Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity - Assessment Review - SGM #2

Total questions: 20

Worksheet time: 10mins

Name
Class
Date
1.

Which of the following would pose the greatest threat to a user's personal privacy if it were to be leaked to the public?

a)

The IP address of the user’s computer

b)

The user's browser cookies

c)

The user's email address

d)

The user's public key for encryption

2.

In the context of password generation, for what does the acronym OTP stand?

a)

One-time password

b)

One-time paradox

c)

One-time phishing

d)

None of the above

3.

In 2017, the credit report company Equifax suffered a data breach that exposed the PII of more than 100 million Americans to attackers. The exposed data included names, home addresses, phone numbers, dates of birth, Social Security numbers, and driver's licence numbers.

With access to only that information, which of these actions could not be taken by an attacker?

a)

An attacker could sell the Social Security numbers to another attacker on the Internet

b)

An attacker could send an email to an affected person that contained their PII and a threat to reveal them

c)

An attacker could post the home addresses on a public website

d)

An attacker could steal the identity of one of the affected people

4.

Which of the following could not occur if your computer is connected to the Internet over a rogue access point?

a)

The rogue access point could analyze the types of websites you visit

b)

The rogue access point could modify the contents of your connection to a website

c)

The rogue access point could see what keywords you're searching for on a web search engine

d)

The rogue access point could read the files on your device

5.

Why is a computer virus more dangerous than other types of malware?

a)

A virus can make copies of itself, including copying itself into an existing file

b)

A virus can access the internal system of a computer so that it can change how the operating system works

c)

A virus has access to the user's input devices so that it can see what they type and how they move their mouse cursor

d)

A virus can decrypt any data that has been encrypted on the user's hard drive

6.

Dorothy is a network administrator. Her system has been experimenting with an attack that is using bots to send fake requests to the cloud resources her company uses. This is causing disruption of the availabilities of these resources. How is this attack best described?

a)

PDoS

b)

DDoS

c)

EDoS

d)

DoS

7.

Which of the following best explains how devices and information can be susceptible to unauthorized access if weak passwords are used?

a)

Unauthorized individuals can deny service to a computing system by overwhelming the system with login attempts

b)

Unauthorized individuals can exploit vulnerabilities in compression algorithms to determine a user’s password from their decompressed data

c)

Unauthorized individuals can exploit vulnerabilities in encryption algorithms to determine a user’s password from their encryption key

d)

Unauthorized individuals can use data mining and other techniques to guess a user’s password

8.

It is important that you understand cybersecurity terminology, including terms for different actors in cybersecurity. What is the correct term for a person who uses hacking techniques for illegal activities?

a)

A hacker

b)

A gray hat hacker

c)

A phreaker

d)

A cracker

9.

Which of the following is an example of a strong password?

a)

password123

b)

P@55w0rd!

c)

abc123

d)

qwerty

10.

Which of the following is an example of a social engineering attack?

a)

Running a network vulnerability scan

b)

Installing a software patch

c)

Tricking someone into revealing their password

d)

Configuring a firewall rule

11.

(a)   is the term used for a testing environment in a computer system in which new or untested software or coding can be run securely.

Choose from the below words

Phishing

Sandbox

Engineering

Botnet

12.

What is the name of the process of trying to list all the servers on a network?

a)

Port scanning

b)

Enumeration

c)

Vulnerability scanning

d)

Scouting

13.

Which of the following most accurately defines encryption?

a)

Changing a message so it can only be easily read by the intended recipient

b)

Using complex mathematics to conceal a message

c)

Changing a message using complex algorithms

d)

Applying keys to a message to conceal it

14.

Which of the following scenarios best exemplifies a phishing attack?

a)

A user connects to a public wireless network. An unauthorized individual intercepts data transmitted on the network, looking for private information that can be used to gain access to the user’s accounts.

b)

A user’s e-mail account is overwhelmed with messages containing large attachments, which causes the account to exceed the maximum amount of data allowed and temporarily prevents the user from sending and receiving new messages.

c)

A user receives an e-mail from a sender offering technical help with the user’s computer. The e-mail prompts the user to start a help session by clicking a provided link and entering the username and password associated with the user’s computer.

d)

A user chooses a weak password for an online account. An unauthorized individual successfully guesses the user’s password from a list of common passwords.

15.

The transmission control protocol (TCP) and Internet protocol (IP) are used in Internet communication. Which of the following best describes the purpose of these protocols?

a)

To ensure that communications between devices on the Internet are above a minimum transmission speed

b)

To ensure that private data is inaccessible to unauthorized devices on the Internet

c)

To establish a common standard for sending messages between devices on the Internet

d)

To validate the ownership of encryption keys used in Internet communication

16.

A fraudulent email pretending to be from your bank and asking for your login information is a classic example of what kind of simple cyberattack?

a)

Phishing

b)

Spoofing

c)

DDoS attack

d)

Ransomware

17.

Which of the following is an example of a phishing attack?

a)

Loading malicious software onto a user’s computer in order to secretly gain access to sensitive information

b)

Flooding a user’s computer with e-mail requests in order to cause the computer to crash

c)

Gaining remote access to a user’s computer in order to steal user IDs and passwords

d)

Using fraudulent e-mails in order to trick a user into voluntarily providing sensitive information

18.

Which of the following is a common phishing technique?

a)

Installing antivirus software

b)

Using strong encryption algorithms

c)

Sending deceptive emails to trick users

d)

Conducting regular system backups

19.

What is the purpose of two-factor authentication (2FA)?

a)

To provide additional security by requiring two different passwords

b)

To encrypt sensitive data stored on a computer

c)

To prevent physical theft of devices

d)

To verify a user’s identity using multiple methods

20.

Which of the following actions can help you maintain your digital footprint?

a)

Using privacy settings to limit the audience of your posts and Reviewing posts you are tagged in

b)

Using privacy settings to limit the audience of your posts, Reviewing posts you are tagged in and Goggling yourself on a regular basis

c)

Using privacy settings to limit the audience of your posts, Reviewing posts you are tagged in and Posting long rants when you are angry about school or work

d)

Using privacy settings to limit the audience of your posts, Reviewing posts you are tagged in, Goggling yourself on a regular basis and finally Posting long rants when you are angry about school or work