Font size
WorksheetsIntroduction to Cybersecurity Tools and Cyberattacks
Total questions: 85
Worksheet time: 44mins
Which of the following legislative acts or agencies effectively ended the National Security Agency’s bulk collection of phone metadata?
USA Freedom Act
National Cyber Security Division(NCSD)
USA Patriot Act
Department of Homeland Security(DHS)
How are organizations safeguarding their resources with the virtual shift following the COVID-19 pandemic? Select all that apply.
Creating bring-your-own-device(BYOD) policies
Intensifying cybersecurity awareness training for employees
Encoutaging employees to use public Wi-Fi networks for work
Providing employees with antivirus licenses for their personal computers
State True or False
National Security Decision Directives (NSDD 145) was America’s first national policy on telecommunication and automated information systems security.
True
False
The history of cybersecurity dates back several decades. When did the first computer worm, Creeper, emerge?
2000
1971
2010
1987
Which concept encourages software and system developers to integrate security features at the start of the development cycle?
Advanced encryption
National cybersecurity
Global surveillance
Security by design
Which of the following illustrates the application of critical thinking in cybersecurity?
Performing routine backups
Conducting vulnerability scans
Installing antivirus software
Performing root cause analysis
According to the critical thinking model, what skills do you require to effectively perform particular tasks or functions within cybersecurity?
Administrative skills
Intellectual abilities
Technical skills
Interpersonal skills
If you are a Human Resource Manager conducting interviews for a cybersecurity analyst position, what specific competencies will you look for in candidates to assess their interpersonal skills?
Clear communication
Logical reasoning
Knowledge of a renge of IT protocols
Focused attention
Imagine you are a data analyst researching customer behavior for a marketing campaign. When evaluating data, what should you do if the data does not support the hypothesis?
Disregard the data and proceed with the original hipothesis
Confirm the hypothesis
Ignore the data
Revisit assumptions and consider alternate explanations
How does critical thinking empower cybersecurity professionals? Select all that apply.
Recognize programming languages
Make logical decisions
Solve problems effectively
Memorize cybersecurity laws
The WarGames movie prompted US President Ronald Reagan to _______________.
Create a new federal agency for cybersecurity
Ban computer games
Implement the country's first national cybersecurity policy
Conduct cybersecurity training for military personnel
As a privacy advocate, you’re investigating the implications of the recent legislation on government surveillance practices. Which law or agency significantly broadened the state’s surveillance capabilities?
USA PATRIOT Act
National Seciruty Decision Directives(NSDD 145)
USA Freedom Act
Department of Homeland Security(DHS)
What is one of the primary impacts of COVID-19 on the global approach to cybersecurity?
Remote access policies have become less stringent
There is decreased public awareness of cyberthreats
Organization have recognuzed the need to invest in cybersecurity infrastructure
The demand for cybersecurity professionals has decreased
When was the term “ethical hacking” coined?
2003
1983
2000
1995
As a cybersecurity analyst at TechEase Securities, you received an email from an unknown sender claiming to be from your company’s IT department. The email requests that you urgently click a link to verify your account information due to alleged suspicious activity. How would you apply critical thinking in this situation?
Click the link immediately to verify your account information
Forward the email to the IT department
Strutinize the email for sender information, language error, and signs of urgency before ckicking any link
Delete the email because it appears to be spam
A cybersecurity professional comes across an online article warning about a critical vulnerability in popular software and urging immediate patching. How can they use critical thinking to determine the best course of action?
Forward the article to the IT department and engage in discussions
Embrace new technologies based on the article
Verify the reported vulnerability with official security advisories from trusted sources
Ignore the article, as it might contain misleading information
What skills will help a cybersecurity manager convince the executive team to allocate more resources for cybersecurity initiatives despite budget constraints?
Skepticism
Project management skills
Negotiation skills
Technical expertise
How does objectivity enhance critical thinking for cybersecurity professionals?
It enables them to validate the information before accepting it as factual
It enables them to communicate complex issues effectively
It allows them to combine diverse expertise and perspectives
It motivates them to make unbiased judgments
The IT department recently implemented a multifactor authentication (MFA) system for all employee logins and assumes this system has eliminated the risk of unauthorized access. How can a cybersecurity analyst leverage critical thinking to ensure the company’s security remains robust?
Implement additional user authentication methods
Provide comprehensive training on MFA best practices to employees
Analyze data logs for patterns of unauthorized access attempts
Challenge the effectiveness of the MFA system to mitigate access risks and eveluate for existing vulnerabilities
When Emily, a cybersecurity manager, empathizes with different stakeholders to gain alternate perspectives on a security issue, which critical thinking skill is she using?
Undertanding context
Considering alternatives
Evaluating data
Challenging assumptions
Which of the following threat actors are driven by political or social agendas?
