WorksheetsICS CIE-III
Total questions: 20
Worksheet time: 10hrs 0mins
1.What is the primary purpose of a Public Key Infrastructure (PKI)?
To generate symmetric keys
To manage and distribute digital certificates and public keys
To encrypt emails only
To monitor network traffic
2.Which of the following is not a field in an X.509 digital certificate?
Serial Number
Issuer Name
Symmetric Key
Subject Name
3.The Needham-Schroeder protocol is used for:
Error detection
Authentication using symmetric keys
Routing table management
File encryption
4.In Kerberos authentication, the Ticket Granting Server (TGS) is responsible for:
Generating session keys for users
Encrypting all network traffic
Issuing service tickets to authenticated users
Storing public keys
5.Which feature is inherent to IPv6 and optional in IPv4?
ARP
IPsec support
Broadcast addressing
NAT
6.HTTPS uses which protocol to provide secure communication over HTTP?
TLS/SSL
IPsec
Kerberos
PGP
7.Which of the following uses a combination of symmetric and asymmetric encryption for securing emails?
FTP
PGP
HTTP
Telnet
8.Which type of firewall filters packets based only on source and destination IP addresses and ports?
Packet-filtering firewall
Circuit-level gateway
Application-level gateway
Stateful inspection firewall
9.In Kerberos, the session key shared between client and server is issued by:
Authentication Server (AS)
Ticket Granting Server (TGS)
Key Distribution Center (KDC)
Both AS and TGS collaboratively
10.A Security Association (SA) in IPsec is uniquely identified by:
A)
B)
C)
D)
Answer: A
Source IP, Destination IP, and SPI (Security Parameters Index)
SPI and Port Number
Source IP only
Authentication Header only
11.Phishing primarily exploits which security vulnerability?
Software bugs
Human psychology and social engineering
Weak encryption algorithms
Operating system flaws
12.A software keylogger captures:
Keystrokes entered by the user
Network packets
System log files
Browser cache data
13.Which of the following best describes spyware?
Malware that self-replicates without a host file
Program that secretly gathers user data without consent
Security tool that monitors intrusions
Malware that encrypts data for ransom
14.How does a worm differ from a virus?
Worms only affect executable files
Worms can self-replicate without user intervention
Worms need host files, viruses don’t
Viruses spread via network traffic, worms don’t
15.The primary difference between a DoS and DDoS attack is:
DDoS requires user authentication
DoS attacks are legal; DDoS are not
DDoS uses multiple distributed systems
DoS affects only routers
16.SQL Injection occurs due to:
Buffer overflow in kernel code
Weak hashing algorithms
Improper input validation in web applications
Lack of encryption
17.A buffer overflow vulnerability allows an attacker to:
Monitor network traffic
Delete encrypted files
Execute arbitrary code by overwriting memory
Block legitimate users from access
18.The primary purpose of adware is to:
Encrypt files
Display unwanted advertisements and track user behavior
Replicate across the network
Steal passwords
19.Modern antivirus software uses heuristic analysis to:
Perform disk defragmentation
Identify potential malware based on behavior patterns
Encrypt files for safety
Detect only known viruses
20.Which type of IDS compares current activities with a predefined normal behavior profile?
Signature-based IDS
Network-based IDS
Anomaly-based IDS
Host-based IDS
