Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Day 12 Quiz - Exploring Scripting Tools, Analysis concepts .....

Total questions: 25

Worksheet time: 20mins

Name
Class
Date
1.

Objective 1.3/Day 12 -

A security analyst is investigating a series of suspicious network requests that appear to be encoded and embedded within an XML file. To analyze the structure and content of these requests, which of the following tools or techniques should the analyst use?

a)

PowerShell

b)

Regular expressions

c)

Python

d)

XML parsing

2.

Objective 1.3/Day 12 -

During an incident response, an analyst discovers a PowerShell script that contains obfuscated commands used to execute malicious payloads. To effectively analyze and understand the script, which tool or technique would be most appropriate?

a)

JSON decoding

b)

Shell script analysis

c)

Python scripting

d)

PowerShell analysis

3.

Objective 1.3/Day 12 -

A security team is reviewing logs that contain entries formatted in JSON. To identify patterns or extract specific information from these logs, which of the following techniques would be most effective?

a)

Python scripting

b)

Regular expressions

c)

XML parsing

d)

PowerShell

4.

Objective 1.3/Day 12 -

An analyst needs to detect and analyze potentially harmful regular expressions embedded within shell scripts. Which of the following approaches would be most effective in this scenario?

a)

Regular expression analysis

b)

Shell script execution

c)

PowerShell scripting

d)

XML parsing

5.

Objective 2.4/Day 12 -

A web application is susceptible to reflected cross-site scripting (XSS) attacks, allowing attackers to inject malicious scripts into URLs that are subsequently executed in users' browsers. What control should the development team implement to mitigate this type of vulnerability?

a)

Input validation and sanitization

b)

Implementing a Content Security Policy (CSP)

c)

Using secure cookies

d)

Session management practices

6.

Objective 2.4/Day 12 -

An organization has identified that its application is vulnerable to stack overflow vulnerabilities, which could allow attackers to execute arbitrary code. Which control should be recommended to mitigate the risk associated with this type of vulnerability?

a)

Input validation

b)

Implementing address space layout randomization (ASLR)

c)

Data encryption

d)

Regular security training for developers

7.

Objective 2.4/Day 12 -

A security analyst discovers that an application is vulnerable to data poisoning attacks, where attackers can manipulate input data to compromise the integrity of the application. Which control should be recommended to mitigate this risk?

a)

Implementing rate limiting

b)

Data validation and sanitization

c)

Role-based access control (RBAC)

d)

Logging and monitoring

8.

Objective 2.4/Day 12 -

A recent security audit revealed broken access control vulnerabilities in a web application, allowing users to access resources and functionalities they should not be able to. What control should be recommended to address this issue?

a)

Input validation

b)

Session management practices

c)

Implementing proper authorization checks

d)

Using HTTPS for data transmission

9.

Objective 2.4/Day 12 -

A security analyst has discovered that an application is susceptible to cryptographic failures, specifically due to the use of weak encryption algorithms. Which control should be recommended to mitigate the risk associated with this vulnerability?

a)

Implementing strong encryption standards such as AES

b)

Using hash functions for all sensitive data

c)

Limiting user input to prevent injection attacks

d)

Regularly updating software dependencies

10.

Objective 2.4/Day 12 -

A web application is vulnerable to SQL injection attacks, allowing attackers to manipulate database queries through user inputs. What control should be implemented to mitigate the risk of injection flaws in this application?

a)

Input validation and parameterized queries

b)

Session management practices

c)

Implementing a Content Security Policy (CSP)

d)

Data encryption in transit

11.

Objective 2.4/Day 12 -

During a security review, a vulnerability related to cross-site request forgery (CSRF) is identified in a web application that allows unauthorized actions to be performed on behalf of authenticated users. Which control should be recommended to mitigate this type of vulnerability?

a)

Using SameSite cookies

b)

Implementing input validation

c)

Utilizing encryption for data storage

d)

Restricting access based on IP address

12.

Objective 2.4/Day 12 -

A company has recently discovered that its web application is vulnerable due to insecure design practices, allowing attackers to bypass security controls easily. What control should be implemented to mitigate the risk associated with insecure design?

a)

Conduct regular security reviews and threat modeling

b)

Apply patches to outdated software components

c)

Implement multi-factor authentication (MFA)

d)

Configure firewalls to block unauthorized access

13.

Objective 2.4/Day 12 -

During a routine security audit, it was found that several servers were not configured securely, leaving them exposed to potential attacks. Which control should be recommended to mitigate risks associated with security misconfiguration?

a)

Perform regular configuration audits and hardening

b)

Update the operating system to the latest version

c)

Increase network bandwidth for better performance

d)

Use weak passwords to allow easier access

14.

