NEW
Font size
WorksheetsCysec Club - Workshop Quiz
Total questions: 20
Worksheet time: 10mins
Which of the following is a method to secure a password?
Storing it in a text file
Sharing it with friends
Using two-factor authentication
Writing it on a sticky note
In which type of cyber attack does the attacker compromise a network by exploiting the relationship between two devices in communication to intercept and alter the data?
Denial of Service (DoS)
Man-in-the-Middle (MitM)
Cross-Site Scripting (XSS)
Brute Force
What does the acronym VPN stand for?
Virtual Private Network
Virtual Public Network
Very Private Network
Virtual Protected Network
Which of the following is a common form of malware?
Phishing
Firewall
Antivirus
Virus
What is the purpose of a firewall in a computer network?
To physically block unwanted cables
To prevent unauthorized access to or from a network
To store data securely
To increase internet speed
Which type of cyber attack involves tricking users into divulging sensitive information?
Phishing
Ransomware
DoS attack
SQL injection
Which protocol is primarily used for securely transmitting data over the Internet?
HTTP
HTTPS
FTP
SMTP
In encryption, what is the purpose of a public key?
To encrypt data
To decrypt data
To generate data
To secure email servers
What type of attack is SQL injection?
Malware
Social engineering
Network sniffing
Code injection
What does an Intrusion Detection System (IDS) do?
Blocks malicious traffic
Detects unauthorized access to systems
Encrypts data in transit
Prevents hardware failure
Which technique is used to prevent unauthorized users from accessing sensitive data through network monitoring?
Firewall
VPN
Encryption
Packet sniffing
What is the main difference between symmetric and asymmetric encryption?
Symmetric encryption uses a single key, while asymmetric uses two keys
Symmetric encryption is slower than asymmetric
Asymmetric encryption cannot be decrypted
Symmetric encryption requires a larger key size
Which cybersecurity framework is used to protect critical infrastructure in the U.S.?
ISO/IEC 27001
COBIT
NIST Cybersecurity Framework
PCI DSS
In the context of a ransomware attack, what is the primary goal of the attacker?
To gain access to network hardware
To encrypt files and demand payment for the decryption key
To deface the company website
To steal passwords and credentials
Which of the following best describes a Zero-Day exploit?
An exploit that has been publicly disclosed and patched
An exploit that targets a vulnerability unknown to the vendor
An exploit that is only used after a system crash
An exploit that affects hardware devices only
Which type of attack is aimed at overwhelming a system or network to make it unavailable to its intended users?
Phishing
Man-in-the-middle attack
Denial of Service (DoS) attack
Buffer overflow
Which of the following is NOT a type of web application attack?
SQL Injection
Cross-Site Scripting (XSS)
Ransomware
Remote Code Execution
Which of the following is a form of attack where the attacker uses SMS messages to trick the victim into divulging personal information?
Phishing
Whaling
Smishing
Baiting
What type of attack involves flooding a system or network with excessive traffic to make it unavailable to its users?
SQL Injection
Cross-Site Request Forgery (CSRF)
Distributed Denial of Service (DDoS)
DNS Spoofing
Which form of social engineering attack specifically targets high-profile individuals like CEOs and government officials?
Pretexting
Whaling
Tailgating
Spear Phishing
