NEW
Font size
WorksheetsIT Specialist Cybersecurity
Total questions: 72
Worksheet time: 36mins
What does cyber security include?
Only the technology used to protect a computer system from threat
Only the processes used to protect a computer system from threat
Both the processes and technology used to protect a computer system from threat
The software used to enhance the performance of a computer system
Which of the following is NOT an example of a threat to cyber security?
Cyber attacks
Cyber crime
Data loss/theft
Software updates
What is 'unauthorized access' commonly referred to as?
Phishing
Hacking
Spamming
Malware
According to the diagram, which of the following is a reason for ensuring cyber security?
Data changes
Confidential data
Legal obligations
All of the above
According to the learning material, what is considered the biggest threat to cyber security?
Malware
Hackers
People
System vulnerabilities
Why are passwords used?
To share information freely
To protect private and personal information from unauthorized access
To make it easier to access information
To create a public profile
What are users required to do with their passwords?
Share them with friends
Keep them secret
Use a common password for all accounts
Write them down in a public place
How might not keeping a password secret result in a cyber security issue?
It can lead to improved security
It can prevent unauthorized access
It can result in unauthorized access to personal information
It has no effect on security
What does the term "invariability" refer to in the context of passwords?
Changing passwords frequently
Using different passwords for each account
Using the same password(s) for multiple devices or accounts
The strength of a password
Which of the following is an example of a weak password?
A random mix of letters, numbers, and symbols
A password with a long string of characters
"password1"
A password that is used for only one account
Why are default passwords considered a security risk?
They are difficult to remember
They are unique to each device
Manufacturers may use the same or similar default passwords across multiple devices
They expire too quickly
What is an important characteristic of effective passwords?
They should be easy to guess.
They should be unique.
They should be used many times.
They should be short.
What makes a strong password difficult to guess?
Using the same character repeatedly.
Using a variety of different characters.
Using a common pattern.
Using personal information.
Why are longer passwords considered more secure than shorter passwords?
They are easier to remember.
They have fewer possible combinations.
They have a higher number of possible combinations.
They are quicker to type.
According to Example 1, how many possibilities are there for a password that is four characters long and uses all lower case letters?
14,776,336 possibilities
218,340 billion possibilities
456,976 possibilities
8 possibilities
What does Example 2 illustrate about password strength?
Using both lower and upper case letters and numbers increases the number of possibilities for a four-character password to over 14 million.
Using only lower case letters for a four-character password results in the highest number of possibilities.
Including symbols in a four-character password results in 14,776,336 possibilities.
A four-character password with upper case letters only has 14,776,336 possibilities.
What is the number of possibilities for an eight-character password that includes both lower and upper case letters and numbers, as shown in Example 3?
456,976 possibilities
14,776,336 possibilities
218,340 billion possibilities
8 possibilities
What should strong passwords include according to the information below the examples?
Only upper case letters and numbers
Only lower case letters and symbols
Upper and lower case letters, numbers, and symbols
Only numbers and symbols
What are the two threats posed by removable media such as USB sticks or removable hard drives?
Data theft and software updates
Malware infection and hardware damage
Data theft and malware infection
Hardware damage and software updates
Why is it important to regularly update software?
To improve the user interface
To fix any known security issues
To increase the software size
To change the software logo
What makes unpatched systems vulnerable to attacks?
Regular updates
Security flaws or weak points in the code
User errors
Strong passwords
Who can exploit the security flaws or weak points in software?
Software developers
Cyber criminals
Regular users
Antivirus programs
What do access rights control in a system?
The physical components a person can touch
The parts of a system a person can access and use
The time a person can spend on a system
The number of systems a person can access
How can access rights be set?
Based on the system's age
According to the weather conditions
Individually or determined by an individual's role with an organisation
By the number of hours a person works
Who can access and edit their own files but not those of other students or staff in a school?
Network managers
Teaching staff
Students
Other staff members
Who can access their own files and also the files and folders of students, but cannot access other staff members' files?
Students
Other staff members
Network managers
Teaching staff
Who can access all files and folders on the school's servers?
Students
Teaching staff
Network managers
Other staff members
What could be a consequence of setting access rights incorrectly?
Improved system performance
Enhanced user convenience
A major security risk
Increased data storage efficiency
What might happen if a user's access rights are set incorrectly?
They might receive a bonus
They could be blocked from accessing data they are allowed to access
They could have unlimited access to all files
Their computer might run faster
What is the purpose of creating malware?
To protect a computer system
To enhance computer performance
To cause harm to a computer system
To clean a computer system from viruses
What does "Malware" stand for?
Malicious hardware
Malicious software
Malicious network
Malicious user
Which of the following is NOT a reason for why people might engage in certain activities according to the diagram?
Money
Education
Revenge
Curiosity
What is a possible motivation for someone to engage in an activity as per the diagram?
Grow Botnets
Physical Fitness
Dietary Choices
Sleeping Patterns
What is a virus in the context of computers?
A type of software that enhances computer performance
A program that is installed on a computer without permission with the intention of doing harm
A tool used to clean computers from malware
A physical component that can be added to a computer system
What does a computer virus do to a file on the computer?
It compresses the file to save space
It encrypts the file for security purposes
It makes a copy of itself and infects another file
It converts the file into a different format
What can some viruses do to a computer?
Improve the computer's hardware
Delete or damage data and programs
Increase the computer's processing speed
Create backup copies of files
How are worms similar to viruses?
They require a host file to replicate
They are not self-contained
They can damage and delete data and programs
They cannot replicate on their own
What is a characteristic feature of worms that differentiates them from viruses?
