wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

EHE Module 03: Information Security Threats

Total questions: 93

Worksheet time: 47mins

Name
Class
Date
1.

What is a threat in the context of information security?

a)

A potential occurrence of an undesirable event that can damage and disrupt an organization

b)

A harmless event that has no impact on an organization

c)

A beneficial event that improves organizational security

d)

A routine event that occurs daily in an organization

2.

Which of the following is an example of a cyber threat?

a)

An attacker stealing sensitive data of an organization

b)

A natural disaster causing a power failure

c)

An unskilled administrator making a mistake

d)

A disgruntled employee leaving the company

3.

What type of threat source is a flood considered?

a)

Natural

b)

Unintentional

c)

Intentional

d)

Internal

4.

Which of the following is an example of an intentional internal threat?

a)

A fired employee

b)

A flood

c)

An unskilled administrator

d)

A hacker

5.

What is malware?

a)

Malicious software that damages or disables computer systems

b)

A harmless software used for entertainment

c)

A beneficial software that enhances system performance

d)

A routine software update

6.

What is one of the effects of malware on computer systems?

a)

Increase system speed

b)

Improve hardware performance

c)

Slow down systems and degrade performance

d)

Enhance data security

7.

Which of the following is a ways malware can enter a system?

a)

Through antivirus software

b)

Instant Messenger applications

c)

Via secure websites

d)

Through email

8.

What is Black hat SEO used for in the context of malware distribution?

a)

To improve website design

b)

To increase website traffic

c)

To rank malware pages highly in search results

d)

To enhance user experience

9.

What is the purpose of a Crypter in malware components?

a)

To download other malware

b)

To protect malware from reverse engineering

c)

To inject code into other processes

d)

To exploit system vulnerabilities

10.

Which component of malware is responsible for concealing its code and intended purpose?

a)

Downloader

b)

Injector

c)

Obfuscator

d)

Exploit

11.

What is a Packer in the context of malware?

a)

A program that allows all files to bundle together into a single executable file via compression to bypass security software detection

b)

A piece of software that allows control over a computer system after it has been exploited

c)

A command that defines malware’s basic functionalities such as stealing data and creating backdoors

d)

A type of malware that records keystrokes

12.

Which of the following is NOT a type of malware?

a)

Trojans

b)

Viruses

c)

Firewalls

d)

Ransomware

13.

What is a Trojan?

a)

A program that allows control over a computer system after it has been exploited

b)

A program in which the malicious or harmful code is contained inside an apparently harmless program or data

c)

A command that defines malware’s basic functionalities such as stealing data

d)

A type of malware that records keystrokes

14.

Which of the following is an indication of a Trojan attack?

a)

The computer screen blinks, flips upside-down, or is inverted

b)

The computer runs faster than usual

c)

The computer automatically updates its software

d)

The computer's battery life improves

15.

How do hackers use Trojans?

a)

To improve the computer's performance

b)

To delete or replace critical operating system files

c)

To install antivirus software

d)

To enhance the computer's graphics

16.

Which of the following is a type of Trojan?

a)

Remote Access Trojans

b)

Antivirus Trojans

c)

Firewall Trojans

d)

Security Trojans

17.

What is a Trojan Horse construction kit used for?

a)

To help attackers construct Trojan horses of their choice

b)

To protect computers from viruses

c)

To create antivirus software

d)

To enhance computer performance

18.

What is a virus?

a)

A self-replicating program that produces its own copy by attaching itself to another program

b)

A program that speeds up computer processes

c)

A software that enhances graphics

d)

A tool for data recovery

19.

What is the Theef RAT Trojan?

a)

A Remote Access Trojan written in Delphi

b)

A type of antivirus software

c)

A tool for data encryption

d)

A program for system optimization

20.

What is the first stage in the virus lifecycle?

a)

Design

b)

Replication

c)

Launch

d)

Detection

21.

Which of the following actions can lead to a computer getting infected by a virus?

a)

Opening infected e-mail attachments

b)

Using a password manager

c)

Installing a firewall

d)

Updating antivirus software regularly

22.

What type of virus is known for changing its code to avoid detection?

a)

Polymorphic Virus

b)

Boot Sector Virus

c)

Macro Virus

d)

Email Virus

23.

Which virus type is specifically designed to affect the boot sector of a computer?

a)

System or Boot Sector Virus

b)

Macro Virus

c)

Encryption Virus

d)

Web Scripting Virus

24.

Which of the following is a type of malware that restricts access to a computer system's files and demands a ransom?

a)

Ransomware

b)

Spyware

c)

Adware

d)

Trojan Horse

25.

