Font size
WorksheetsETHICAL HACKING UNIT III AND UNIT IV
Total questions: 90
Worksheet time: 45mins
What is port scanning in ethical hacking?
a) Identifying open ports on a target system
b) Gathering domain information
c) Cracking passwords
d) Encrypting data
Which technique involves sending ICMP echo requests to multiple hosts?
a) Port Scanning
b) Ping Sweep
c) Vulnerability Scanning
) Session Hijacking
What is the primary goal of network discovery in scanning?
a) Mapping active devices on a network
b) Exploiting vulnerabilities
c) Sniffing packets
d) Hijacking sessions
Which tool is commonly used for vulnerability scanning?
a) Nmap
b) Nessus
c) Wireshark
d) Burp Suite
What is packet sniffing?
a) Capturing and analyzing network traffic
b) Gaining system access
c) Enumerating users
d) Assessing risks
Which type of sniffing involves no direct interaction with the target?
a) Active Sniffing
b) Passive Sniffing
c) ARP Spoofing
d) DNS Spoofing
What is ARP spoofing?
a) Poisoning the ARP cache to redirect traffic
b) Discovering network hosts
c) Scanning ports
d) Flooding MAC addresses
Which attack involves intercepting communication between two parties?
a) Session Hijacking
b) Man-In-The-Middle Attack
c) Ping Sweep
d) Vulnerability Scanning
What is DNS spoofing?
a) Altering DNS responses to redirect traffic
b) Scanning network vulnerabilities
c) Capturing Wi-Fi packets
d) Enumerating services
Which countermeasure can detect sniffing on a network?
a) Using encrypted protocols
b) Port scanning
c) Ping sweeps
d) ARP poisoning
What is MAC flooding?
a) Overloading a switch's MAC table to cause it to act like a hub
b) Discovering IP addresses
c) Hijacking TCP sessions
d) Assessing vulnerabilities
Which tool is commonly used for packet sniffing?
a) Wireshark
b) Nmap
c) Nessus
d) Metasploit
What is active sniffing?
a) Injecting traffic to capture data
b) Querying public databases
c) Scanning ports passively
d) Enumerating DNS records
Which technique is used for Wi-Fi sniffing?
a) Capturing wireless packets in monitor mode
b) Port scanning wired networks
c) ARP cache poisoning
d) DNS record enumeration
What is session hijacking?
a) Taking over an active user session
b) Gathering footprint information
c) Scanning vulnerabilities
d) Flooding MAC tables
Which detection technique can identify ARP spoofing?
a) Monitoring ARP table changes
b) Ping sweeps
c) Port scanning
d) Vulnerability assessments
What is wire trapping?
a) Physically tapping into network cables
b) Capturing wireless signals
c) Enumerating users
d) Cracking passwords
Which type of sniffing uses switched networks to its advantage?
a) Passive Sniffing
b) Active Sniffing
c) Wi-Fi Sniffing
d) Session Hijacking
What is a common countermeasure against sniffing?
a) Implementing VLANs
b) Using HTTPS
c) Port scanning
d) DNS spoofing
Which attack combines sniffing with redirection?
a) Man-In-The-Middle Attack
b) Ping Sweep
c) Vulnerability Scanning
d) Network Discovery
What does vulnerability scanning aim to identify?
a) Weaknesses in systems or networks
b) Open ports only
c) Sniffed packets
d) Hijacked sessions
Which tool performs ping sweeps effectively?
a) Nmap
b) Wireshark
c) Burp Suite
d) John the Ripper
What is network scanning?
a) Probing for live hosts and services
b) Capturing historical data
c) Enumerating DNS records
d) Cracking passwords
Which sniffing type is harder to detect?
a) Passive Sniffing
b) Active Sniffing
c) ARP Spoofing
d) DNS Spoofing
What is a Man-In-The-Middle attack's primary goal?
a) Intercept and alter communications
b) Scan ports
c) Discover networks
d) Flood MAC tables
Which protocol is vulnerable to sniffing if not encrypted?
a) HTTP
b) HTTPS
c) SSH
d) TLS
What is a sniffing detection technique?
a) Using intrusion detection systems (IDS)
b) Port scanning
c) Ping sweeps
d) Vulnerability exploits
Which attack floods the network with fake MAC addresses?
a) MAC Flooding
b) ARP Spoofing
c) DNS Spoofing
d) Session Hijacking
What tool is used for Wi-Fi packet capturing?
a) Aircrack-ng
b) Nessus
c) Metasploit
d) Nmap
Which countermeasure prevents session hijacking?
a) Using secure cookies and HTTPS
b) Port scanning
c) ARP poisoning
d) DNS enumeration
What is enumeration in ethical hacking?
a) Listing resources like users and services
b) Gaining unauthorized access
c) Sniffing packets
d) Scanning ports
Which type of enumeration targets user accounts?
a) User enumeration
b) System enumeration
c) Service enumeration
d) Vulnerability assessment
What is vulnerability analysis?
