NEW
Font size
WorksheetsCybersecurity Scenarios and Tools Quiz
Total questions: 21
Worksheet time: 11mins
You are analyzing a Nessus scan result and discover that port 4444 is open with a netcat listener active. What should you do first?
Block all outbound internet traffic
Investigate for potential backdoor access
Reboot the machine immediately
Disable all user accounts
A security analyst is working for a small business with a Linux-based infrastructure and prefers open-source tools. Which scanner should they choose?
Qualys
Nessus
OpenVAS
Maltego
Your security team wants to assess how employees respond to deceptive emails. Which method should they use?
Vulnerability scan
Packet sniffing
Phishing campaign
Port scanning
An employee reports a suspicious shortened URL. What’s the best immediate step?
Use an un-shortening tool to preview it
Click it from an isolated system
Block the link at the firewall
Report it to the DNS provider
Which nmap scan type is used for stealthy TCP scanning?
-sT
-sS
-sU
-O
A user visits wwwgoogle.com thinking it’s Google. What URL obfuscation technique is being used?
Character Swapping
QR Code
URL Redirect
URL Doppelganger
You want to use nmap to detect the OS, identify logged-in users, and discover vulnerabilities. What should you enable?
Nmap Scripting Engine (NSE)
OS fingerprinting
Packet sniffing
Port scan
You are tasked with assessing a new web application for vulnerabilities. The tool you're using intercepts client-server traffic and allows you to analyze input validation. Which tool are you most likely using?
Burp Suite
Nmap
Nikto
Maltego
A security analyst is scanning a web server using a command-line tool that provides reports on outdated software, insecure configurations, and common vulnerabilities. Which tool is best suited for this task?
Angry IP Scanner
Nikto
OWASP ZAP
Recon-ng
While running a vulnerability scan, you find a critical risk in a system that stores payroll data. According to proper prioritization processes, which factor should weigh most heavily in deciding your next step?
Number of users on the system
Ease of use of the vulnerability scanner
Age of the vulnerability
Asset value of the system
Which of the following best describes a zero-day vulnerability?
A vulnerability discovered by the organization’s red team
A known vulnerability with a publicly available patch
An unpatched vulnerability discovered by attackers before developers
A bug found during normal system operation
You're analyzing a suspicious link embedded in a phishing email. It appears obfuscated and redirects to an unexpected site. What type of indicator is this?
Other indicator of malicious activity
External context indicator
Application-related
Validation false positive
Which vulnerability scanner provides both automated scanning and allows for manual web application testing, and is maintained by OWASP?
OpenVAS
Metasploit
Zed Attack Proxy (ZAP)
Arachni
A vulnerability scan shows a high number of flagged issues, but further analysis shows many of them are not actually exploitable. What process is needed to refine the results?
Obfuscation
Validation
Weaponization
Mapping
A security engineer is reverse engineering a suspicious binary using a tool that allows for instruction-by-instruction analysis. Which tool is being used?
Burp Suite
Metasploit
ZAP
Immunity Debugger
A security analyst is tasked with auditing a cloud environment for misconfigurations. The company uses a multi-cloud deployment, but the analyst needs a tool that can scan across various cloud platforms, not just AWS. Which tool should the analyst use?
Pacu
ScoutSuite
Prowler
Nessus
Which cloud assessment tool is specifically designed for evaluating AWS environments based on AWS security best practices?
Prowler
Pacu
ScoutSuite
Qualys
A penetration tester is hired to perform post-exploitation testing on a client’s AWS cloud environment after a misconfigured IAM role was discovered. Which tool would best support this activity?
Burp Suite
ScoutSuite
Pacu
Wireshark
True or False: Systems running on cloud infrastructure are always more secure than when they run on-premises due to the provider’s responsibility.
True
False
A cloud administrator is interpreting output from a ScoutSuite scan. What type of information should the admin expect to find?
Real-time malware alerts
Firewall port scan results
Exploitation scripts
Misconfigurations in cloud services
Attack
Vulnerability
Threat
Exploit
