Font size
WorksheetsFBLA Cybersecurity Quiz
Total questions: 100
Worksheet time: 1hrs 5mins
Which of the following is a basic security risk associated with computer hardware?
Power surges
Software bugs
User negligence
Phishing attacks
A virus that replicates itself by attaching to other programs or files is known as a:
Worm
Trojan horse
Macro virus
File infector virus
Which of the following is a symptom of a computer virus?
Slow system performance
Sudden system crashes
Unexplained files appearing on the system
All of the above
Phishing is:
A technique for encrypting data
The act of fraudulently obtaining sensitive information by pretending to be someone else
A type of malware
A tool for protecting passwords
What is the primary purpose of incidence reporting in cybersecurity?
To increase awareness among users
To document and address security breaches
To encrypt sensitive data
To install software patches
Installing service packs and patches is important because they:
Make the system faster
Fix known vulnerabilities and enhance security
Provide new features
Clean the system from malware
Which of the following is a virus protection and removal procedure?
The primary function of antivirus software is to:
Monitor network traffic
Block malicious email attachments
Detect, prevent, and remove malware
Provide secure authentication
Which of the following should be scanned for viruses and spyware regularly?
CPU and memory
Storage devices and equipment
Network cables
Printers and scanners
Anti-virus software should be:
Installed only once and left untouched
Configured to automatically update to detect new threats
Used only for detecting spyware
Used exclusively on personal devices
A computer virus is most likely to spread through:
USB drives
Text messages
Email attachments
All of the above
The best way to protect your privacy and personal security online is:
Only use free Wi-Fi
Use strong, unique passwords and enable two-factor authentication
Share personal information freely online
Avoid using antivirus software
Which of the following is a privacy protection utility?
VPN software
Proxy server
Ad-blocking tool
The importance of network security includes:
Preventing unauthorized access
Protecting sensitive data
Maintaining the integrity and availability of the network
All of the above
IP spoofing is a form of:
Data encryption
Network monitoring
Network attack
Data backup
What is the primary function of encryption in network security?
To prevent unauthorized access to data during transmission
To improve network speed
To monitor user activity
To block malicious websites
One of the most common methods to protect a network’s perimeter is through:
Encryption
Firewalls
User authentication
Backup and recovery
SSL is used to:
Secure email communication
Encrypt web traffic between a browser and server
Prevent malware from being downloaded
Backup data securely
Which of the following best describes a VPN (Virtual Private Network)?
It encrypts web traffic to prevent unauthorized access
It protects against email phishing attacks
It blocks spam emails
It monitors network traffic for suspicious behavior
Access control is used to:
Grant or deny access to resources based on user permissions
Monitor user behavior on the network
Encrypt network traffic
Backup network data
Which security protocol is used for securing wireless networks?
SSL
WPA
IPSEC
L2TP
The role of a firewall is to:
Monitor incoming and outgoing network traffic
Provide malware detection
Encrypt sensitive information
Backup data securely
Which of the following is NOT a characteristic of a software firewall?
It is installed on a single device
It monitors and controls network traffic
It requires physical installation of hardware
It can be configured to block specific applications
A proxy server is typically used for:
Blocking viruses
Encrypting data
Hiding the user’s IP address
Backing up data
WEP is considered less secure than WPA because:
It uses a longer encryption key
It has known vulnerabilities and weaknesses
It is easier to configure
It is a newer standard
Which of the following is a key difference between a circuit-level gateway and an application gateway firewall?
What does DMZ stand for in network security?
Demilitarized Zone
Digital Managed Zone
Direct Mobile Zone
Digital Monitoring Zone
Which of the following best describes a VLAN (Virtual Local Area Network)?
A network within a specific geographic area
A secure connection between two remote networks
A logical partition of a physical network, improving security and traffic management
A protocol for encrypting network traffic
Which type of email security attack involves deceptive emails designed to steal sensitive information?
Phishing
Spamming
Spoofing
Spoofing
The practice of sending unsolicited emails to a large group of recipients is known as:
Phishing
Spam
Social engineering
Encryption
Which protocol is primarily used to send secure emails?
SMTP
SSL
IMAP
HTTPS
Social engineering can be used to:
Netiquette refers to:
The ethical use of the internet and digital communication
The technical protocols that secure online transactions
The hardware needed to access the internet
The policy of data encryption
Which of the following can be used to filter spam emails?
Email filtering software
Firewalls
Antivirus software
Network monitoring tools
Which of the following is a technique to prevent email viruses from infecting your system?
Use strong passwords
Open attachments from trusted sources only
Regularly back up your emails
Use two-factor authentication
Denial of Service (DoS) attacks aim to:
Encrypt data on a victim’s system
Block access to network resources by overwhelming the system with traffic
Steal sensitive information from a victim
Install malware on the victim’s system
Which of the following is NOT a characteristic of a brute-force attack?
