WorksheetsWJEC CS U1 Cybersecurity
Total questions: 20
Worksheet time: 10mins
What is malware?
Software designed to protect a network
Software created to harm or exploit systems
Hardware that prevents unauthorised access
Software that monitors network traffic
Which of the following is a virus most likely to do?
Encrypt files and demand payment
Reduce system performance
Monitor user activity secretly
Pretend to be useful software
Which type of malware locks a user’s files until money is paid?
Worm
Spyware
Trojan Horse
Ransomware
What makes a worm different from a virus?
Worms require a host file to spread
Worms can replicate and spread without a host program
Worms are not harmful to systems
Worms only infect removable drives
Which malware secretly collects user data such as keystrokes?
Spyware
Trojan horse
Rootkit
Firewall
What is phishing?
Sending fake messages to trick users into sharing information
Cracking passwords through repeated guessing
Blocking access to a website
Copying a database illegally
An attacker phones an employee pretending to be IT support and requests login details. Which social-engineering method is this?
Phishing
Pretexting
Baiting
Impersonation
Offering a “free gift” download that installs malware is an example of:
Trojan
Phishing
Spoofing
Credential stuffing
Which attack involves trying every possible password combination until one works?
Dictionary attack
Brute-force attack
SQL injection
Man-in-the-middle
A dictionary attack uses what to guess passwords?
Randomly generated numbers
Commonly used words and phrases
Encrypted hashes
Hardware addresses
A website is overwhelmed with requests from many devices at once, causing it to crash. What attack is this?
Man-in-the-middle
Distributed denial-of-service (DDoS)
SQL injection
Keylogging
What is the purpose of a man-in-the-middle attack?
To steal data by intercepting communication between two devices
To overload a network with traffic
To guess passwords
To delete user accounts remotely
Packet sniffing is used to:
Encrypt data packets
Intercept and analyse data being transmitted
Stop data from leaving a network
Compress data for faster transfer
What is IP spoofing?
Blocking an IP address from accessing a network
Changing an IP address to disguise the source of data
Monitoring traffic from a known IP address
Creating random IP addresses to test servers
Which attack injects malicious code into database queries?
SQL injection
Phishing
DDoS
Worm infection
Which of the following best describes penetration testing?
Checking physical security locks
Simulating cyber-attacks to find vulnerabilities
Encrypting all stored data
Monitoring network traffic continuously
What does encryption do?
Converts data into code so it cannot be read without a key
Deletes unnecessary files to save space
Prevents internet access to unauthorised users
Compresses files to reduce size
Why are user access levels important for cybersecurity?
They allow users to access every system file
They ensure users only access information needed for their role
They make login faster for all users
They hide system errors from administrators
What is the main advantage of using multi-factor authentication (MFA)?
It encrypts stored data
It requires more than one form of verification, improving security
It speeds up user login times
It removes the need for passwords
What is the purpose of network forensics?
To analyse network data and investigate suspicious activity
To protect against malware in real time
To design network hardware
To speed up network connections
