Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Network Vulnerabilities & Business Impact

Total questions: 40

Worksheet time: 20mins

Name
Class
Date
1.

What type of attack involves intercepting data transmitted between network devices?

a)

Tapping/Eavesdropping

b)

Denial of Service

c)

Phishing

d)

SQL Injection

2.

Which vulnerability affects communication lines according to network security principles?

a)

Crosstalk and radiation

b)

Only software bugs

c)

User passwords only

d)

Firewall settings

3.

In the threat hierarchy, which category includes fire and power failure?

a)

Natural causes

b)

Malicious intent

c)

Directed attacks

d)

Random attacks

4.

What is an example of a "benign intent" human-caused threat?

a)

Human error/misconfiguration

b)

Ransomware attack

c)

Data theft

d)

Impersonation

5.

Which type of loss involves disruption to normal business operations?

a)

Operational loss

b)

Reputational loss

c)

Financial loss

6.

What is the maximum GDPR fine for data protection breaches?

a)

€20 million or 4% of global turnover

b)

€10 million or 2% of global turnover

c)

€5 million or 1% of global turnover

d)

€50 million or 10% of global turnover

7.

What does PCI-DSS stand for?

a)

Payment Card Industry Data Security Standard

b)

Personal Card Information Data Security Standard

c)

Payment Card International Data Security Standard

d)

Protected Card Industry Data Security Standard

8.

How many main requirements does PCI-DSS have?

a)

12

b)

10

c)

15

d)

8

9.

Which type of loss includes damage to an organisation's trustworthiness?

a)

Reputational loss

b)

Operational loss

c)

Financial loss

d)

Legal loss

10.

What is a single point of failure in a network?

a)

A component whose failure would cause entire system failure

b)

A backup system

c)

Multiple redundant connections

d)

A firewall rule

11.

Which type of attack targets specific organisations or individuals?

a)

Directed attacks

b)

Random attacks

c)

Natural disasters

d)

Benign errors

12.

What type of loss includes regulatory fines and litigation costs?

a)

Legal loss

b)

Operational loss

c)

Reputational loss

d)

Financial loss

13.

Level 1 PCI-DSS compliance applies to merchants processing how many transactions annually?

a)

Over 6 million

b)

Over 1 million

c)

Over 100,000

d)

Over 10 million

14.

Which network vulnerability involves unauthorised changes to programmes?

a)

Software modifications

b)

Hardware failure

c)

Natural disasters

d)

Network congestion

15.

What is the typical recovery time for reputation after a major breach?

a)

18–24 months

b)

3–6 months

c)

6–12 months

d)

1–3 months

16.

Which component in a network is vulnerable to radiation attacks?

a)

Processor

b)

Keyboard

c)

Mouse

d)

Monitor

17.

What type of malware encrypts files and demands payment?

a)

Ransomware

b)

Spyware

c)

Adware

d)

Trojan

18.

Network segmentation helps prevent which PCI-DSS violation?

a)

Mixing payment systems with general network traffic

b)

Using strong passwords

c)

Physical security

d)

Employee training

19.

Which type of loss directly affects revenue and includes theft of funds?

a)

Financial loss

b)

Operational loss

c)

Reputational loss

d)

Legal loss

20.

What is an example of a random malicious attack?

a)

Malicious code on a general website

b)

Targeted CEO impersonation

c)

Specific company espionage

d)

Directed phishing campaign

21.

DHCP failure would cause which type of immediate impact?

a)

Devices cannot obtain IP addresses

b)

Files are encrypted

c)

Passwords are stolen

d)

Physical damage occurs

22.

The Computer Misuse Act 1990 addresses which type of loss?

a)

Legal loss

b)

Financial loss only

c)

Reputational loss only

d)

Operational loss only

23.

Which of the following is NOT considered sensitive authentication data under PCI-DSS?

a)

Cardholder name

b)

CVV code

c)

PIN number

d)

Magnetic stripe data

24.

What is the minimum consequence for PCI-DSS non-compliance?

a)

Increased transaction fees

b)

Criminal prosecution

c)

Business closure

d)

Nothing happens

25.

A compromise at a switching centre affects which aspect of a network the most?

a)

All network routing and connectivity

b)

Only wireless connections

c)

Only wired connections

d)

Only internet access

26.

Which threat type includes Advanced Persistent Threats (APTs)?

a)

Directed malicious attacks

b)

Random attacks

c)

Natural causes

d)

Human error

27.

Erosion of customer trust is an example of which type of loss?

a)

Reputational loss

b)

Financial loss

c)

Operational loss

d)

Legal loss

28.

What is a "cascade effect" in security incidents?

a)

One incident triggering multiple types of losses

b)

Only financial impact

c)

Single system failure

d)

Automatic recovery

29.

Wireless access point failure primarily causes?

a)

Service availability issues

b)

Data theft

c)

Regulatory fines

d)

Physical damage

30.

Which document is required for PCI-DSS Level 4 merchants?

a)

Self-Assessment Questionnaire (SAQ)

b)

Full security audit

c)

Government certification

d)

ISO 27001

31.

Tapping into CAT6 cables is what type of vulnerability?

a)

Physical security vulnerability

b)

Software vulnerability

c)

Cloud vulnerability

d)

Wireless vulnerability

32.

How long must businesses retain evidence after a security incident?

a)

As required by legal/regulatory requirements

b)

30 days

c)

1 year exactly

d)

Forever

33.

What type of attack was the WannaCry ransomware?

a)

Random malicious attack

b)

Directed attack

c)

Natural disaster

d)

Benign error

34.

Business interruption insurance covers which type of loss?

a)

Operational and financial loss

b)

Only reputational loss

c)

Only legal loss

d)

Only physical damage

35.

What is the first priority in network risk mitigation?

a)

Network segmentation

b)

Staff training

c)

New computers

d)

Cloud migration

36.

Social engineering primarily exploits which vulnerability?

a)

Human factors

b)

Software bugs

c)

Hardware failures

d)

Network speed

37.

PCI-DSS Level 2 applies to how many annual transactions?

a)

1–6 million

b)

Over 6 million

c)

Under 1 million

d)

Under 20,000

38.

Which type of loss includes increased insurance premiums?

a)

Financial loss

b)

Legal loss only

c)

Reputational loss only

d)

Operational loss only

39.

What does IDS stand for in network security?

a)

Intrusion Detection System

b)

Internal Data Security

c)

Internet Defence System

d)

Integrated Defence Software

40.

Supply chain disruption is primarily which type of loss?

a)

Operational loss

b)

Legal loss

c)

Reputational loss only

d)

Financial loss only