Font size
WorksheetsEHE Module 8 Wireless Security
Total questions: 63
Worksheet time: 35mins
Which of the following terms describes the amount of information broadcast over a connection and is measured in terms of “number of bits per seconds (bps)”?
Bandwidth
Industrial, scientific, and medical (ISM) band
Frequency-hopping spread spectrum (FHSS)
Orthogonal frequency-division multiplexing (OFDM)
Which of the following components of a wireless network is used to connect wireless devices to a wireless/wired network and serves as a switch between a wired LAN and wireless network?
Basic service set identifier
Association
Bandwidth
Access point
Identify the IEEE 802.16 standard, a wireless communications standard designed to provide multiple physical layer (PHY) and MAC options.
Wi-Fi
ZigBee
Bluetooth
WiMax
Which of the following techniques influences the spectral efficiency of 4G and 5G wireless communication services, reduces interference, and increases channel robustness?
BSSID
OFDM
FH-CDMA
MIMO-OFDM
Which of the following wireless standards guides prioritizing data, voice, and video transmissions enabling QoS?
802.11e
802.11g
802.11d
802.11n
Smith, a network administrator, was instructed to enhance wireless security and implement a centralized authentication mechanism for clients. To achieve this, Smith implemented a wireless encryption technology that uses EAP or RADIUS for centralized client authentication using multiple authentication methods, such as token cards, Kerberos, and certificates. Which of the following technology has Smith implemented in the above scenario?
WPA3-Personal
WPA3-Enterprise
WPA2-Personal
WPA2-Enterprise
Cedrick, a security professional, implemented stronger encryption and authentication for protecting his organization’s network from wireless attacks. He utilized an encryption technique that uses TKIP for data encryption and eliminates the weaknesses of WEP by including per-packet mixing functions, MICs, extended IVs, and re-keying mechanisms. Identify the encryption technique employed by Cedrick in the above scenario.
CCMP
WEP
WPA
LEAP
Ashley, a security professional, analyzed the authentication and wireless encryption techniques implemented in her organization for BYOD policy. While doing so, she noticed that certain techniques were outdated. In this regard, she implemented a Wi-Fi security protocol using GCMP-256 for encryption and HMAC-SHA-384 for authentication. Identify the protocol employed by Ashley in the above scenario.
WEP
WPA
PEAP
WPA3
Identify the mode of operation that uses EAP or RADIUS for centralized client authentication using multiple authentication methods, such as token cards, Kerberos, and certificates.
WPA2-Personal
WPA3-Enterprise
WPA2-Enterprise
WPA3-Personal
Which of the following protocols uses AES-GCMP 256 encryption algorithm, ECDH and ECDSA key management, and BIP-GMAC-256 integrity check mechanism to secure wireless communication?
WEP
WPA
WPA3
WPA2
Douglas, a professional hacker, attempts to impede legitimate traffic to an organization’s employees by sending large amounts of malicious traffic. He uses a technique that stakes out the target area from a nearby location with a high-gain amplifier that drowns out a legitimate AP and disconnects the employees from it. Which of the following attacks has Douglas launched in the above scenario?
Jamming signal attack
Honeypot AP attack
Rogue AP attack
Ad-Hoc connection attack
Samson, an attacker, targets an organization’s network to steal sensitive information such as credit card numbers, passwords, chat messages, emails, and photos. He uses a technique to compromise the vulnerability in the four-way handshake process of the WPA2 protocol by forcing Nonce reuse.
Identify the technique employed by Samson in the above scenario.
Rogue AP attack
Honeypot AP attack
Key reinstallation attack
AP MAC spoofing
Which of the following tools from Aircrack-ng Suite decrypts WEP/WPA/ WPA2 and can be used to strip wireless headers from Wi-Fi packets?
Airgraph-ng
Airmon-ng
Airdecap-ng
Easside-ng
Which of the following tools creates a virtual tunnel interface to monitor encrypted traffic and inject arbitrary traffic into a network?
Airtun-ng
Airgraph-ng
Airdrop-ng
WZCook
Alvin, a professional hacker, targeted the Bluetooth-enabled device of an employee in an organization that handles critical information. Alvin initiated an attack on the target device by sending an oversized ping packet, causing a buffer overflow.
Identify the type of attack performed by Alvin in the above scenario.
Bluesmacking
Bluebugging
Bluejacking
Btlejacking
Meghan, a professional hacker, was researching the latest vulnerabilities and practicing how to compromise them. She targeted an employee and performed footprinting to determine the make and model of the employee’s Bluetooth-enabled device. She used the gathered information to create infographics of the model and manufacturer and analyzed the information to check whether the device had any exploitable vulnerabilities. Identify the type of attack performed by Meghan in the above scenario.
BluePrinting
Bluesnarfing
Bluebugging
BlueSniff
Which of the following practices should be followed while configuring a wireless network to defend against potential wireless attacks?
Enable remote router login and wireless administration
Enable MAC address filtering on APs or routers
Keep the default ID as it is after WLAN configuration
Enable SSID broadcasts
Enable SSID broadcasts
Which of the following practices helps security professionals secure the network from wireless threats?