Organized crime groups
Hacktivist
Nation-state actors
Script kiddies
Which insider threat occurs out of malice, grievance, or financial incentives?
Unintentional
External
Intentional
State-sponsored
Which of the following is an example of an action carried out by a negligent insider?
Sharing sensitive information over unencrypted channels
Falling victim to a phishing scam
Selling confidential information
Gathering and leaking intellectual property
The IBM X-Force Threat Intelligence Index is designed to _______________.
Offer cybersecurity services to individuals
Profile and track individual hackers
Serve as a legal database for cybercrime prosecution
Provide insights into cybersecurity trends and threat landscape
According to Jeff Crume, which technology can simulate an individual’s voice, image, and likeness on a mobile phone?
Hallucinations
Phishing
Deep fake
Retrieval augmented generation(RAG)
Which of the following is a recommended measure for preventing malware attacks?
Using simple, common passwords
Using outdated software
Using reputable antivirus and anti-malware software
Avoiding software updates
What is the term used to describe automated software that performs malicious tasks over the internet?
Adware
Keylogger
Bot
Rootkit
Why is regular data backup important for cybersecurity?
Ensures data recovery in the event of malware attacks
Speeds up the system
Meets legal requirements
Makes the system immune to viruses
How can you enhance account security beyond just using a password?
Enabling multifactor authentication(MFA)
Storing your password on your mobile phone
Choosing an easy-to-remember password
Using the same password across multiple accounts
What does “https://” signify in a website’s URL?
The site is not secure
The site is for HTTP services only
The connection to the site is encrypted and secure
The site is under maintenance
Which solution aims to inform users about the possibility of spear-phishing attacks?
Quad 9
Critical thinking skills
Multifactor authentication(MFA)
User education
A cybersecurity specialist at a financial institution is tasked with finding ways to protect the company's executives from potential deep fake call scams. Which solution is most effective in addressing the issue? [Select two]
User education
Critical Thinking skills
Quad 9
Multifactor authentication(MFA)
What is whaling?
A targeted attack directed at spacific individuals or organizations
To pollute search engine results with harmful links
Employ fraudulent text messages to deceive individuals
A specialized form of spear phishing aimed at high-profile targets like executives
As an IT manager in a corporate setting, you are responsible for safeguarding the company's network against cybersecurity threats. What solution would you implement to ensure the software is regularly updated to mitigate phishing attacks?
Email security program
Patching
Antivirus
Secure DNS
What is Vishing?
A targeted attack directed at specific individuals or organizations
Employ fraudulent text messages to deceive individuals
Phishing using generative AI
Use phone calls or voice messages to deceive individuals into divulging personal or sensitive information
You are a cybersecurity analyst investigating a series of cyberattacks targeting critical infrastructure. You discover that a government entity sponsored the attacker. How would you categorize this threat actor?
Insider threat actor
Organized crime syndicate
Script kiddie
Nation-state actor
A marketing manager at a clothing company accidentally leaves a document containing upcoming product designs on a public printer. A competitor’s employee later finds this document. What type of insider threat does this scenario represent?
Malicious insider
Professional insider
Oblivious insider
Negligent insider
The product team is developing an AI assistant that will recommend purchases and answer customer queries on products. Why is it crucial to be aware of potential hallucinations?
Prevents customers from receiving spam emails from the AI assistant
Prevents deepfakes
Prevents hackers from injucting malicious code into the AI assistant
Ensures the assistant answers customet queries accurately
As an engineering student who frequently communicates with peers through emails, what steps will you take to safeguard your system against malware?
Use systems with suitable graphic processing units(GPUs)
Learn about botnets
Use system belonging to others
Never download files directly
While conducting malware analysis, you come across a suspicious program disguised as a legitimate application. What type of malware could this be?
Keylogger
Worm
Bot
Trojan
Jane, an IT security analyst tasked with enhancing her company’s cybersecurity measures, is evaluating various strategies to detect and prevent malware attacks. Which preventive measure detects new, previously unknown malware by analyzing patterns and behaviors akin to known threats?
Caution with email and downloads
Heuristic analysis
Strong and robust passwords
Regular OS and software updates
What is the primary purpose of Quad9?
Adds an extra layer of security by requiring additional forms of authentication
Safeguards users against malware and phishing threats
Informs users about the possibility of spear-phishing attacks
Enhances critical thinking skill
Imagine you’re a cybersecurity analyst tasked with ensuring the security of your company’s Linux-based servers. Which tool would you use to mitigate malware attacks?
Spyware
Backdoors
Keyloggers
Rootkit hunter
John, a delivery boy, needs to hand over a package at a secure facility. As he approaches the building, he notices an employee leaving. John strategically positions himself near the door and requests the employee to hold it open for him, pretending to struggle with a package. Which category of social engineering does this breach fall under?