It systematically tries every possible password combination
It targets encrypted files
It uses social engineering to guess passwords
It can be automated using specialized software
The purpose of an intrusion detection system (IDS) is to:
Prevent unauthorized access by filtering network traffic
Monitor network and system activities for suspicious behavior
Encrypt sensitive data
Which of the following can be used to detect network intrusions?
Firewall logs
Intrusion Detection System (IDS)
VPN logs
Antivirus logs
A public key infrastructure (PKI) uses:
A central server to manage private keys
Symmetric key encryption
Certificates issued by a certificate authority to establish trust
No encryption but relies on user authentication
In the context of public key infrastructure, what is a certificate authority (CA)?
A trusted organization that issues digital certificates
A firewall that protects sensitive data
A private key that decrypts encrypted data
A type of encryption algorithm
Which of the following is an example of two-factor authentication?
Using a password and fingerprint scan
Using a password and security question
Using a PIN and user ID
Using a password and backup email address
Which type of authentication protocol uses challenge-response mechanisms?
PAP
RADIUS
CHAP
Kerberos
In disaster recovery, the term “cold site” refers to:
A fully equipped data center ready for immediate use after a disaster
A location with basic infrastructure, requiring setup before it can be used
A cloud-based disaster recovery solution
A backup system stored in a secure offsite location
RAID is primarily used to:
Back up network traffic
Encrypt sensitive data
Provide redundancy and prevent data loss
Monitor network access logs
The process of recovering data from a system failure is called:
Encryption
Disaster recovery
Data recovery
Data analysis
Which of the following is the most important component of a disaster recovery plan?
A list of hardware required for recovery
Backup and restoration procedures
A detailed security policy
Security incident response training
To protect a computer from natural disasters like flooding, the most common protection would be:
Using antivirus software
Installing a surge protector
Using RAID storage
Storing data offsite
UPS (Uninterruptible Power Supply) devices are used to:
Ensure continuous power to critical systems during outages
Protect against malware infections
Encrypt sensitive data
Backup network traffic
Which of the following is a common environmental hazard that can affect computer hardware?
Moisture
Power surges
Physical damage
All of the above
The purpose of physical security in cybersecurity is to:
What is the primary function of a disaster recovery plan (DRP)?
To recover lost network connections
To ensure business continuity in case of an emergency
To install security updates on all devices
To back up sensitive data
Encryption is primarily used to:
Prevent unauthorized access to sensitive data
Speed up data transmission
Block unwanted network traffic
Recover lost data
Which of the following describes the difference between public and private key encryption?
Public keys are used to encrypt, while private keys decrypt
Public and private keys are interchangeable
Both public and private keys are used to encrypt data
Private keys are used for communication, while public keys are used for storage
Which cryptographic protocol is used for securing web traffic?
HTTPS
SSL/TLS
IPSec
AES
What is the primary purpose of digital signatures?
To encrypt sensitive data
To verify the authenticity of a message or document
To monitor network traffic
To prevent phishing attacks
A forensic investigation typically includes:
Scanning for malware
Analyzing evidence from computers and mobile devices
Recovering lost data
What is the primary concern when handling computer forensic evidence?
Integrity and preservation of the evidence
Reducing the size of the data
Encrypting the evidence
Sharing the evidence with third parties
Which of the following is a tool commonly used in computer forensics?
Wireshark
FTK Imager
Netcat
Putty
When preparing a report of findings in a forensic investigation, it is important to:
Ensure accuracy and documentation of the chain of custody
Encrypt all evidence
Erase any identifying information
Immediately share results with the media
Which of the following is an example of a public key infrastructure (PKI) service?
Digital certificates
Secure passwords
VPN configurations
Network monitoring tools
One of the advantages of PKI is:
It simplifies the process of password recovery
It eliminates the need for encryption
It allows for secure communication through digital certificates
It monitors network traffic in real time
The primary purpose of a Certificate Authority (CA) is to:
Monitor the network for security threats
Issue digital certificates that authenticate the identity of entities
Perform regular data backups
Prevent unauthorized access to network resources
Which of the following is true about symmetric encryption?
It uses one key for both encryption and decryption
It requires different keys for encryption and decryption
It is slower than asymmetric encryption
It is less secure than asymmetric encryption
Two-factor authentication enhances security by:
Allowing multiple users to access the same resource simultaneously
Using two different types of authentication methods
Eliminating the need for passwords
Automatically backing up data
What does the term “non-repudiation” in cybersecurity refer to?
The inability of users to deny their actions or involvement in an event
The encryption of data to prevent unauthorized access
The use of firewalls to prevent external attacks
The prevention of data breaches
Which of the following is NOT a form of biometric authentication?
Fingerprint scanning
Retina scanning
Password entry
Voice recognition
In which situation is SSL authentication typically used?
