NEW
Font size
WorksheetsDay 17 and 18 Net+ Review
Total questions: 17
Worksheet time: 9mins
What is the primary defense mechanism used to block unsolicited traffic from external attackers?
Network Address Translation (NAT)
Firewall
VLAN segmentation
Proxy caching
Which of the following best describes an internal threat?
An attacker using a phishing email to trick users into clicking a link
A hacker exploiting an open port on a firewall
A system administrator intentionally deleting production databases
A cyber-criminal launching a DDoS attack from a botnet
Which of the following is a characteristic of a Distributed DoS (DDoS) attack?
Uses multiple compromised systems to generate traffic
Targets a single host from one IP address
Requires physical access to the network
Exploits authentication vulnerabilitie
What is the primary function of the command-and-control (C2) component in a botnet?
It detects and removes malicious bots
It directs infected systems to execute coordinated attacks
It monitors legitimate user traffic for performance
It encrypts data to protect against DDoS
Which of the following best defines malware?
Software designed to manage system resources
Software used to prevent unauthorized access
Legitimate software containing optional advertising modules
Any code created to harm or exploit systems and users
A security engineer wants to prevent attackers from performing email spoofing. Which technologies
should be implemented?
NAT and PAT
DNSSEC and NTP
EFS and BitLocker
SPF, DKIM, and DMARC
Which of the following best describes an on-path attack?
An attacker intercepts and possibly alters data between two parties
An attack that floods a network with traffic to deny access
Malware that executes without leaving files on the disk
A brute-force attempt to guess user credentials
An attacker floods a switch with packets containing unique, fake MAC addresses to overload its table. What is this attack’s potential outcome?
The attacker gains access to the routing table
The firewall rejects all packets with invalid MACs
The switch broadcasts all frames, allowing eavesdropping
The attacker gains administrative control of the switch
Which of the following controls BEST protects against rogue DHCP or DNS servers?
VLAN trunking protocol
DHCP snooping
Port mirroring
IP helper address
A wireless network suddenly has a second SSID identical to the company’s Wi-Fi name. Which of the
following should a network administrator suspect?
Evil twin / rogue access point
VLAN hopping attack
ARP poisoning
Misconfigured QoS
An attacker posing as a delivery person follows an employee into a secure building without using a
badge. Which attack type does this represent?
Dumpster Diving
Shoulder Surfing
Smishing
Piggybacking
An attacker generates every possible character combination to determine a password. Which type of
attack is being performed?
Dictionary
Hybrid
Brute force
Password spraying
After entering valid credentials, a user gains access only to the HR folder and payroll database. Which
component of access control does this describe?
Authentication
Authorization
Accounting
Identity
A network administrator configures the system to deny logins from outside the corporate campus
perimeter. Which authentication method is being used?
Token verification
Biometric authentication
Time-based restriction
Geofencing
A company uses one login to access email, storage, and messaging applications through Microsoft 365.
Which technology enables this?
Federation
VPN tunneling
Single Sign-On
Access control lists
Which of the following protocols is MOST commonly associated with web-based SSO in cloud services?
RADIUS
SAML
DNSSEC
SNMPv3
An organization assigns permissions based on job functions such as “Network Administrator” or
“Technician.” Which model is being used?
MAC
DAC
ABAC
RBAC