Shoulder surfing
Whaling
Tailgating
Dumpster diving
Emma just got a new phone number. Shortly afterward, she receives a text message that warns of a potential service interruption and instructs her to click a link to update her account details. The message uses informal language and does not address Emma by name. What type of phishing attack is Emma most likely experiencing?
SEO poisoning
Vishing
Smishing
Spoofing
You’re responsible for enhancing security measures in a server room housing critical data and infrastructure. Which physical control measure will you implement to stop security breaches before they occur?
Clear signage indicating surveillance and restricted access
Keycard access systems
Lockdown protocols
CCTV surveillance systems
Which security measure should you use to regulate who can view or utilize resources within a computing system?
Encryption
Patching
Access controls
System-level firewalls
You work at an organization where employees regularly access sensitive data through various devices. They are concerned about cybersecurity threats and approach you for advice on securing their endpoints. Which of the following components is typically included in comprehensive endpoint security solutions?
Network access controls(NACs)
Antivirus software
Instrusion detection and prevention system(IDPSs)
Virtual private networks(VPNs)
When should recurrent vulnerability scans ideally be scheduled to minimize disruption to the organization’s operations?
During off-peak hours to avoid impacting productivity
Right before the monthly IT maintenance window
Randomly, to catch any time-based vulnerabilities
During the busiest hours, to simulate an attack under load
During the detection and analysis phase, the incident response (IR) team identifies a ransomware attack on a critical server. What immediate action must the team take to address this situation?
Pay the ransom to regain access to the files quickly
Attempt to remove the ransomware using antivirus software
Disconnect the infected server the netwoks
Perform complete system backup
How does Wireshark offer visibility into specific network traffic details?
Captures and interactively displays detailed networks traffic patterns
Uses raw IP packets to identify devices available on the networks
Enables administrators to identify the devices operating in their systems
Represents network components and their interconnections
An IT professional implements additional verification methods like multifactor authentication (MFA) to protect their network against unauthorized packet sniffing. What security strategy is the IT professional using?
Strengthening login measures
Navigating to HTTPS-secured websites
Privately browsing woth a virtual private networks(VPN)
Maintaining up-to-date systems
True or False:
Passive sniffing involves manipulating network traffic to intercept data packets.
True
False
What are the primary objectives of ingress filtering? Select two.
Block access to unauthorized or potentially harmful data packets
Scrutinize outgoing IP packets, verifying that they possess authentic source headers
Scrutinize incoming IP packets
Dater individuals inside the network from exporting spoofed packets
You are a database administrator investigating a recent security breach that may have involved a structured query language (SQL) injection attack. Which consequence of an SQL injection attack involves manipulating access permissions in a database?
Authorization loss
Authentication compromise
Integrity violation
Confidentiality breach
What is the primary objective of attackers using advanced persistent threats (APTs) in a cyberattack?
Uncover information about the network's structure
Move laterally within a network undetected and escalate privileges
Prioritize target segments within a network
Identify and troubleshoot network issues
The primary purpose of packet sniffing is to ________________.
Introduce harmful code into data streams using methods like SQL injection
Disrupt networks operations and cause downtime
Protect networks from unauthorized access
Analyze data packets and diagnose network issues
Imagine you’re on a familiar e-commerce website you’ve used securely before. While entering your contact details during checkout, you notice unusual text within the address field, like extra letters or symbols you didn’t type. What kind of attack could this be?
Integrity violation
Cross-site scripting(XSS) attack
Structured auery language(SQL) injection attack
Authorization loss
Imagine you’re a security manager at a financial company. Recently, employees have been using personal email accounts for business communications, violating the company’s security policies. What type of controls should you implement to effectively discourage employees from using insecure methods for business communications?
Detective controls
Physical controls
Deterrent controls
Corrective controls
Why is encryption considered one of the most secure ways to ensure data confidentiality?
Inspects incoming and outgoing networks packets
Converts information into a code obscuring the original content
Acts as the first line of defense agains viruses and malware
Fixes vulnerabilities and bugs and enhances functionality
You are developing a banking application where users can input their financial data. How would you explain the use of input validation to ensure the security of sensitive information stored within the application’s database?
Responds to errors
Reduces code processing time
Prevents attackers from injecting malicious code into the application
Simplifies the debugging process for developers
Which application security testing technique inspects the source code without executing the program?
OpenVAS
Interactive application security testing(IAST) tool
Dynamic application security testing(DAST) tool
Static application security testing(SAST) tool
A large corporation with robust cybersecurity measures in place experiences a data breach caused by a phishing attack. The company activates its incident response (IR) team to contain the damage. What role will digital forensics play in the detection and analysis stage?