What is the primary method of attack used by the Dharma ransomware?

a)

Email campaigns with ransom notes

b)

Social media phishing

c)

Direct download from websites

d)

USB drive infections

26.

What is a characteristic of computer worms?

a)

They require human interaction to spread.

b)

They independently replicate and spread across network connections.

c)

They are used to enhance computer performance.

d)

They are harmless and do not affect system resources.

27.

How does a worm differ from a virus?

a)

A worm replicates on its own, while a virus attaches itself to other programs.

b)

A worm attaches itself to other programs, while a virus replicates on its own.

c)

A worm does not use memory, while a virus does.

d)

A worm cannot spread through networks, while a virus can.

28.

What is the function of a rootkit?

a)

To hide the presence of malicious activities and grant full access to the server.

b)

To enhance the security of the target system.

c)

To prevent the execution of malicious functions.

d)

To detect and remove malware from the system.

29.

Which of the following is an open-source tool used to create worms?

a)

Internet Worm Maker Thing

b)

Batch Worm Generator

c)

C++ Worm Generator

d)

Rootkit Installer

30.

What is a potential risk of installing Potentially Unwanted Applications (PUAs)?

a)

They may pose severe risks to the security and privacy of data.

b)

They enhance system performance.

c)

They provide additional security features.

d)

They are always beneficial for system updates.

31.

What is one of the objectives of a rootkit?

a)

To root the host system and gain remote backdoor access.

b)

To improve system performance.

c)

To enhance antivirus software.

d)

To provide system updates.

32.

What is a characteristic of Adware?

a)

Consumes additional bandwidth and exhausts CPU resources

b)

Hides its process files to avoid detection

c)

Monitors keystrokes on a keyboard

d)

Changes firewall settings

33.

Which of the following is NOT a type of PUA?

a)

Adware

b)

Spyware

c)

Cryptomining

d)

Dialers

34.

What does adware do?

a)

Displays annoying pop-ups

b)

Tracks cookies for marketing purposes

c)

Monitors keystrokes on a keyboard

d)

Causes frequent system lag

35.

What is one way Spyware propagate?

a)

Through drive-by download

b)

By tracking cookies

c)

By consuming additional bandwidth

d)

By monitoring keystrokes

36.

What is one of the functions of a keylogger?

a)

Record every keystroke typed on the user’s keyboard

b)

Increase the speed of the computer

c)

Protect against malware

d)

Improve internet connectivity

37.

What is a botnet?

a)

A collection of compromised computers connected to perform a distributed task

b)

A type of antivirus software

c)

A secure network for data transfer

d)

A tool for enhancing computer graphics

38.

Why do attackers use botnets?

a)

To perform DDoS attacks

b)

To enhance computer graphics

c)

To improve system performance

d)

To secure online transactions

39.

What is fileless malware known for?

a)

Infecting legitimate software without leaving a trace on the disk

b)

Being easily detectable by antivirus software

c)

Improving system performance

d)

Enhancing internet speed

40.

Where does fileless malware typically reside?

a)

In the system’s RAM

b)

On the hard drive

c)

In the cloud

d)

On external storage devices

41.

Which of the following is a fileless propagation technique?

a)

Phishing emails

b)

Installing antivirus software

c)

Regular data backups

d)

Using an infected bootable system disk

42.

What is a recommended countermeasure against Trojans?

a)

Avoid opening email attachments from unknown senders

b)

Use more than one file-type extension

c)

Do not perform regular data backups

d)

Accept programs transferred by instant messaging

43.

Which action should be taken to prevent virus infections?

a)

Regularly update antivirus software

b)

Avoid using firewalls

c)

Open files with multiple extensions

d)

Disable pop-up blockers

44.

What should be done to maintain local workstation file integrity?

a)

Use checksums, auditing, and port scanning

b)

Disable antivirus software

c)

Accept all email attachments

d)

Avoid using firewalls

45.

Which of the following is a recommended remediation for rootkits?

a)

Reinstall OS/applications from a trusted source after backing up critical data

b)

Download files from untrusted sources

c)

Disable all antivirus software

d)

Ignore system updates

46.

What is a key practice to prevent spyware installation on your computer?

a)

Set Internet security settings to low

b)

Open emails from unknown senders

c)

Enable a firewall

d)

Disable antivirus software

47.

Why is it important to regularly update antivirus and anti-spyware software?

a)

To increase system speed

b)

To protect against known new threats

c)

To avoid using any computer system

d)

To disable unnecessary applications

48.

