wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

ETHICAL HACKING UNIT III AND UNIT IV

Total questions: 90

Worksheet time: 45mins

Name
Class
Date
1.

What is port scanning in ethical hacking?

a)

a) Identifying open ports on a target system

b)

b) Gathering domain information

c)

c) Cracking passwords

d)

   d) Encrypting data

2.

Which technique involves sending ICMP echo requests to multiple hosts?

    

a)

a) Port Scanning                      

b)

b) Ping Sweep

c)

  c) Vulnerability Scanning

d)

) Session Hijacking

3.

What is the primary goal of network discovery in scanning?

    

a)

a) Mapping active devices on a network

b)

b) Exploiting vulnerabilities

c)

c) Sniffing packets

d)

d) Hijacking sessions

4.

Which tool is commonly used for vulnerability scanning?

     

a)

  a) Nmap

b)

b) Nessus

c)

c) Wireshark

d)

d) Burp Suite

5.

What is packet sniffing?

     

a)

a) Capturing and analyzing network traffic

b)

b) Gaining system access

c)

c) Enumerating users

d)

d) Assessing risks

6.

Which type of sniffing involves no direct interaction with the target?

  

a)

    a) Active Sniffing

b)

b) Passive Sniffing

c)

c) ARP Spoofing

d)

d) DNS Spoofing

7.

What is ARP spoofing?

     

a)

  a) Poisoning the ARP cache to redirect traffic

b)

b) Discovering network hosts

c)

  c) Scanning ports

d)

  d) Flooding MAC addresses

8.

Which attack involves intercepting communication between two parties?

     

a)

   a) Session Hijacking

b)

b) Man-In-The-Middle Attack

c)

  c) Ping Sweep

d)

d) Vulnerability Scanning

9.

What is DNS spoofing?

     

a)

a) Altering DNS responses to redirect traffic

b)

b) Scanning network vulnerabilities

c)

  c) Capturing Wi-Fi packets

d)

d) Enumerating services

10.

Which countermeasure can detect sniffing on a network?

     

a)

a) Using encrypted protocols

b)

    b) Port scanning

c)

c) Ping sweeps

d)

d) ARP poisoning

11.

What is MAC flooding?

     

a)

    a) Overloading a switch's MAC table to cause it to act like a hub

b)

   b) Discovering IP addresses

c)

  c) Hijacking TCP sessions

d)

d) Assessing vulnerabilities

12.

Which tool is commonly used for packet sniffing?

     

a)

a) Wireshark

b)

  b) Nmap     

c)

c) Nessus

d)

d) Metasploit

13.

What is active sniffing?

   

a)

  a) Injecting traffic to capture data

b)

b) Querying public databases

c)

  c) Scanning ports passively

d)

d) Enumerating DNS records

14.

Which technique is used for Wi-Fi sniffing?

     

a)

a) Capturing wireless packets in monitor mode

b)

b) Port scanning wired networks

c)

c) ARP cache poisoning      

d)

d) DNS record enumeration

15.

What is session hijacking?

     

a)

a) Taking over an active user session

b)

b) Gathering footprint information

c)

c) Scanning vulnerabilities

d)

d) Flooding MAC tables

16.

Which detection technique can identify ARP spoofing?

     

a)

a) Monitoring ARP table changes

b)

b) Ping sweeps

c)

    c) Port scanning

d)

  d) Vulnerability assessments

17.

What is wire trapping?

     

a)

a) Physically tapping into network cables

b)

b) Capturing wireless signals

c)

c) Enumerating users

d)

d) Cracking passwords

18.

Which type of sniffing uses switched networks to its advantage?

     

a)

  a) Passive Sniffing

b)

b) Active Sniffing

c)

    c) Wi-Fi Sniffing

d)

  d) Session Hijacking

19.

What is a common countermeasure against sniffing?

     

a)

a) Implementing VLANs

b)

b) Using HTTPS

c)

c) Port scanning

d)

  d) DNS spoofing

20.

Which attack combines sniffing with redirection?

     

a)

a) Man-In-The-Middle Attack

b)

  b) Ping Sweep

c)

 c) Vulnerability Scanning

d)

    d) Network Discovery

21.

What does vulnerability scanning aim to identify?

    

a)

a) Weaknesses in systems or networks

b)

  b) Open ports only

c)

c) Sniffed packets

d)

 d) Hijacked sessions

22.

Which tool performs ping sweeps effectively?

a)

a) Nmap

b)

  b) Wireshark

c)

  c) Burp Suite

d)

d) John the Ripper

23.

What is network scanning?

     

a)

  a) Probing for live hosts and services

b)

  b) Capturing historical data

c)

   c) Enumerating DNS records

d)

d) Cracking passwords

24.