Objective 2.4/Day 12 -

An organization is still using a legacy application that has reached its end-of-life and is no longer supported by the vendor. What control should be recommended to mitigate risks associated with using outdated components?

a)

Upgrade to a newer, supported version of the application

b)

Implement additional firewalls around the legacy application

c)

Increase user access rights to improve productivity

d)

Disable logging to prevent unnecessary data storage

15.

Objective 2.4/Day 12 -

A web application allows users to submit URLs that the server fetches and processes. An attacker has discovered that they can manipulate the URL to make the server perform requests to internal resources. What control should be implemented to mitigate the risk of Server-Side Request Forgery (SSRF)?

a)

Validate and sanitize user input for URLs

b)

Implement strong access controls on internal resources

c)

Use a web application firewall (WAF)

d)

Regularly update server software and libraries

16.

Objective 2.4/Day 12 -

A security analyst discovers that a web application is vulnerable to Remote Code Execution (RCE) due to inadequate input validation. An attacker can send crafted inputs that allow them to execute arbitrary code on the server. What control should be recommended to mitigate this vulnerability?

a)

Use application-level firewalls

b)

Implement strict input validation and output encoding

c)

Increase logging verbosity for application activities

d)

Limit user access to the application

17.

Objective 2.4/Day 12 -

A user account has been compromised, allowing the attacker to gain higher privileges within the application. The organization needs to mitigate the risk of privilege escalation attacks. Which control should be recommended?

a)

Conduct regular audits of user privileges

b)

Allow users to have admin access for flexibility

c)

Disable two-factor authentication (2FA) for ease of access

d)

Implement a password expiration policy for all users

18.

Objective 1.3/Day 12 -

A security analyst is investigating a suspicious script found on a compromised server. The script is written in PowerShell and contains the following code (See Image):

What is the primary purpose of this PowerShell script?

a)

To update system files

b)

To download and execute a malicious payload

c)

To create a backup of important files

d)

To monitor network traffic

19.

Objective 1.3/Day 12 -

An analyst discovers a Python script running on an internal server. The script's purpose is unclear, so they review the following snippet (See Image):

What does this Python script do?

a)

It updates the system configuration files

b)

It scans a directory and computes the SHA-256 hash of each file

c)

It monitors network traffic

d)

It deletes temporary files in the directory

20.

Objective 2.4/Day 12 -

A web application is vulnerable to cross-site scripting (XSS) attacks where malicious scripts are reflected back to the user. This has led to several incidents of data theft from user sessions. Which control would be most effective in mitigating this type of attack?

a)

Implementing input validation and output encoding

b)

Using secure cryptographic algorithms

c)

Disabling unused services and ports

d)

Applying principle of least privilege to user accounts

21.

Objective 2.4/Day 12 -

A server was compromised through a buffer overflow vulnerability, allowing attackers to execute arbitrary code. Which control is most appropriate to prevent buffer overflow attacks?

a)

Using parameterized queries

b)

Implementing data execution prevention (DEP)

c)

Enforcing multi-factor authentication (MFA)

d)

Conducting regular vulnerability scans

22.

Objective 2.4/Day 12 -

An application allows for unrestricted file uploads, leading to a remote file inclusion (RFI) vulnerability being exploited. Which control should be implemented to mitigate this vulnerability?

a)

Enforcing strict file type validation and scanning uploaded files for malware

b)

Implementing HTTPS across the application

c)

Enforcing password complexity requirements

d)

Disabling directory browsing on the web server

23.

Objective 2.4/Day 12 -

A web application is susceptible to SQL injection attacks, which has allowed attackers to manipulate the database and extract sensitive information. Which control would best mitigate this type of attack?

a)

Implementing input validation and parameterized queries

b)

Encrypting sensitive data at rest

c)

Disabling directory indexing

d)

Using a web application firewall (WAF)

24.

Objective 2.4/Day 12 -

A company's web application has a vulnerability that allows unauthorized users to access restricted directories and files through directory traversal attacks. Which control would most effectively mitigate this vulnerability?

a)

Implementing access control lists (ACLs) and input validation

b)

Using strong encryption for data in transit

c)

Enforcing password expiration policies

d)

Implementing secure session management

25.

Objective 2.4/Day 12 -

An organization has identified several outdated components in its web application stack, which are vulnerable to remote code execution (RCE) attacks. Which control is most appropriate to address this issue?

a)

Regularly updating and patching software components

b)

Implementing network segmentation

c)

Enforcing multi-factor authentication (MFA)

d)

Conducting regular security awareness training