What should you do to enhance the security of your system against rootkits?

a)

Install network and host-based firewalls

b)

Open all unused ports

c)

Log into accounts with administrative privileges

d)

Disable all security features

49.

Which of the following actions can help prevent spyware from being installed on your system?

a)

Regularly update virus definition files

b)

Set Internet security settings to low

c)

Open attachments from unknown senders

d)

Ignore firewall settings

50.

What should you do before downloading any software to ensure safety?

a)

Download from any website

b)

Read the license agreement and privacy statements

c)

Ignore security warnings

d)

Download immediately without checking

51.

Why should you avoid using administrative mode unnecessarily?

a)

It slows down the computer

b)

You may execute malicious programs

c)

It increases internet speed

d)

It improves software performance

52.

What is a recommended practice to prevent automatic installation of PUAs?

a)

Use the express method during setup

b)

Uncheck unnecessary options during setup

c)

Always choose the recommended method

d)

Install all available options

53.

Which of the following is a keylogger countermeasure?

a)

Use pop-up blockers

b)

Download more software

c)

Disable antivirus

d)

Open all emails

54.

Which software should be installed to protect against keylogging?

a)

Antivirus software

b)

Firewall software

c)

Port scanning software

d)

Email client software

55.

What is a recommended practice to avoid phishing emails?

a)

Regularly update your browser

b)

User training to recognize phishing emails and delete them

c)

Use a virtual keyboard

d)

Install a host-based IDS

56.

What tool can be used to enter passwords securely to avoid keyloggers?

a)

On-screen keyboard

b)

Physical keyboard

c)

Voice recognition software

d)

Handwriting recognition

57.

What is the purpose of using a VPN according to the document?

a)

To increase internet speed

b)

To enable an additional layer of protection through encryption

c)

To block unwanted ads

d)

To monitor system performance

58.

Which of the following is a fileless malware countermeasure?

a)

Enable macros in MS Office documents

b)

Disable PowerShell and WMI when not in use

c)

Install more RAM

d)

Use a faster internet connection

59.

What is the purpose of using User Behavior Analytics (UBA) solutions in cybersecurity?

a)

To detect threats hidden within your data

b)

To improve network speed

c)

To enhance user interface design

d)

To increase storage capacity

60.

What is a common reason behind the existence of vulnerabilities in a system?

a)

Insecure or poor design of the network and application

b)

High-quality software development

c)

Advanced encryption techniques

d)

Regular system updates

61.

What is a characteristic of next-generation antivirus (NGAV) software?

a)

Employs advanced technology such as ML and AI

b)

Uses outdated virus definitions

c)

Relies solely on user input

d)

Operates without internet connectivity

62.

What should be done to applications that are not important?

a)

Uninstall them

b)

Update them regularly

c)

Increase their permissions

d)

Encrypt their data

63.

Which of the following is a common network device vulnerability?

a)

Lack of password protection

b)

Correct folder permissions

c)

Properly authenticated external systems

d)

Secure routing protocols

64.

What is a potential risk of using default passwords on network devices?

a)

Increased security

b)

Enhanced performance

c)

Vulnerability to unauthorized access

d)

Improved user experience

65.

Which protocol is inherently insecure?

a)

HTTP

b)

HTTPS

c)

SSH

d)

SFTP

66.

What can result from misconfiguring internet services like IIS and Apache?

a)

Improved network speed

b)

Exposed Security vulnerabilities

c)

Enhanced data encryption

d)

Reduced network traffic

67.

What is a challenge in implementing and enforcing unwritten security policies?

a)

Lack of awareness

b)

Lack of continuity

c)

Identity theft

d)

Data exfiltration

68.

What impact can vulnerabilities have on a company's reputation?

a)

Increase in sales

b)

Reputational damage

c)

Improved security

d)

Enhanced customer trust

69.

What is the purpose of vulnerability research?

a)

To increase network speed

b)

To discover vulnerabilities and design flaws

c)

To enhance user interface design

d)

To improve software aesthetics

70.

Why might vulnerabilities lead to legal consequences for an organization?

a)

Due to increased profits

b)

Due to compromised customer data

c)

Due to improved security measures

d)

Due to enhanced customer service

71.

What is the primary purpose of a vulnerability assessment?

a)

To identify and classify security vulnerabilities

b)

To install new security software

c)

To update operating systems

d)

To create new user accounts

72.

Which of the following is a limitation of vulnerability-scanning software?

a)

It can detect all vulnerabilities at any time

b)

It does not need regular updates

c)

It is limited in detecting vulnerabilities at a given point in time

d)

It measures the strength of security controls

73.