Which sniffing type is harder to detect?

     

a)

  a) Passive Sniffing

b)

b) Active Sniffing

c)

c) ARP Spoofing

d)

d) DNS Spoofing

25.

What is a Man-In-The-Middle attack's primary goal?

     

a)

  a) Intercept and alter communications

b)

b) Scan ports

c)

c) Discover networks

d)

d) Flood MAC tables

26.

Which protocol is vulnerable to sniffing if not encrypted?

     

a)

a) HTTP

b)

b) HTTPS

c)

  c) SSH

d)

d) TLS

27.

What is a sniffing detection technique?

     

a)

a) Using intrusion detection systems (IDS)

b)

b) Port scanning

c)

c) Ping sweeps

d)

      d) Vulnerability exploits

28.

Which attack floods the network with fake MAC addresses?

   

a)

   a) MAC Flooding

b)

b) ARP Spoofing

c)

  c) DNS Spoofing

d)

d) Session Hijacking

29.

What tool is used for Wi-Fi packet capturing?

     

a)

a) Aircrack-ng

b)

b) Nessus

c)

c) Metasploit

d)

d) Nmap

30.

Which countermeasure prevents session hijacking?

     

a)

a) Using secure cookies and HTTPS

b)

    b) Port scanning

c)

   c) ARP poisoning

d)

   d) DNS enumeration

31.

What is enumeration in ethical hacking?

     

a)

a) Listing resources like users and services

b)

b) Gaining unauthorized access

c)

c) Sniffing packets

d)

d) Scanning ports

32.

Which type of enumeration targets user accounts?

     

a)

  a) User enumeration

b)

b) System enumeration

c)

c) Service enumeration

d)

d) Vulnerability assessment

33.

What is vulnerability analysis?

    

a)

a) Identifying and assessing security weaknesses

b)

b) Enumerating DNS records

c)

c) Cracking passwords

d)

d) Hijacking sessions

34.

What does CVE stand for?

     

a)

   a) Common Vulnerabilities and Exposures

b)

b) Computer Virus Encyclopedia

c)

  c) Cyber Vulnerability Evaluation

d)

d) Common Virus Exploits

35.

What is risk assessment?

     

a)

a) Evaluating potential threats and impacts

b)

b) Listing user accounts

c)

c) Sniffing network traffic

d)

  d) Exploiting systems

36.

What is TCP/IP hijacking?

   

a)

a) Intercepting and altering TCP/IP communications

b)

b) Enumerating services

c)

c) Assessing vulnerabilities

d)

d) Cracking passwords

37.

Which attack involves stealing email sessions?

     

a)

a) EMAIL Hijacking

b)

      b) TCP/IP Hijacking

c)

  c) Password Hacking

d)

   d) System Enumeration

38.

What is a dictionary attack?

     

a)

a) Using a list of common words to crack passwords

b)

b) Brute-forcing all combinations

c)

c) Generating rainbow tables

d)

d) Enumerating users

39.

Which technique combines dictionary and brute-force methods?

     

a)

  a) Hybrid Dictionary Attack

b)

b) Rainbow Tables

c)

c) Privilege Escalation

d)

d) Maintaining Access

40.

What are rainbow tables?

  

a)

a) Precomputed hash tables for password cracking

b)

b) Lists of user enumerations

c)

c) Vulnerability databases

d)

d) System hacking tools

41.

What is privilege escalation?

  

a)

a) Gaining higher access rights than authorized

b)

    b) Enumerating services

c)

  c) Assessing risks

d)

  d) Hijacking TCP sessions

42.

What is maintaining access?

   

a)

a) Installing backdoors to retain control

b)

   b) Cracking passwords

c)

c) Enumerating users

d)

d) Analyzing vulnerabilities

43.

Which type of malware self-replicates across networks?

    

a)

a) Worm

b)

b) Virus

c)

  c) Trojan

d)

d) Ransomware

44.

What is a Trojan?

     

a)

a) Malware disguised as legitimate software

b)

   b) Vulnerability assessment tool

c)

c) Password cracking method

d)

d) Enumeration technique

45.

Which tool is used for anti-malware protection?

     

a)

a) Antivirus software

b)

      b) Metasploit

c)

c) Nmap

d)

d) Wireshark

46.

What is brute-force attack?

      

a)

  a) Trying all possible password combinations

b)

  b) Using dictionary lists

c)

c) Generating rainbow tables

d)

d) Enumerating systems

47.

Which enumeration type lists running services?

    

a)

a) Service enumeration

b)

  b) User enumeration  

c)

      c) System enumeration

d)

      d) Vulnerability scanning

48.

What is system hacking?

     

a)

a) Gaining and maintaining unauthorized access

b)

b) Assessing CVEs

c)

c) Sniffing packets

d)

  d) Hijacking emails

49.