Avoid using SSID cloaking
Limit the strength of the wireless network
Enable remote router login and wireless administration
Always use network name in passphrases
Which of the following practices can allow attackers to evade the wireless authentication process?
Never update drivers on all wireless equipment
Use a centralized server for authentication
Disable the network when not required
Enable server verification on the client side using 802.1X authentication
Which of the following countermeasures helps users defend their devices against Bluetooth attacks?
Keep sequential key combinations as PINs to pair with devices
Dis-encryption when establishing a Bluetooth connection
Always keep Bluetooth in the enabled state
Disable automatic connections to public Wi-Fi networks
Which of the following practices is NOT a countermeasure against Bluetooth attacks?
Keep the device in the discoverable mode
Use a VPN for secure connections between Bluetooth devices
Disable automatic connections to public Wi-Fi networks
Do not accept any unknown or unexpected request for pairing
This type of wireless access point has either been installed on a secure company
network without explicit authorization from a local network administrator or has been
created to allow a hacker to conduct a man-in-the-middle attack.
A small office’s wireless network was compromised recently by an attacker who guessed the password to gain access. The attacker then modified the DNS settings on the router and spread malware to the entire network. Which of the following configurations MOST likely allowed the attack to take place?
Guest network
Default login
Outdated firmware
WEP
Which wireless security protocol was designed to provide a higher level of security than WEP by using TKIP for encryption?
WEP
WPA3
WPA2
WPA
What is the primary purpose of using MAC address filtering in a wireless network?
To increase network speed
To restrict network access to specific devices
To enhance data encryption
To improve signal strength
Which wireless security protocol is considered the most secure?
WEP
WPA
WPA2
WPA3
Which of these IEEE WLANs has the highest data rate?
802.11b
802.11n
802.11g
802.11ac
Why is a rogue AP a security vulnerability?
It uses the weaker IEEE 802.15.ax protocol.
It allows an attacker to bypass many of the network security configurations.
It requires the use of vulnerable wireless probes on all mobile devices.
It conflicts with other network firewalls and can cause them to become disabled.
If Cora tries to access a free public Wi-Fi at a local coffee shop that requires her to first agree to an Acceptable Use Policy (AUP) before continuing, what type of AP has she encountered?
web-based
captive portal
rougue
internet content filter
What is the unauthorized access of information from a wireless device through a Bluetooth connection called?
bluejacking
bluesnarfing
Bluetooth snatching
Bluetooth spoofing
AES-CCMP is the encryption protocol standard used in _________.
Bluetooth
WPA2
WPA3
WPA
Which of the following attacks involves sending unsolicited messages to Bluetooth-enabled devices?
Bluejacking
Bluesnarfing
Bluebugging
Bluesmacking
What is the primary function of a wireless access point in a network?
To encrypt data transmitted over the network
To connect wireless devices to a wired network
To act as a firewall for the network
To provide a wired connection to devices
Which of the following is a method to enhance the security of a wireless network by hiding its SSID?
SSID encryption
SSID filtering
SSID cloaking
SSID broadcasting
Which of the following is a method to enhance wireless security?
Using default passwords
Disabling encryption
Enabling WPA3
Broadcasting SSID
Sam, a professional hacker, was assigned to attack Bluetooth-enabled devices at a coffee shop. He employed a process to compromise the Bluetooth devices that are set to discoverable mode, then sniffed sensitive data from targeted devices. Which of the following types of attack has Sam initiated in the above scenario?
Bluebugging
Bluesmacking
Man-in-the-mobile
Bluesnarfing
Jack, a professional hacker, has performed an attack on Bluetooth paired devices. He leveraged a vulnerability in Bluetooth and breached the security mechanisms to eavesdrop on all the data being shared. Jack managed to intercept the data transfer between devices and gained access to chats and documents being shared. Identify the type of attack Jack has performed in the above scenario.
KNOB attack
BluePrinting
BlueSniff
Bluesnarfing
What is the primary purpose of using a captive portal in a public Wi-Fi network?
To authenticate users before granting access
To encrypt data transmission
To increase bandwidth
To disable SSID broadcasting
Which of the following is a method to prevent unauthorized access to a wireless network by filtering devices based on their MAC addresses?
SSID cloaking
MAC address filtering
WPA2 encryption
Channel bonding
Bluetooth falls under the category of ______________.
local area network (LAN)
short area network (SAN)
paired-device network (PDN)
personal area network (PAN)
Which technology is predominately used for contactless payment systems?
wireless local area network (WLAN)
Bluetooth
near field communication (NFC)
Temporal Key Integrity Protocol (TKIP)
Which of these IEEE WLANs has the highest data rate?
802.11b
802.11n
802.11g
802.11ac
Why is a rogue AP a security vulnerability?
It uses the weaker IEEE 802.15.ax protocol.
It allows an attacker to bypass many of the network security configurations.
It requires the use of vulnerable wireless probes on all mobile devices.
It conflicts with other network firewalls and can cause them to become disabled.