What type of information can be obtained from vulnerability scanning?

a)

The color of the computer case

b)

The OS version running on devices

c)

The brand of the computer

d)

The number of users logged in

74.

What is the main difference between active and passive vulnerability scanning?

a)

Active scanning involves direct interaction with the target network, while passive scanning does not.

b)

Active scanning is faster than passive scanning.

c)

Passive scanning provides more detailed results than active scanning.

d)

Passive scanning requires more resources than active scanning.

75.

Which system provides a publicly available and free-to-use list of standardized identifiers for common software vulnerabilities?

a)

Common Vulnerability Scoring System (CVSS)

b)

Common Vulnerabilities and Exposures (CVE)

c)

National Vulnerability Database (NVD)

d)

Common Weakness Enumeration (CWE)

76.

What is the purpose of the Common Vulnerability Scoring System (CVSS)?

a)

To provide a list of software vulnerabilities and exposures.

b)

To automate vulnerability management and compliance.

c)

To communicate the characteristics and impacts of IT vulnerabilities.

d)

To categorize software vulnerabilities and weaknesses.

77.

Which type of vulnerability assessment uses a network scanner to find hosts, services, and vulnerabilities?

a)

Active Assessment

b)

External Assessment

c)

Host-based Assessment

d)

Passive Assessment

78.

What is the primary focus of an Application Assessment?

a)

Testing databases for vulnerabilities

b)

Analyzing web infrastructure for misconfigurations

c)

Sniffing network traffic for active systems

d)

Scanning internal infrastructure for exploits

79.

Which type of assessment involves sniffing network traffic to discover active systems and vulnerabilities?

a)

Internal Assessment

b)

Passive Assessment

c)

Network-based Assessment

d)

Database Assessment

80.

What does a Network-based Assessment determine?

a)

Vulnerabilities in wireless networks

b)

Possible network security attacks

c)

Credentials of all machines in the network

d)

Misconfigurations in web infrastructure

81.

Which assessment focuses on testing databases like MYSQL and ORACLE for vulnerabilities?

a)

Application Assessment

b)

Database Assessment

c)

Wireless Network Assessment

d)

Credentialed Assessment

82.

What is the purpose of a Credentialed Assessment?

a)

To assess the network by obtaining credentials of all machines

b)

To assess distributed organization assets

c)

To assess the network without acquiring any credentials

d)

To employ various vulnerability assessment tools

83.

Which tool is mentioned as a cloud-based service offering global visibility into IT system vulnerabilities?

a)

Nessus

b)

Qualys

c)

GFI LanGuard

d)

Oracle

84.

Which tool offers a comprehensive, open source and powerful vulnerability scanning and vulnerability management solution?

a)

OpenVAS

b)

GFI LanGuard

c)

Nessus Professional

d)

Nikto

85.

What is the primary function of GFI LanGuard?

a)

Monitors network traffic

b)

Scans, detects, assesses, and rectifies security vulnerabilities

c)

Provides firewall protection

d)

Encrypts data

86.

Which of the following is NOT a vulnerability assessment tool mentioned in the document?

a)

Nessus Professional

b)

Qualys FreeScan

c)

Core Impact

d)

Wireshark

87.

What is the first step in vulnerability exploitation according to the document?

a)

Develop the exploit

b)

Identify the vulnerability

c)

Gain remote access

d)

Generate and deliver the payload

88.

Which website is a resource for identifying vulnerabilities to include expolit code?

a)

exploit-db.com

b)

tenable.com

c)

beyondtrust.com

d)

coresecurity.com

89.

What is the primary purpose of a firewall in network security?

a)

To enhance computer graphics

b)

To block unauthorized access while permitting outward communication

c)

To increase internet speed

d)

To store backup data

90.

Which of the following is a common method used by phishing attacks?

a)

Regularly updating software

b)

Sending emails that appear to be from legitimate sources

c)

Installing antivirus software

d)

Using a secure password manager

91.

What is the role of an Intrusion Detection System (IDS)?

a)

To manage network traffic efficiently

b)

To enhance system performance

c)

To detect and alert on potential security breaches

d)

To prevent unauthorized access to a network

92.

What is the best way to handle pop-ups that claim your computer is infected and you need to download software to fix it?

a)

Click on the pop-up and follow the instructions

b)

Close the pop-up and run a scan with legitimate antivirus software

c)

Call the phone number provided in the pop-up for help

d)

Download the software; it might be helpful

93.

What is a common sign that your computer might be infected with maleware?

a)

Your computer runs faster than usual

b)

You can't find any files on your desktop anymore

c)

You computer runs slower and addition programs run at startup

d)

Your computer tells you it's secure