tasks of securing technology?
network security
information assurance
cybersecurity
information warfare
Terrorists who turn their attacks to the network and computer infrastructure to cause panic among citizens are known as which of the following?
cyberterrorists
spies
hackers
hacktivists
Which of the following is the term for a hacker who probes a system for weaknesses and provides that information back to the organization?
gray hat hacker
white hat hacker
black hat hacker
red hat hacker
What do you call a flaw or weakness in a computer system that allows access by threat actors?
risk
vulnerability
asset
threat
Information contained on devices is protected by three layers: Two of the layers are products and policies and procedures. What is the third layer?
systems
applications
tools
Which of the following ensures that information is correct and no unauthorized person or malicious software has altered it?
protection
availability
confidentiality
integrity
Which law requires banks and financial institutions to alert customers of their policies and practices in disclosing customer information?
Sarbox
COPPA
GLBA
HIPAA
Which of the following involves stealing another person’s personal information, such as a Social Security number, and then using the information to impersonate the victim, generally for financial gain?
white hat hacking
identity theft
cyberterrorism
Digital fraud
How do attackers today make it difficult to distinguish an attack from legitimate traffic?
by using a common language
by using diverse interfaces
by using universally connected devices
by using simple scripting
Which of the following ensures that data is accessible when needed to authorized users?
confidentiality
non-repudiation
integrity
availability
Which term is best described as a person or element that has the power to carry out a threat?
threat agent
vulnerability
risk
attack agent
Which term is best described as individuals who want to attack computers yet who lack the knowledge of computers and networks needed to do so?
hackers
elites
crackers
script kiddies
It is important that action be taken in advance in order to ________. This may involve keeping backup copies of important data stored in a safe place.
minimize losses
A(n) ________ is defined as something that has a value.
In a general sense, ________ can be defined as the necessary steps to protect a person or property from harm.
security
Targeted attacks against individual users, enterprises, and governments with the focus of financial gain are known as ________.
It is vital to have __________ security on all personal computers to defend against any attack that breaches the perimeter.
local
Steps that ensure that the individual is who they claim to be
authentication
authorization
confidentiality
insiders
The process of providing proof of genuineness
authorization
authentication
confidentiality
integrity
The act of providing permission or approval to technology resources
integrity
authentication
confidentiality
authorization
Targeted attacks against financial networks, unauthorized access to information, and the theft of personal information
cyberterrorism
identity theft
cybercrime
attack vector
Permission to access an accounting database once a user is verified to log into the system
identity theft
authorization
authentication
integrity
Stealing another person’s personal information, such as a Social Security number, and then using the information to impersonate the victim, generally for financial gain
cybercrime
cyberterrorism
attack vector
identity theft
Employees, contractors, and business partners who can be responsible for an attack
insiders
attack vector
integrity
cybercrime
Security actions that ensure that the information is correct and no unauthorized person or malicious software has altered the data
identity theft
authentication
integrity
attack vector
Means by which an attack could occur
insiders
attack vector
cybercrime
cyberterrorism
Which of the following is true about public Wi-Fi networks?
They are always secure
They should be used to conduct financial transactions
They may be less secure, so sensitive activities should be avoided
They are safer than your home network
Cyber criminals want access to...
All of the above
Your parents information
Finanacial information
Access to your computer