If Cora tries to access a free public Wi-Fi at a local coffee shop that requires her to first agree to an Acceptable Use Policy (AUP) before continuing, what type of AP has she encountered?
web-based
captive portal
rougue
internet content filter
Which of these is a vulnerability of MAC address filtering?
The user must enter the MAC.
MAC addresses are initially exchanged between wireless devices and the AP in an unencrypted format.
APs use IP addresses instead of MACs.
Not all operating systems support MACs.
What is the Extensible Authentication Protocol (EAP)?
a framework for transporting authentication protocols
a subset of WPA2
the protocol used in TCP/IP for authentication
a technology used by IEEE 802.11 for encryption
What is the purpose of a wireless SSID?
to reliably receive and transmit data from wireless clients
to securely transmit data between wireless clients
to uniquely identify a wireless network
to securely connect a wireless client to an access point
A user is configuring a wireless access point and wants to prevent any neighbors from discovering the network. What action does the user need to take?
Disable SSID broadcast.
Configure a DNS server.
Enable WPA encryption.
Configure DMZ settings.
A user has just purchased a generic home router and would like to secure it. What should be done to help secure the wireless home router?
Set a private IPv4 network for the internal network.
Change the default SSID.
Allow only IPv6 traffic to enter the router.
Change the default administrator password.
Which of the following is a common method used to secure a wireless network by requiring a password for access?
Channel bonding
WPA2 encryption
MAC address filtering
SSID broadcasting
What is the primary purpose of using a VPN in a wireless network?
To enhance signal strength
To provide secure remote access
To increase network speed
To disable SSID broadcasting
Which of the following wireless security protocols is considered the most secure for protecting data transmission?
WPA3
WPA2
WPA
WEP
Smith, a network administrator, was instructed to enhance wireless security and implement a centralized authentication mechanism for clients. To achieve this, Smith implemented a wireless encryption technology that uses EAP or RADIUS for centralized client authentication using multiple authentication methods, such as token cards, Kerberos, and certificates.
Which of the following technology has Smith implemented in the above scenario?
WPA2-Personal
WPA3-Enterprise
WPA3-Personal
WPA2-Enterprise
Identify the IEEE 802.16 standard, a wireless communications standard designed to provide multiple physical layer (PHY) and MAC options.
Wi-Fi
ZigBee
Bluetooth
WiMax
Ashley, a security professional, analyzed the authentication and wireless encryption techniques implemented in her organization for BYOD policy. While doing so, she noticed that certain techniques were outdated. In this regard, she implemented a Wi-Fi security protocol using GCMP-256 for encryption and HMAC-SHA-384 for authentication. Identify the protocol employed by Ashley in the above scenario.
WEP
WPA
PEAP
WPA3
Douglas, a professional hacker, attempts to impede legitimate traffic to an organization’s employees by sending large amounts of malicious traffic. He uses a technique that stakes out the target area from a nearby location with a high-gain amplifier that drowns out a legitimate AP and disconnects the employees from it. Which of the following attacks has Douglas launched in the above scenario?
Jamming signal attack
Honeypot AP attack
Rogue AP attack
Ad-Hoc connection attack
Samson, an attacker, targets an organization’s network to steal sensitive information such as credit card numbers, passwords, chat messages, emails, and photos. He uses a technique to compromise the vulnerability in the four-way handshake process of the WPA2 protocol by forcing Nonce reuse.
Identify the technique employed by Samson in the above scenario.
Rogue AP attack
Honeypot AP attack
Key reinstallation attack
AP MAC spoofing
Alvin, a professional hacker, targeted the Bluetooth-enabled device of an employee in an organization that handles critical information. Alvin initiated an attack on the target device by sending an oversized ping packet, causing a buffer overflow.
Identify the type of attack performed by Alvin in the above scenario.
Bluesmacking
Bluebugging
Bluejacking
Btlejacking
Meghan, a professional hacker, was researching the latest vulnerabilities and practicing how to compromise them. She targeted an employee and performed footprinting to determine the make and model of the employee’s Bluetooth-enabled device. She used the gathered information to create infographics of the model and manufacturer and analyzed the information to check whether the device had any exploitable vulnerabilities. Identify the type of attack performed by Meghan in the above scenario.
BluePrinting
Bluesnarfing
Bluebugging
BlueSniff
This type of wireless access point has either been installed on a secure company
network without explicit authorization from a local network administrator or has been
created to allow a hacker to conduct a man-in-the-middle attack.
Which of the following is a method to enhance the security of a wireless network by hiding its SSID?
SSID encryption
SSID filtering
SSID cloaking
SSID broadcasting
Jack, a professional hacker, has performed an attack on Bluetooth paired devices. He leveraged a vulnerability in Bluetooth and breached the security mechanisms to eavesdrop on all the data being shared. Jack managed to intercept the data transfer between devices and gained access to chats and documents being shared. Identify the type of attack Jack has performed in the above scenario.
KNOB attack
BluePrinting
BlueSniff
Bluesnarfing
If Cora tries to access a free public Wi-Fi at a local coffee shop that requires her to first agree to an Acceptable Use Policy (AUP) before continuing, what type of AP has she encountered?
web-based
captive portal
rougue
internet content filter
