Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity & Digital Forensics Quiz

Total questions: 50

Worksheet time: 25mins

Name
Class
Date
1.

Which is the first step in a digital forensic investigation?

a)

Analyzing the evidence

b)

Collecting digital devices

c)

Securing the crime scene

d)

Reporting findings

2.

Which tool is most commonly used for creating forensic disk images?

a)

Wireshark

b)

FTK Imager

c)

Metasploit

d)

Snort

3.

The chain of custody ensures:

a)

Evidence is destroyed after use

b)

Evidence integrity is maintained

c)

Evidence is encrypted

d)

Evidence is public

4.

What does 'write blocker' prevent during forensics?

a)

Data compression

b)

Data recovery

c)

Data modification

d)

Data encryption

5.

Which file system is mostly used in Windows?

a)

EXT4

b)

NTFS

c)

HFS+

d)

FAT16

6.

Volatile memory refers to:

a)

Hard disk

b)

RAM

c)

SSD

d)

CD-ROM

7.

The primary purpose of hash functions in forensics is:

a)

Data encryption

b)

Data hiding

c)

Integrity verification

d)

Speeding access

8.

Which Linux tool is widely used for forensic analysis?

a)

Nmap

b)

Autopsy

c)

Aircrack-ng

d)

Cain & Abel

9.

Digital evidence must be:

a)

Circumstantial

b)

Admissible, Authentic, Reliable

c)

Confidential only

d)

Destroyed after trial

10.

Which is a network forensic tool?

a)

Gparted

b)

EnCase

c)

Wireshark

d)

Autopsy

11.

The CIA triad stands for:

a)

Confidentiality, Integrity, Availability

b)

Control, Integrity, Access

c)

Cybersecurity, Internet, Authentication

d)

Confidentiality, Investigation, Analysis

12.

Converting plaintext into ciphertext is called:

a)

Decryption

b)

Encryption

c)

Hashing

d)

Encoding

13.

Which protocol is more secure for web communication?

a)

HTTP

b)

HTTPS

c)

FTP

d)

Telnet

14.

The process of verifying user identity is called:

a)

Authorization

b)

Authentication

c)

Accounting

d)

Auditing

15.

A strong password should have:

a)

Only letters

b)

Only numbers

c)

Repeated characters

d)

Combination of letters, numbers, and symbols

16.

What type of malware demands payment?

a)

Worm

b)

Trojan

c)

Ransomware

d)

Spyware

17.

A firewall works at which layer of OSI model?

a)

Application

b)

Network

c)

Session

d)

Physical

18.

A phishing attack usually targets:

a)

Hardware

b)

User credentials

c)

Firewalls

d)

Operating systems

19.

A DoS attack aims to:

a)

Steal data

b)

Encrypt files

c)

Overload systems

d)

Gain admin access

20.

SQL Injection targets:

a)

Databases

b)

Networks

c)

Firewalls

d)

Cloud

21.

In symmetric encryption, the same key is used for:

a)

Encryption and Decryption

b)

Hashing

c)

Steganography

d)

Authentication

22.

Public key cryptography uses:

a)

One key only

b)

Two keys (public & private)

c)

Random numbers only

d)

Hash functions

23.

The RSA algorithm is used for:

a)

Public key encryption

b)

Hashing

c)

Compression

d)

Steganography

24.

Which algorithm is considered a hashing function?

a)

RSA

b)

AES

c)

SHA-256

d)

DES

25.

Which is a wireless security protocol?

a)

FTP

b)

SSL

c)

WPA2

d)

IMAP

26.

SSL/TLS provides:

a)

Secure communication over networks

b)

Faster browsing

c)

Spam filtering

d)

File compression

27.

Which port does HTTPS use by default?

a)

21

b)

25

c)

80

d)

443

28.

Which device separates networks into zones of trust?

a)

Switch

b)

Router

c)

Firewall

d)

Proxy

29.

A digital certificate is issued by:

a)

Web browsers

b)

ISPs

c)

Certificate Authorities

d)

Hackers

30.

Steganography is the practice of:

a)

Encrypting text

b)

Hiding data inside other files

c)

Cracking passwords

d)

Creating viruses

31.

A man-in-the-middle attack involves:

a)

Bypassing antivirus

b)

Intercepting communication

c)

Phishing emails

d)

DoS attacks

32.

Which malware records keystrokes?

a)

Worm

b)

Trojan

c)

Keylogger

d)

Rootkit

33.

Social engineering attacks exploit:

a)

Firewalls

b)

Human psychology

c)

Encryption

d)

Network protocols

34.

Which is an example of biometric authentication?

a)

PIN

b)

Password

c)

Fingerprint

d)

Security question

35.

The Stuxnet worm targeted:

a)

Financial data

b)

Email servers

c)

Industrial control systems

d)

Social media accounts

36.

A zero-day attack exploits:

a)

Old vulnerabilities

b)

Unknown vulnerabilities

c)

Weak passwords

d)

Firewalls

37.

Which virus hides inside another program?

a)

Trojan

b)

Worm

c)

Keylogger

d)

Ransomware

38.

A botnet is:

a)

Antivirus software

b)

A secure network

c)

A network of infected computers

d)

Firewall rules

39.

Spoofing refers to:

a)

Encrypting traffic

b)

Faking an identity or source

c)

Blocking websites

d)

Network scanning

40.

Which malware disguises itself as legitimate software?

a)

Trojan Horse

b)

Worm

c)

Rootkit

d)

Spyware

41.

Which law governs electronic evidence in the US?

a)

IPC

b)

GDPR

c)

Federal Rules of Evidence

d)

DMCA

42.

In cloud security, 'multi-tenancy' means:

a)

One user per server

b)

Multiple users share same resources

c)

Exclusive servers

d)

Private VPN only

43.

The primary purpose of IDS (Intrusion Detection System) is:

a)

Block traffic

b)

Monitor and detect attacks

c)

Encrypt data

d)

Manage firewalls

44.

Which forensic method is best for live memory analysis?

a)

Disk cloning

b)

RAM acquisition

c)

File carving

d)

Log analysis

45.

Data hidden in image files is usually detected using:

a)

Sniffers

b)

Debuggers

c)

Steganalysis

d)

Keyloggers

46.

Which cybersecurity framework is published by NIST?

a)

ISO 27001

b)

NIST CSF

c)

GDPR

d)

PCI DSS

47.

A honeypot is used to:

a)

Encrypt files

b)

Block IP addresses

c)

Lure and monitor attackers

d)

Delete malware

48.

Which technique recovers deleted files?

a)

Keylogging

b)

Spoofing

c)

File carving

d)

DoS attack

49.

Logs of user activity are stored in:

a)

Switches

b)

Routers

c)

Audit trails

d)

Antiviruses

50.

Which type of backup stores only changes made since the last backup?

a)

Full backup

b)

Differential backup

c)

Incremental backup

d)

Redundant backup