a) Identifying and assessing security weaknesses
b) Enumerating DNS records
c) Cracking passwords
d) Hijacking sessions
What does CVE stand for?
a) Common Vulnerabilities and Exposures
b) Computer Virus Encyclopedia
c) Cyber Vulnerability Evaluation
d) Common Virus Exploits
What is risk assessment?
a) Evaluating potential threats and impacts
b) Listing user accounts
c) Sniffing network traffic
d) Exploiting systems
What is TCP/IP hijacking?
a) Intercepting and altering TCP/IP communications
b) Enumerating services
c) Assessing vulnerabilities
d) Cracking passwords
Which attack involves stealing email sessions?
a) EMAIL Hijacking
b) TCP/IP Hijacking
c) Password Hacking
d) System Enumeration
What is a dictionary attack?
a) Using a list of common words to crack passwords
b) Brute-forcing all combinations
c) Generating rainbow tables
d) Enumerating users
Which technique combines dictionary and brute-force methods?
a) Hybrid Dictionary Attack
b) Rainbow Tables
c) Privilege Escalation
d) Maintaining Access
What are rainbow tables?
a) Precomputed hash tables for password cracking
b) Lists of user enumerations
c) Vulnerability databases
d) System hacking tools
What is privilege escalation?
a) Gaining higher access rights than authorized
b) Enumerating services
c) Assessing risks
d) Hijacking TCP sessions
What is maintaining access?
a) Installing backdoors to retain control
b) Cracking passwords
c) Enumerating users
d) Analyzing vulnerabilities
Which type of malware self-replicates across networks?
a) Worm
b) Virus
c) Trojan
d) Ransomware
What is a Trojan?
a) Malware disguised as legitimate software
b) Vulnerability assessment tool
c) Password cracking method
d) Enumeration technique
Which tool is used for anti-malware protection?
a) Antivirus software
b) Metasploit
c) Nmap
d) Wireshark
What is brute-force attack?
a) Trying all possible password combinations
b) Using dictionary lists
c) Generating rainbow tables
d) Enumerating systems
Which enumeration type lists running services?
a) Service enumeration
b) User enumeration
c) System enumeration
d) Vulnerability scanning
What is system hacking?
a) Gaining and maintaining unauthorized access
b) Assessing CVEs
c) Sniffing packets
d) Hijacking emails
Which malware type encrypts files for ransom?
a) Ransomware
b) Virus
c) Worm
d) Trojan
What technique helps in malware detection?
a) Signature-based scanning
b) Password cracking
c) User enumeration
d) Risk assessment
What is a virus?
a) Malware that attaches to files and spreads
b) Precomputed hash table
c) Vulnerability database
d) Enumeration tool
Which attack targets password hashes?
a) Rainbow Tables
b) Dictionary Attack
c) Brute-Force Attack
d) Hybrid Attack
What is vulnerability assessment?
a) Evaluating systems for known weaknesses
b) Cracking privileges
c) Maintaining backdoors
d) Hijacking TCP
Which enumeration targets operating systems?
a) System enumeration
b) User enumeration
c) Service enumeration
d) Risk assessment
What is password hacking?
a) Attempting to discover user passwords
b) Enumerating CVEs
c) Analyzing malware
d) Hijacking sessions
Which tool is used for password cracking?
a) John the Ripper
b) Nessus
c) Wireshark
d) Burp Suite
What is a common anti-malware technique?
a) Heuristic analysis
b) Privilege escalation
c) Rainbow tables
d) System enumeration
Which hijacking targets email protocols?
a) EMAIL Hijacking
b) TCP/IP Hijacking
c) Password Hacking
d) Malware Infection
What does CVE provide?
a) Standardized vulnerability identifiers
b) Password lists
c) Malware types
d) Enumeration techniques
Which step follows password cracking in system hacking?
a) Privilege escalation
b) User enumeration
c) Risk assessment
d) Malware deployment
What are two common scanning techniques?
a) Port scanning and vulnerability scanning
b) Ping sweep and session hijacking
c) ARP spoofing and DNS spoofing
d) MAC flooding and wire trapping
Which two tools are used for scanning and sniffing?
a) Nmap and Wireshark
b) Nessus and Burp Suite
c) Aircrack-ng and Metasploit
d) John the Ripper and DNSenum
What are two types of sniffing?
a) Active and passive sniffing
b) Port and vulnerability scanning
c) ARP and DNS spoofing
d) MAC flooding and session hijacking
Which two attacks involve spoofing in sniffing?
a) ARP spoofing and DNS spoofing
b) Ping sweep and port scanning
c) Network discovery and vulnerability scanning
d) Man-In-The-Middle and wire trapping
What are two countermeasures against sniffing?
a) Using encrypted protocols and intrusion detection systems
b) Port scanning and ping sweeps
c) Session hijacking and MAC flooding
d) Wi-Fi sniffing and vulnerability scanning
Which two techniques are part of network scanning?