Which malware type encrypts files for ransom?

     

a)

a) Ransomware

b)

b) Virus        

c)

   c) Worm

d)

d) Trojan

50.

What technique helps in malware detection?

       

a)

a) Signature-based scanning

b)

   b) Password cracking 

c)

c) User enumeration

d)

d) Risk assessment         

51.

What is a virus?

     

a)

a) Malware that attaches to files and spreads

b)

  b) Precomputed hash table

c)

      c) Vulnerability database

d)

      d) Enumeration tool          

52.

Which attack targets password hashes?

     

a)

a) Rainbow Tables

b)

b) Dictionary Attack       

c)

   c) Brute-Force Attack

d)

d) Hybrid Attack

53.

What is vulnerability assessment?

  

a)

a) Evaluating systems for known weaknesses

b)

 b) Cracking privileges

c)

c) Maintaining backdoors

d)

d) Hijacking TCP          

54.

Which enumeration targets operating systems?

     

a)

a) System enumeration

b)

b) User enumeration

c)

c) Service enumeration

d)

  d) Risk assessment        

55.

What is password hacking?

     

a)

a) Attempting to discover user passwords

b)

b) Enumerating CVEs

c)

c) Analyzing malware

d)

d) Hijacking sessions

56.

Which tool is used for password cracking?

     

a)

a) John the Ripper

b)

b) Nessus

c)

c) Wireshark

d)

d) Burp Suite

57.

What is a common anti-malware technique?

     

a)

  a) Heuristic analysis

b)

b) Privilege escalation

c)

c) Rainbow tables

d)

d) System enumeration

58.

Which hijacking targets email protocols?

    

a)

a) EMAIL Hijacking

b)

b) TCP/IP Hijacking

c)

c) Password Hacking

d)

  d) Malware Infection

59.

What does CVE provide?

     

a)

a) Standardized vulnerability identifiers

b)

b) Password lists      

c)

c) Malware types

d)

d) Enumeration techniques

60.

Which step follows password cracking in system hacking?

     

a)

a) Privilege escalation

b)

b) User enumeration

c)

c) Risk assessment

d)

      d) Malware deployment

61.

What are two common scanning techniques?

     

a)

a) Port scanning and vulnerability scanning

b)

b) Ping sweep and session hijacking

c)

  c) ARP spoofing and DNS spoofing

d)

d) MAC flooding and wire trapping

62.

Which two tools are used for scanning and sniffing?

     

a)

a) Nmap and Wireshark        

b)

b) Nessus and Burp Suite

c)

c) Aircrack-ng and Metasploit

d)

   d) John the Ripper and DNSenum

63.

What are two types of sniffing?

    

a)

a) Active and passive sniffing

b)

b) Port and vulnerability scanning

c)

      c) ARP and DNS spoofing

d)

      d) MAC flooding and session hijacking

64.

Which two attacks involve spoofing in sniffing?

     

a)

a) ARP spoofing and DNS spoofing

b)

b) Ping sweep and port scanning    

c)

      c) Network discovery and vulnerability scanning

d)

d) Man-In-The-Middle and wire trapping

65.

What are two countermeasures against sniffing?

     

a)

a) Using encrypted protocols and intrusion detection systems

b)

   b) Port scanning and ping sweeps     

c)

  c) Session hijacking and MAC flooding

d)

      d) Wi-Fi sniffing and vulnerability scanning

66.

Which two techniques are part of network scanning?

     

a)

a) Ping sweep and network discovery

b)

b) Active sniffing and passive sniffing

c)

c) ARP spoofing and DNS spoofing      

d)

  d) Session hijacking and Man-In-The-Middle

67.

What are two detection techniques for sniffing?

     

a)

a) Monitoring ARP changes and using IDS

b)

   b) Port scanning and vulnerability assessment

c)

c) Wi-Fi capturing and MAC flooding

d)

      d) Wire trapping and session hijacking

68.

Which two attacks are related to sniffing?

     

a)

a) Man-In-The-Middle and session hijacking

b)

b) Ping sweep and port scanning

c)

      c) Network discovery and vulnerability scanning

d)

      d) ARP spoofing and wire trapping

69.

What are two benefits of vulnerability scanning?

     

a)

a) Identifying weaknesses and assessing risks

b)

b) Sniffing packets and hijacking sessions

c)

      c) Spoofing ARP and flooding MAC

d)

      d) Discovering networks and sweeping pings

70.

Which two tools support Wi-Fi sniffing and analysis?

     

a)

a) Aircrack-ng and Wireshark

b)

b) Nmap and Nessus        

c)

c) Burp Suite and Metasploit

d)

      d) DNSenum and John the Ripper

71.

