wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Day 17 and 18 Net+ Review

Total questions: 17

Worksheet time: 9mins

Name
Class
Date
1.

What is the primary defense mechanism used to block unsolicited traffic from external attackers?

a)

Network Address Translation (NAT)

b)

Firewall

c)

VLAN segmentation

d)

Proxy caching

2.

Which of the following best describes an internal threat?

a)

An attacker using a phishing email to trick users into clicking a link

b)

A hacker exploiting an open port on a firewall

c)

A system administrator intentionally deleting production databases

d)

A cyber-criminal launching a DDoS attack from a botnet

3.

Which of the following is a characteristic of a Distributed DoS (DDoS) attack?

a)

Uses multiple compromised systems to generate traffic

b)

Targets a single host from one IP address

c)

Requires physical access to the network

d)

Exploits authentication vulnerabilitie

4.

What is the primary function of the command-and-control (C2) component in a botnet?

a)

It detects and removes malicious bots

b)

It directs infected systems to execute coordinated attacks

c)

It monitors legitimate user traffic for performance

d)

It encrypts data to protect against DDoS

5.

Which of the following best defines malware?

a)

Software designed to manage system resources

b)

Software used to prevent unauthorized access

c)

Legitimate software containing optional advertising modules

d)

Any code created to harm or exploit systems and users

6.

A security engineer wants to prevent attackers from performing email spoofing. Which technologies
should be implemented?

a)

NAT and PAT

b)

DNSSEC and NTP

c)

EFS and BitLocker

d)

SPF, DKIM, and DMARC

7.

Which of the following best describes an on-path attack?

a)

An attacker intercepts and possibly alters data between two parties

b)

An attack that floods a network with traffic to deny access

c)

Malware that executes without leaving files on the disk

d)

A brute-force attempt to guess user credentials

8.

An attacker floods a switch with packets containing unique, fake MAC addresses to overload its table. What is this attack’s potential outcome?


a)

The attacker gains access to the routing table

b)

The firewall rejects all packets with invalid MACs

c)

The switch broadcasts all frames, allowing eavesdropping

d)

The attacker gains administrative control of the switch

9.

Which of the following controls BEST protects against rogue DHCP or DNS servers?

a)

VLAN trunking protocol

b)

DHCP snooping

c)

Port mirroring

d)

IP helper address

10.

A wireless network suddenly has a second SSID identical to the company’s Wi-Fi name. Which of the
following should a network administrator suspect?

a)

Evil twin / rogue access point

b)

VLAN hopping attack

c)

ARP poisoning

d)

Misconfigured QoS

11.

An attacker posing as a delivery person follows an employee into a secure building without using a
badge. Which attack type does this represent?

a)

Dumpster Diving

b)

Shoulder Surfing

c)

Smishing

d)

Piggybacking

12.

An attacker generates every possible character combination to determine a password. Which type of
attack is being performed?

a)

Dictionary

b)

Hybrid

c)

Brute force

d)

Password spraying

13.

After entering valid credentials, a user gains access only to the HR folder and payroll database. Which
component of access control does this describe?

a)

Authentication

b)

Authorization

c)

Accounting

d)

Identity

14.

A network administrator configures the system to deny logins from outside the corporate campus
perimeter. Which authentication method is being used?

a)

Token verification

b)

Biometric authentication

c)

Time-based restriction

d)

Geofencing

15.

A company uses one login to access email, storage, and messaging applications through Microsoft 365.
Which technology enables this?

a)

Federation

b)

VPN tunneling

c)

Single Sign-On

d)

Access control lists

16.

Which of the following protocols is MOST commonly associated with web-based SSO in cloud services?

a)

RADIUS

b)

SAML

c)

DNSSEC

d)

SNMPv3

17.

An organization assigns permissions based on job functions such as “Network Administrator” or
“Technician.” Which model is being used?

a)

MAC

b)

DAC

c)

ABAC

d)

RBAC