a) Ping sweep and network discovery
b) Active sniffing and passive sniffing
c) ARP spoofing and DNS spoofing
d) Session hijacking and Man-In-The-Middle
What are two detection techniques for sniffing?
a) Monitoring ARP changes and using IDS
b) Port scanning and vulnerability assessment
c) Wi-Fi capturing and MAC flooding
d) Wire trapping and session hijacking
Which two attacks are related to sniffing?
a) Man-In-The-Middle and session hijacking
b) Ping sweep and port scanning
c) Network discovery and vulnerability scanning
d) ARP spoofing and wire trapping
What are two benefits of vulnerability scanning?
a) Identifying weaknesses and assessing risks
b) Sniffing packets and hijacking sessions
c) Spoofing ARP and flooding MAC
d) Discovering networks and sweeping pings
Which two tools support Wi-Fi sniffing and analysis?
a) Aircrack-ng and Wireshark
b) Nmap and Nessus
c) Burp Suite and Metasploit
d) DNSenum and John the Ripper
What are two limitations of passive sniffing?
a) Limited to broadcast traffic and harder in switched networks
b) Easy detection and requires injection
c) High risk and resource-intensive
d) Guarantees exploits and access
Which two activities are part of active sniffing?
a) ARP spoofing and MAC flooding
b) Passive capturing and querying databases
c) Port scanning and ping sweeps
d) Vulnerability scanning and network discovery
What are two outcomes of effective scanning?
a) Network mapping and vulnerability identification
b) Packet capturing and session hijacking
c) DNS spoofing and wire trapping
d) Man-In-The-Middle and ARP poisoning
Which two protocols are vulnerable to sniffing if unencrypted?
a) HTTP and FTP
b) HTTPS and SSH
c) TLS and SFTP
d) SCP and SHTTP
What are two types of wire trapping?
a) Physical tapping and wireless interception
b) Port scanning and ping sweeps
c) Active and passive sniffing
d) Vulnerability and network scanning
What are two types of enumeration?
a) User enumeration and service enumeration
b) System enumeration and vulnerability analysis
c) Password cracking and privilege escalation
d) Malware types and risk assessment
Which two techniques are used in password hacking?
a) Dictionary attack and brute-force attack
b) Hybrid attack and rainbow tables
c) TCP/IP hijacking and email hijacking
d) System enumeration and user enumeration
What are two types of malware?
a) Viruses and worms
b) Trojans and ransomware
c) All of the above
d) None of the above
Which two steps are part of system hacking?
a) Password cracking and privilege escalation
b) Maintaining access and enumeration
c) Vulnerability assessment and risk analysis
d) TCP/IP hijacking and email hijacking
What are two components of vulnerability analysis?
a) Vulnerability assessment and CVE
b) Risk assessment and system enumeration
c) User enumeration and service enumeration
d) Malware detection and anti-malware tools
Which two attacks involve hijacking?
a) TCP/IP hijacking and EMAIL hijacking
b) Dictionary attack and brute-force attack
c) Rainbow tables and hybrid attack
d) Viruses and worms
What are two anti-malware techniques?
a) Signature-based scanning and heuristic analysis
b) Privilege escalation and maintaining access
c) User enumeration and system enumeration
d) Vulnerability scanning and risk assessment
Which two tools are used for password cracking and vulnerability analysis?
a) John the Ripper and Nessus
b) Metasploit and Wireshark
c) Nmap and Burp Suite
d) DNSenum and Aircrack-ng
What are two purposes of enumeration?
a) Identifying users and services
b) Cracking passwords and escalating privileges
c) Assessing risks and analyzing CVEs
d) Deploying malware and hijacking sessions
Which two password attacks use precomputed data?
a) Hybrid dictionary attack and rainbow tables
b) Dictionary attack and brute-force attack
c) System hacking and privilege escalation
d) Malware infection and virus spreading
What are two outcomes of vulnerability analysis?
a) Identifying weaknesses and assessing risks
b) Enumerating users and cracking passwords
c) Hijacking TCP and maintaining access
d) Deploying trojans and worms
Which two types of enumeration target systems and users?
a) System enumeration and user enumeration
b) Service enumeration and vulnerability assessment
c) Risk analysis and CVE lookup
d) Password hacking and malware analysis
What are two benefits of risk assessment?
a) Prioritizing threats and mitigating impacts
b) Cracking privileges and maintaining backdoors
c) Enumerating services and hijacking emails
d) Infecting with viruses and trojans
Which two malware types are self-replicating?
a) Viruses and worms
b) Trojans and ransomware
c) Rainbow tables and dictionary lists
d) Hybrid attacks and brute-force
What are two stages after gaining access in system hacking?
a) Privilege escalation and maintaining access
b) User enumeration and service enumeration
c) Vulnerability assessment and risk analysis
d) TCP hijacking and email hijacking