What are two limitations of passive sniffing?

     

a)

a) Limited to broadcast traffic and harder in switched networks

b)

b) Easy detection and requires injection

c)

c) High risk and resource-intensive     

d)

      d) Guarantees exploits and access

72.

Which two activities are part of active sniffing?

     

a)

a) ARP spoofing and MAC flooding

b)

  b) Passive capturing and querying databases

c)

c) Port scanning and ping sweeps        

d)

      d) Vulnerability scanning and network discovery

73.

What are two outcomes of effective scanning?

    

a)

a) Network mapping and vulnerability identification

b)

b) Packet capturing and session hijacking

c)

c) DNS spoofing and wire trapping

d)

d) Man-In-The-Middle and ARP poisoning

74.

Which two protocols are vulnerable to sniffing if unencrypted?

     

a)

a) HTTP and FTP

b)

b) HTTPS and SSH

c)

      c) TLS and SFTP         

d)

      d) SCP and SHTTP

75.

What are two types of wire trapping?

     

a)

a) Physical tapping and wireless interception

b)

  b) Port scanning and ping sweeps

c)

c) Active and passive sniffing

d)

d) Vulnerability and network scanning

76.

What are two types of enumeration?

     

a)

a) User enumeration and service enumeration

b)

b) System enumeration and vulnerability analysis

c)

      c) Password cracking and privilege escalation

d)

d) Malware types and risk assessment       

77.

Which two techniques are used in password hacking?

     

a)

  a) Dictionary attack and brute-force attack

b)

b) Hybrid attack and rainbow tables

c)

c) TCP/IP hijacking and email hijacking

d)

  d) System enumeration and user enumeration

78.

What are two types of malware?

     

a)

a) Viruses and worms

b)

  b) Trojans and ransomware        

c)

c) All of the above

d)

d) None of the above

79.

Which two steps are part of system hacking?

     

a)

a) Password cracking and privilege escalation

b)

b) Maintaining access and enumeration

c)

c) Vulnerability assessment and risk analysis

d)

  d) TCP/IP hijacking and email hijacking       

80.

What are two components of vulnerability analysis?

    

a)

a) Vulnerability assessment and CVE

b)

   b) Risk assessment and system enumeration

c)

c) User enumeration and service enumeration

d)

d) Malware detection and anti-malware tools

81.

Which two attacks involve hijacking?

     

a)

a) TCP/IP hijacking and EMAIL hijacking

b)

b) Dictionary attack and brute-force attack

c)

c) Rainbow tables and hybrid attack

d)

d) Viruses and worms

82.

What are two anti-malware techniques?

     

a)

a) Signature-based scanning and heuristic analysis

b)

b) Privilege escalation and maintaining access

c)

c) User enumeration and system enumeration       

d)

d) Vulnerability scanning and risk assessment

83.

Which two tools are used for password cracking and vulnerability analysis?

    

a)

  a) John the Ripper and Nessus

b)

b) Metasploit and Wireshark

c)

      c) Nmap and Burp Suite       

d)

      d) DNSenum and Aircrack-ng

84.

What are two purposes of enumeration?

     

a)

a) Identifying users and services

b)

b) Cracking passwords and escalating privileges

c)

c) Assessing risks and analyzing CVEs

d)

      d) Deploying malware and hijacking sessions

85.

Which two password attacks use precomputed data?

     

a)

a) Hybrid dictionary attack and rainbow tables

b)

b) Dictionary attack and brute-force attack

c)

c) System hacking and privilege escalation       

d)

d) Malware infection and virus spreading

86.

What are two outcomes of vulnerability analysis?

   

a)

a) Identifying weaknesses and assessing risks

b)

    b) Enumerating users and cracking passwords

c)

c) Hijacking TCP and maintaining access

d)

d) Deploying trojans and worms

87.

Which two types of enumeration target systems and users?

    

a)

a) System enumeration and user enumeration

b)

b) Service enumeration and vulnerability assessment

c)

      c) Risk analysis and CVE lookup

d)

      d) Password hacking and malware analysis

88.

What are two benefits of risk assessment?

     

a)

a) Prioritizing threats and mitigating impacts

b)

      b) Cracking privileges and maintaining backdoors

c)

      c) Enumerating services and hijacking emails

d)

      d) Infecting with viruses and trojans

89.

Which two malware types are self-replicating?

    

a)

a) Viruses and worms

b)

b) Trojans and ransomware

c)

c) Rainbow tables and dictionary lists

d)

d) Hybrid attacks and brute-force

90.

What are two stages after gaining access in system hacking?

              

a)

a) Privilege escalation and maintaining access

b)

b) User enumeration and service enumeration

c)

c) Vulnerability assessment and risk analysis

d)

   d) TCP hijacking and email hijacking