Worms require user permission to activate
Worms need a host file to work and replicate
Worms are not capable of copying themselves
Worms are fully self-contained and can copy themselves without a host file
Why are Trojans named after the Ancient Greek story of the Trojan Horse?
Because they are a type of horse.
Because they are a strong form of malware that cannot be broken.
Because they look like a program a user would want, but execute harmful code.
Because they are an ancient form of computer virus.
What happens when a Trojan program is opened?
It simply crashes the computer.
It executes another piece of code designed to cause harm.
It multiplies itself like a virus.
It steals the user's data without executing any other code.
What is spyware?
A security program that protects users from online threats.
A program that tracks a user's activity online and collects information without their knowledge.
A type of antivirus software.
A tool for improving computer performance.
What can some spyware programs do without permission?
Improve browser and computer settings.
Alter browser settings, software settings, or even computer settings.
Provide secure data encryption.
Enhance the speed of internet connectivity.
How is the data collected by spyware typically sent back to the hacker?
Through encrypted email attachments.
Via physical media like USB drives.
Often through cookies stored on the user's computer.
Through secure VPN connections.
What is Social Engineering described as in the context of the image?
The process of building social networks.
The art of manipulating people so they give up confidential information.
The study of social interactions and society.
The engineering of social media platforms.
What is social engineering often referred to as?
Digital manipulation
Human hacking
Cyber deception
Online trickery
Which of the following is NOT a common technique used by cyber criminals in social engineering?
Shouldering
Blogging
Phishing
Pharming
What is "Shouldering" in the context of obtaining personal information?
A physical exercise
A type of computer virus
A low-tech way of obtaining personal information from a person
A digital encryption method
How does an attacker typically carry out "Shouldering"?
By sending phishing emails
By being physically near to the victim and watching over their shoulder
By hacking into a person's computer
By intercepting wireless communications
What might an attacker use in addition to physical proximity to carry out "Shouldering"?
Malware
Hidden cameras or CCTV systems
Social engineering
Firewall breaches
What is shouldering commonly used for?
Sharing personal information willingly
Obtaining information a user has to physically enter or carry out
Sending emails
Making phone calls
Which of the following is an example of information that can be obtained through shouldering?
Favorite color
PIN numbers
Pet's name
Favorite food
What is the act of creating a made up scenario to engage a victim and obtain personal information or money called?
Blogging
Vlogging
Blagging
Scamming
What does blagging often make use of to get the target to give information or do something they wouldn't normally do?
Physical force
Confidence tricks
Legal threats
Advertising
Which technique is described by the example "A network support team advises there is a bug in the software meaning they could lose all data if it isn’t patched."?
Worry
Fear
Request for help
Urgency
What technique does the example "An email from a family friend says that they are in trouble abroad and need money." illustrate?
Worry
Fear
Request for help
Urgency
Which technique involves a receptionist getting a phone call from a company asking for the contact details of their IT manager?
Worry
Fear
Request for help
Urgency
What technique is being used when a web page says it has blocked a virus and you need to give your details to recover the files?
Worry
Fear
Request for help
Urgency
Where can blagging take place?
Only online
Only offline
Both online and offline
In secure environments only
What might an offline blagging scenario involve?
A stranger asking for directions
Someone pretending to be an authority figure to get information
A friend asking for personal details
Receiving a promotional call
What is a common tactic used in online blagging scenarios?
Offering a prize for personal information
Sending spam emails with no specific target
Playing on the victim's emotions to extract information
Asking for credit card details for a free trial
What is the goal of phishing attacks as described in the material?
To provide users with accurate information from trusted organizations.
To obtain as much personal information as possible from the victim.
To offer assistance in securing personal accounts.
To confirm the user's identity for security purposes.
Which of the following methods is mentioned in the material as a way phishing attacks are carried out?
In-person conversations.
Emails, texts, or phone calls pretending to be from a trusted organization.
Official letters from government agencies.
Verified social media accounts.
What do attackers often do to make phishing messages look legitimate?
They use poor grammar and spelling to alert the user.
They copy the branding and look of a typical message sent from the company.
They always use a genuine "from" address.
They avoid including any links in the message.
What is a common characteristic of a phishing message's "from" address?
It is usually blank to maintain anonymity.
It is clearly labeled as a phishing attempt.
It may use a forged "from" address.
It is always a well-known public email domain.
Which of the following is NOT a warning sign of a phishing email?
Impersonal greeting
Sender's address often different
Request for personal information
Accurate spelling and grammar
What might indicate that a link in an email is forged?
The link takes you to the official website
The link has a secure HTTPS protocol
The link text is different from the actual URL
The link offers a discount on products
What is a common tactic used by phishing emails to create a sense of urgency?
Offering a prize
Requesting immediate action to avoid a negative consequence
Providing educational content
Complimenting the recipient
What is pharming?
A farming technique for pharmaceuticals
A technique intended to redirect a website's traffic to another, fake site
A method of harvesting user data through legitimate websites
A type of computer virus that damages files
Where is malware installed in a pharming attack?
On a remote server unrelated to the website
On the user's smartphone
Either locally controlling the browser, or on the web server itself
Within the website's code
What does pharming malware alter to redirect traffic?
The website's SSL certificate
The IP address in the DNS entry the browser keeps for the website
The user's browser preferences
The website's homepage link
What is pharming in the context of online security?
A technique where a user is redirected to a fraudulent website even when they type in the correct URL.
A method of planting malicious software on a user's device without their knowledge.
A type of online shopping scam.
A farming simulation game played over the internet.
Why is pharming a major concern for online banking?
Because it involves the theft of livestock from online farms.
Because it can lead to unauthorized access to a user's bank account.
Because it makes the banking website run slower.
Because it is a new form of online currency.
