Worksheets3A-DDC313-SW5
Total questions: 20
Worksheet time: 7mins
Scenario:
An attacker intercepts and alters communications between a client and server over an unsecure network.
What type of attack is this?
Man-in-the-Middle (MITM)
DDoS
Phishing
SQL Injection
Scenario:
An attacker floods a network with excessive traffic from multiple sources to overwhelm and incapacitate network resources.
What type of attack is this?
Distributed Denial of Service (DDoS)
Spoofing
SQL Injection
Buffer Overflow
Scenario:
A hacker exploits a weakness in a network protocol to gain unauthorized access to sensitive data being transferred between two devices.
What attack is this?
ARP Spoofing
DNS Spoofing
Man-in-the-Middle Attack
Phishing
Scenario:
A network is compromised by an attacker using a tool to send a massive number of authentication requests in a short time, attempting to guess login credentials.
What type of attack is this?
Brute Force Attack
Phishing
Cross-Site Scripting (XSS)
Keylogging
Scenario:
An attacker sends fake Address Resolution Protocol (ARP) messages to redirect traffic on a local network.
What is this attack called?
DNS Spoofing
ARP Poisoning
MITM Attack
Phishing
Scenario:
An attacker tries to exhaust the available connections to a server by sending numerous incomplete connection requests.
What type of attack is this?
DDoS SYN Flood
SQL Injection
Cross-Site Scripting (XSS)
Ransomware
Scenario:
A hacker exploits an unpatched vulnerability in a router, gaining administrative access to the device and manipulating its configurations, before the administrator can fix it.
What type of attack is this?
Brute Force Attack
Zero-Day Attack
Ransomware
Phishing
Scenario:
An attacker takes over a legitimate user's session after intercepting their session cookie.
What attack is this?
Session Hijacking
Phishing
DNS Spoofing
Cross-Site Request Forgery (CSRF)
Scenario:
A hacker compromises a router's DNS settings, redirecting users to malicious websites instead of legitimate ones.
What type of attack is this?
DNS Spoofing
Man-in-the-Middle (MITM)
IP Spoofing
DoS
Scenario:
An attacker floods a network with unnecessary data packets, forcing it to slow down or crash.
What type of attack is this?
Ping of Death
SQL Injection
Cross-Site Scripting (XSS)
Phishing
Scenario:
A cybercriminal infects a device on the network with malware that sends out spam emails to external servers.
What type of attack is this?
Botnet Attack
Man-in-the-Middle Attack
Cross-Site Scripting (XSS)
Phishing
Scenario:
An attacker impersonates a trusted network service, such as a DNS server, to gain sensitive data.
What type of attack is this?
DNS Spoofing
ARP Spoofing
IP Spoofing
Phishing
Scenario:
A hacker sends large amounts of traffic to a target network with the goal of crashing it. The traffic is designed to overwhelm the network’s resources.
What type of attack is this?
Distributed Denial of Service (DDoS)
Brute Force Attack
SQL Injection
Cross-Site Scripting (XSS)
Scenario: An attacker exploits a vulnerability in the TCP/IP protocol to send a large number of incomplete connection requests, causing the server to crash.
What type of attack is this?
SYN Flood
DNS Spoofing
ARP Spoofing
Ransomware
Scenario:
A hacker manipulates the HTTP headers of a web request to trick a web server into executing malicious code.
What type of attack is this?
Cross-Site Request Forgery (CSRF)
SQL Injection
Cross-Site Scripting (XSS)
Buffer Overflow
Scenario:
An attacker uses social engineering tactics to gain access to a secure network by deceiving an employee into revealing their credentials.
What type of attack is this?
Phishing
Man-in-the-Middle Attack
ARP Spoofing
Cross-Site Scripting
Scenario:
A hacker uses a fake IP address to disguise their location and bypass security systems.
What type of attack is this?
IP Spoofing
SYN Flood
DDoS Attack
DNS Spoofing
Scenario:
An attacker exploits a weak spot in a network device to gain unauthorized access to the network and control the device remotely.
What type of attack is this?
Default Credential Attack
SQL Injection
Brute Force Attack
Session Hijacking
Scenario:
A hacker uses a malicious website to trick a user into unknowingly executing a malicious script that affects their network session.
What type of attack is this?
Cross-Site Request Forgery (CSRF)
Cross-Site Scripting (XSS)
Man-in-the-Middle (MITM)
SQL Injection
Scenario:
An attacker sends a flood of ICMP echo requests to a target network, trying to exhaust its resources and crash the system.
What type of attack is this?
Ping Flood
SYN Flood
DDoS
ARP Spoofing
