wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Mitre Att&ck Quiz

Total questions: 15

Worksheet time: 8mins

Name
Class
Date
1.

ATT&CK ถูกคิดค้นโดยองค์กรใด?

a)

Google

b)

Microsoft

c)

MITRE Corporation

d)

IBM

2.

ATT&CK Framework มีการใช้ในด้านใดเป็นหลัก?

a)

การออกแบบซอฟต์แวร์

b)

การทดสอบระบบ

c)

การจัดการฐานข้อมูล

d)

การป้องกันและตรวจจับการโจมตีทางไซเบอร์

3.

ATT&CK Framework อธิบายสิ่งใด?

a)

เทคนิคและวิธีการที่แฮกเกอร์ใช้ในการโจมตีระบบ

b)

วิธีการออกแบบโปรแกรม

c)

ทักษะในการพัฒนาเว็บแอปพลิเคชัน

d)

การป้องกันไวรัสในเครือข่าย

4.

Tactic ใน MITRE ATT&CK หมายถึงอะไร?

a)

เป้าหมายหรือจุดมุ่งหมายของการโจมตี

b)

วิธีการที่ใช้ในการโจมตี

c)

เครื่องมือที่ใช้ในการโจมตี

d)

วิธีการตั้งค่าเซิร์ฟเวอร์

5.

MITRE ATT&CK ประกอบด้วยองค์ประกอบหลักอะไรบ้าง?

a)

Software, Hardware, and Network

b)

Tactics, Techniques, and Procedures

c)

Services, Tools, and Scripts

d)

Attacks, Defenses, and Resources

6.

ข้อใดต่อไปนี้เป็นเทคนิคในขั้น Initial Access?

a)

Valid Accounts

b)

Command and Scripting Interpreter

c)

Drive-by Compromise

d)

Credential Dumping

7.

เทคนิคใดจัดอยู่ในหมวด Credential Access?

a)

Phishing

b)

Input Injection

c)

Brute Force

d)

Software Discovery

8.

เทคนิค "Command and Scripting Interpreter" อยู่ในหมวดใด?

a)

Discovery

b)

Execution

c)

Impact

d)

Initial Access

9.

เทคนิคใดใช้เพื่อหลีกเลี่ยงการตรวจจับของระบบรักษาความปลอดภัย (Defense Evasion)?

a)

Exploitation for Client Execution

b)

Masquerading

c)

Valid Accounts

d)

Network Sniffing

10.

เทคนิคใดต่อไปนี้ใช้ในการเก็บข้อมูล (Collection)?

a)

Exfiltration Over C2 Channel

b)

Proxy

c)

Use Alternate Authentication Material

d)

Input Capture

11.

ข้อใดเป็นเทคนิคการ Exfiltration ข้อมูลออกจากระบบ?

a)

Remote Access Tools

b)

Archive Collected Data

c)

Data Transfer Size Limits

d)

Audio Capture

12.

เทคนิคใดใช้สำหรับ Privilege Escalation?

a)

Escape to Host

b)

Lateral Tool Transfer

c)

System Binary Proxy Execution

d)

Rootkit

13.

ข้อใดคือเทคนิคในหมวด Lateral Movement?

a)

System Owner/User Discovery

b)

Internal Spearphishing

c)

Domain Trust Discovery

d)

Power Settings

14.

Supply Chain Compromise เป็นเทคนิคใน tactic ใด?

a)

Impact

b)

Defense Evasion

c)

Initial Access

d)

Persistence

15.

เทคนิคใดต่อไปนี้ใช้ในการปิดบังหรืออำพรางไฟล์/ข้อมูล?

a)

Deobfuscate/Decode Files

b)

Hide Artifacts

c)

Pre-OS Boot

d)

Native API