wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Domains 1-2 Sec+

Total questions: 25

Worksheet time: 13mins

Name
Class
Date
1.

A hacker at CyberThreat Inc. sends an email with a malicious link that, when clicked, downloads malware onto the victim's system. What type of attack is this?

a)

SQL Injection

b)

Phishing

c)

Man-in-the-middle

d)

Cross-site scripting

2.

Which of the following is an administrative control?

a)

Antivirus software

b)

Security awareness training

c)

Biometric authentication

d)

Intrusion prevention system

3.

Which type of threat intelligence provides real-time alerts about current attack trends?

a)

Tactical

b)

Strategic

c)

Operational

d)

Technical

4.

What makes a zero-day vulnerability especially dangerous?

a)

It can only be exploited in specific conditions

b)

It is patched within 24 hours

c)

It has no available fix at the time of discovery

d)

It only affects open-source software

5.

Which security framework is commonly used for managing risk in U.S. government organizations?

a)

ISO 27001

b)

NIST Cybersecurity Framework

c)

PCI DSS

d)

ITIL

6.

SecureBank Ltd. detects multiple failed login attempts from different IP addresses on an employee account. Which attack is likely occurring?

a)

Phishing

b)

Brute force attack

c)

SQL Injection

d)

DNS Spoofing

7.

An attacker at DataSafe Inc. exploits a software bug to gain administrator rights on a system. What type of attack is this?

a)

SQL Injection

b)

Privilege Escalation

c)

Cross-site scripting

d)

Session Hijacking

8.

A hidden program at TechSecure Corp. records keystrokes and sends them to an attacker. What type of malware is this?

a)

Rootkit

b)

Ransomware

c)

Keylogger

d)

Worm

9.

Which attack involves inserting malicious SQL statements into a web form to access a database?

a)

Cross-Site Scripting (XSS)

b)

SQL Injection

c)

DNS Poisoning

d)

Session Hijacking

10.

What security method should XYZ Wireless Corp. use to prevent evil twin attacks?

a)

WPA2-PSK

b)

VPN

c)

Captive portal

d)

MAC filtering

11.

What is the primary purpose of a firewall in network security?

a)

To block unauthorized access

b)

To encrypt data

c)

To monitor network traffic

d)

To provide VPN services

12.

Which type of malware disguises itself as legitimate software to trick users into installing it?

a)

Spyware

b)

Trojan Horse

c)

Adware

d)

Worm

13.

What is the main function of a honeypot in cybersecurity?

a)

To encrypt communications

b)

To provide backup for critical systems

c)

To store sensitive data securely

d)

To attract and analyze potential attackers

14.

Which type of attack involves intercepting and altering communication between two parties without their knowledge?

a)

Phishing

b)

Man-in-the-middle

c)

SQL Injection

d)

Denial of Service

15.

What is the primary purpose of implementing a DMZ (Demilitarized Zone) in network architecture?

a)

To encrypt sensitive information

b)

To provide a backup for data

c)

To monitor employee activity

d)

To isolate internal networks from external threats

16.

Which of the following is a physical security measure?

a)

Firewall

b)

Biometric access control

c)

Antivirus software

d)

Encryption

17.

Which protocol is primarily used to secure communications over a computer network?

a)

HTTP

b)

SSL/TLS

c)

FTP

d)

SMTP

18.

What is the main purpose of two-factor authentication (2FA) in cybersecurity?

a)

To enhance security by requiring two forms of verification

b)

To provide a backup for passwords

c)

To monitor network traffic

d)

To encrypt data

19.

Which type of malware replicates itself to spread to other computers?

a)

Adware

b)

Spyware

c)

Worm

d)

Trojan Horse

20.

What is the primary function of an intrusion detection system (IDS) in cybersecurity?

a)

To encrypt sensitive data

b)

To detect and alert on suspicious activities

c)

To manage user identities

d)

To prevent unauthorized access

21.

Which type of attack involves overwhelming a system with traffic to make it unavailable to users?

a)

SQL Injection

b)

Man-in-the-middle

c)

Denial of Service (DoS)

d)

Phishing

22.

What is the main purpose of encryption in data security?

a)

To monitor data access

b)

To compress data for storage

c)

To hide data from unauthorized users

d)

To backup data

23.

What is the primary goal of implementing a VPN in a corporate network?

a)

To block malware

b)

To monitor employee productivity

c)

To provide secure remote access

d)

To increase internet speed

24.

Which of the following is a common method used to protect against phishing attacks?

a)

Using strong passwords

b)

Implementing email filtering

c)

Installing antivirus software

d)

Encrypting data

25.

What is the main function of a security information and event management (SIEM) system?

a)

To encrypt sensitive data

b)

To provide real-time analysis of security alerts

c)

To manage user identities

d)

To prevent unauthorized access