Conduct a post-incident review to identify areas for improvement
Provide tools and techniques to collect and analyze digital evidence
Initiate legal proceedings against the attacker
Document all actions
Employees at a large financial organization are seeing unusual pop-up windows redirecting them to unfamiliar websites while working remotely. What type of security breach is the organization experiencing?
Egress filtering
Distributed denial-of-service(DDoS)
Botnet infiltration
Man-in-the middle attack
Why do cybersecurity professionals combine security information and event management (SIEM) systems with security orchestration, automation, and response (SOAR) platforms?
Prioritize alert management over incident response
Automate the identification of sophisticated threats
Streamline security operations in high-volume environments
Increase the complexity of security operations
As an IT consultant in a multinational organization, you manage user accounts on the company’s network, from account creation to deletion. Which identity and access management (IAM) component does this task fall under?
Administration
Authentication
Authorization
Audit
You are a cybersecurity specialist implementing multifactor authentication (MFA) for your employees. What solution will you deploy for users to verify login attempts by approving notifications sent to their devices through an application?
Mobile push notifications
Security tokens
Biometrical authentication
Smart cards
File access controls allow administrators to delegate authority to users, enabling them to dictate access permissions to various resources. Which file access control enables users to view file contents?
Read permission
Execute permission
Write permission
System permission
An IT company wants to improve its security system. How can it establish digital identities and implement secure authentication using innovative access control methods?
Geolocation and time-based restrictions
Certificates
Tokens
Secure shell(SHH) keys
What is the main advantage of Fast IDentity Online (FIDO) over traditional passwords?
FIDO sends the secrets across the internet for authentication
FIDO synchronizes secrets across multiple devices
FIDO stores the secret on the user's device during authentication
FIDO relies on password exchange for user authentication
An unauthorized individual manages to access sensitive information that the organization has discarded. What kind of security threat is the organization facing?
Taligating
Unauthorized access
Dumpster diving
Vandalism
You are a facilities manager tasked with enhancing the outdoor security measures of a high-profile government facility located in a densely populated area. What measure will you take to diminish the visibility of the infrastructure?
Industrial camouflage
Fences
Lighting
Cameras
What outdoor security measure will you implement to discourage unauthorized access and guide behavior to ensure safety and protection for everyone in an office building?
Signages
Locks
Alarm systems
Access controls
How can low temperatures impact an organization’s cybersecurity and physical infrastructure?
Condensation
Electrostatic discharge
Overheating
Corrosion
You share workspace with colleagues from different departments. How can you limit the viewing angle and prevent visual hacking?
Apply screen filters
Use cable locks
Use port locks
Implement asset tags and tracking software
You are responsible for managing user accounts and access permissions. Which of the following actions involves verifying if a staff member has the required permissions to do the action they are attempting?
Authorization
Identify management
Deprovisioning
Provisioning
You’re a security consultant evaluating access control measures for your organization’s high-security research lab. Which authentication method involving unique behavioral and physical characteristics would you choose?
One-time password(OTP)
Remote user authentication
Kerberos
Biometric authentication
As a systems administrator in the military, you oversee file permissions management. Which access control scheme should you use to ensure users cannot alter file access permissions or modify established security protocols?
Role-based access control(RBAC)
Rule-based access control(RBAC or RuBAC)
Attribute-based access control(ABAC)
Mandatory access control(MAC)
Which access control method is equipped with chips to store credentials and perform cryptographic operations securely?
Certificates
Smart cards
Secure shell(SHH) keys
Tokens
Ann, a software engineer, wants to implement multifactor authentication (MFA) to enhance system security. What factors should she consider integrating?
Fingerprint and retina pattern
Security question and password
Password and PIN
Iris scan and PIN
Roy, a former employee, visits the organization to collect his settlement papers. He enters the building with a concealed camera on his backpack. What type of security threat does this action pose?
Dumpster diving
Surveillance
Tailgating
Unauthorized access
Which of the following is an example of human vigilance?
Surveillance cameras
Motion sensor lights
Vigilant receptionists
Biometric readers
Your organization is facing operational delays because of frequent power disruptions. How can you address this issue?
Install climate control systems
Use power surge protectors
Implement electrostatic discharge(ESD) protection equipment
Install backup power supplies
In a government research laboratory, alarms are triggered whenever cattle graze close to the building walls, creating chaos. What security measures should be implemented to distinguish between harmless entities and potential threats?
Robotic security guards
Atrificial intelligence(AI) security systems
Intelligent perimeter security systems
Drone detection systems
What outdoor security measure should you install to maintain a record of all entries and enable efficient permissions management?
Signage
Access control
Cameras
Alarms
