Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

CompTIA Security+ SY0-701 Revision Test 1

Total questions: 50

Worksheet time: 25mins

Name
Class
Date
1.

Is it correct to say that a risk guarantees a system will be breached?

a)

True

b)

False

2.

What does 'internal or external' describe in cybersecurity terms?

a)

Where files are stored in the system

b)

The level of access a threat actor has

c)

The amount of internet bandwidth

3.

What happens during a service disruption attack?

a)

Secure login fails due to expired credentials

b)

Valuable data is copied without permission

c)

A system overheats due to overuse

d)

Malware is removed during backup

4.

The attack surface includes all points a hacker might try to exploit.

a)

True

b)

False

5.

A(n) _____ vector refers to an attack requiring remote access over a network.

a)

Internal

b)

Wireless

c)

Remote network

d)

Local script

6.

Which of these is an example of a lure-based vector?

a)

Spreadsheet macros

b)

Command shell

c)

Image file containing malware

d)

Keyboard shortcut

7.

Social engineering can involve tricking someone into helping the attacker.

a)

True

b)

False

8.

What type of phishing uses SMS to fool users?

a)

Emailing

b)

Vishing

c)

Texting

d)

Smishing

9.

What’s it called when an attacker registers a site name close to a real one?

a)

Typing attack

b)

Spoofing

c)

Domain squatting

d)

Typosquatting

10.

A watering hole attack is just a false rumour with no intent to deceive.

a)

True

b)

False

11.

A _____ attack tries to make systems unavailable to users.

a)

Social

b)

DoS

c)

Replay

d)

Decoy

12.

Brute-force attacks depend on random guessing to access a system.

a)

True

b)

False

13.

Which action best defines a replay attack?

a)

Blocking data from being received

b)

Stealing and reusing a transmission

c)

Encrypting files without permission

14.

What kind of attack does a 'man-in-the-middle' refer to?

a)

Altering software updates

b)

Hijacking a physical device

c)

Intercepting data between two parties

d)

Launching spam from a compromised account

15.

A buffer overflow attack floods a system with more data than it can handle.

a)

True

b)

False

16.

What does an SQL injection attack mainly target?

a)

Media players

b)

Databases

c)

Routers

d)

Backup drives

17.

_____ is a form of malware disguised as something useful.

a)

Virus

b)

Keylogger

c)

Worm

d)

Trojan horse

18.

Is ransomware a threat that locks data until payment is made?

a)

Yes

b)

No

19.

A keylogger records what you type to steal passwords.

a)

True

b)

False

20.

Which option best defines a backdoor?

a)

A secure login page

b)

A tool that patches old software

c)

A hidden method to access a system

d)

A firewall configured with errors

21.

Which of these describes malware that copies itself and spreads on its own?

a)

Worm

b)

Trojan

c)

Rootkit

d)

Spyware

22.

A _____ hides itself in a system to give attackers long-term access.

a)

Logic bomb

b)

Rootkit

c)

Worm

d)

Antivirus

23.

Does spyware collect user information without consent?

a)

Yes

b)

No

24.

A logic bomb triggers when a certain event or condition is met.

a)

False

b)

True

25.

Which is an example of software built to harm or hijack systems?

a)

VPN

b)

Malware

c)

Patch

26.

Which of the following is a goal of attackers using social engineering?

a)

Promoting ads

b)

Securing networks

c)

Gaining trust to exploit people

d)

Teaching password safety

27.

Tailgating is when someone tricks their way into a secured area.

a)

True

b)

False

28.

An attacker pretending to be tech support to gain access is using (a)   .

29.

Is shoulder surfing an example of physical social engineering?

a)

Yes

b)

No

30.

Which method relies on convincing someone to break normal security rules?

a)

Brute-force

b)

Social engineering

c)

Firewall bypass

d)

Wi-Fi cloning

31.

Which of the following is not a form of social engineering?

a)

Shoulder surfing

b)

Phishing

c)

Data encryption

32.

(a)   is a method where attackers create fake websites or emails to trick people.

33.

Pretexting uses fake stories to trick people into revealing data.

a)

True

b)

False

34.

Can a simple USB stick be used to deliver a malware payload?

a)

Yes

b)

No

35.

What is baiting in social engineering?

a)

Gaining access by pretending to be an employee

b)

Offering something tempting to trick the target

c)

Encrypting files to demand ransom

d)

Guessing passwords repeatedly

36.

(a)   attacks happen when a system is overwhelmed by traffic to crash it.

37.

A man-in-the-middle attack changes data before it reaches its destination.

a)

True

b)

False

38.

Do buffer overflow attacks allow code to run where it shouldn't?

a)

Yes

b)

No

39.

Which of the following is used to exploit a database system?

a)

Rootkit

b)

SQL injection

c)

DNS spoofing

d)

Brute-force

40.

An attacker who repeats a captured message to trick a system is doing a (a)   .

41.

Which type of attacker might be a former employee with access credentials?

a)

Nation-state

b)

Unskilled Hacker

c)

Competitor

d)

Insider

42.

Hacktivists often have political or social motivations.

a)

True

b)

False

43.

Is a nation-state actor likely to have more resources than a script kiddie?

a)

Yes

b)

No

44.

Threat actors are often categorized by their (a)   and goals.

45.

Which group is most likely to perform structured attacks using custom tools?

a)

Unskilled Hacker

b)

Hacktivists

c)

Nation-state actors

46.

Unskilled Hackers usually create their own malware tools from scratch.

a)

True

b)

False

47.

Which of the following best describes an unskilled hacker?

a)

Non-technical attacker using ready-made tools

b)

Hacker writing unique code

c)

Insider leaking documents

d)

Social engineer creating fake websites

48.

A (a)   actor might attack for business advantage, such as stealing client data.

49.

Are cybercriminals usually motivated by money?

a)

Yes

b)

No

50.

All insider threats are intentional and planned.

a)

True

b)

False