Email encryption
Securing web traffic between a browser and a server
Virtual private network (VPN) connections
Encrypting data at rest
A disaster recovery site that has minimal infrastructure, which requires setup before use, is called:
Hot site
Warm site
Cold site
Backup site
Which of the following is true about RAID?
Which of the following is an important feature of an effective disaster recovery plan?
It focuses only on restoring user data
It includes regular testing of recovery procedures
It excludes cloud storage options
It encrypts backups for security
A hot site in disaster recovery refers to:
A location where recovery procedures are not yet implemented
A fully equipped and operational data center ready for use in case of a disaster
A site used for storing backups only
A cloud-based disaster recovery solution
Which of the following is a benefit of encryption in securing network resources?
It protects data during transmission
It provides backup and recovery options
It ensures user authentication
It monitors network performance
In cybersecurity, what is the role of digital certificates?
They encrypt sensitive data during transmission
They authenticate the identity of users or devices
They store backup copies of system data
They prevent malware from spreading
Which of the following is an example of a cryptographic protocol used to secure web traffic?
DES
SSL/TLS
IPSec
AES
What does the acronym "PKI" stand for?
Public Key Infrastructure
Private Key Index
Public Kernel Internet
The primary function of a digital signature is:
Encrypting communication
Providing verification of the sender’s identity
Creating backups of data
Monitoring internet traffic
In a forensic investigation, preserving evidence means:
Making copies and securing the original data in its current state
Encrypting the evidence before analyzing it
Removing unnecessary files from the evidence
Restoring deleted files for analysis
A secure method to authenticate users remotely via a VPN would most likely use:
PAP
SSL/TLS
RADIUS
WEP
The main purpose of a firewall in network security is to:
Encrypt all network traffic
Filter incoming and outgoing network traffic
Backup critical data
Prevent malware from entering the network
The process of scanning storage devices for malware is called:
Data recovery
Malware analysis
Antivirus scanning
Backup restoration
When configuring a firewall, which of the following is NOT a basic technique used?
Packet filtering
Proxy server
Encryption
Circuit-level gateway
What is the purpose of a proxy server in network security?
To prevent unauthorized access by acting as an intermediary between users and the internet
To encrypt data sent over the network
To monitor network performance
To back up system files automatically
A company’s network security policy should address:
User access levels
Authentication methods
Data encryption requirements
All of the above
What is the difference between symmetric and asymmetric encryption?
Symmetric encryption uses a single key for both encryption and decryption, while asymmetric encryption uses different keys
Asymmetric encryption is faster than symmetric encryption
Symmetric encryption is more secure than asymmetric encryption
Asymmetric encryption is used for hashing
Which of the following best describes social engineering?
Using physical barriers to protect computer systems
Manipulating people to gain unauthorized access to systems or data
Encrypting data for secure transmission
Using software to block access to sensitive data
In network security, what is an Intrusion Detection System (IDS)?
A system that prevents unauthorized access to a network
A system that detects and alerts on potential network intrusions
A system that automatically backs up data to a secure location
A system used to encrypt network traffic
The purpose of a firewall is to:
Scan for malware
Block unauthorized access to a network
Encrypt network traffic
Provide backup protection
Which of the following is NOT a method used to protect against phishing attacks?
Which of the following is an example of a security measure to prevent unauthorized network access?
Using a VPN
Using social media accounts for authentication
Disabling firewalls
Allowing unrestricted access to external devices
What is the purpose of network access control (NAC)?
To control access to a network based on security policy enforcement
To encrypt network traffic
To monitor network performance
To manage user authentication
Which protocol is commonly used for securing emails?
SMTP
IMAP
S/MIME
FTP
What does the term "port blocking" refer to in network security?
Blocking physical ports on a device
Blocking communication on specific network ports to reduce attack vectors
Preventing unauthorized access to wireless networks
Blocking specific applications from accessing the internet
A firewall rule that only allows traffic from a trusted IP address is an example of:
Proxy filtering
Packet filtering
Application gateway
Circuit-level gateway
What is an advantage of using a VPN?
It allows secure communication over an insecure network
It provides unlimited bandwidth
What is the main function of IPSec in network security?
To provide secure communication over the internet
To monitor network performance
To filter incoming packets
To block unauthorized access
Which of the following is NOT an example of a physical security measure?
Surveillance cameras
Encryption software
Locking server racks
Biometric access controls
What is the most effective way to handle spam emails?
Delete them immediately
Respond to the sender to request removal
Mark them as spam and use filtering software
Forward them to IT support
What is a botnet?
A system of connected devices that work together to perform malicious activities
A type of firewall used to block malicious traffic
A protocol used to secure web traffic
A method of encrypting sensitive data
What is the first step in the incident response process?
Eradicate the threat
Contain the incident
Detect and identify the incident
Recover from the incident
