wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

ITS 105 Cybersecurity - Objective - 1.3 - Security Principals

Total questions: 22

Worksheet time: 11mins

Name
Class
Date
1.

Inadequate security measures in Internet of Things devices introducing new risks.

a)

Cybersecurity Exploits

b)

Cybersecurity Vulnerabilities

c)

IoT Vulnerabilities

d)

Website And Application Attacks (Buffer Overflow)

2.

Any circumstance or threat with the potential to cause harm to an asset, computer system or network.

a)

Physical Attacks

b)

Cyber Attack Vectors

c)

Cybersecurity Threats

d)

Insider Threats

3.

Occurs when a program writes more data to a buffer than it can hold, causing the excess data to overflow into adjacent memory locations. This can lead to data corruption, program crashes, or even the execution of malicious code.

a)

SQL Injection Attacks

b)

Cross-site Scripting (XSS) Attacks

c)

Denial of Service Attacks

d)

Website and Application Attacks (Buffer overflow)

4.

A stealthy computer network attack in which a person or group gains unauthorized access to a network and remains undetected for an extended period.

a)

Brute Force Attack

b)

Privilege Escalation Attack

c)

Advance Persistent Threat (APT)

d)

Organized Cyber Crime (occ)

5.

People engage in cyber attacks for various reasons, including financial gain, political motives, personal grievances, and the thrill of causing disruption.

a)

Physical Attacks

b)

Reasons for Cyber Attacks

c)

Cybersecurity Exploits

d)

Insider Threats

6.

A form of eavesdropping where the attacker makes an independent connection between two victims and steals information to use fraudulently.

a)

Man in the Middle Attack

b)

Brute Force Attack

c)

Distributed Denial of Service Attack

d)

Phishing Attack

7.

Cybersecurity exploits are techniques or methods used to take advantage of vulnerabilities in a computer system or network, potentially allowing unauthorized access or malicious actions

a)

Cybersecurity Exploits

b)

Physical Attacks

c)

Cyber Attack Vectors

d)

Brute Force Attack

8.

Threats to information systems and data integrity.

a)

Cybersecurity Risks

b)

Operational Risks

c)

Nonrepudiation Risks

d)


Environmental Risks

9.

Software that encrypts programs and data until a ransom is paid to remove it.

a)

Rootkit

b)

Adware

c)

Trojan

d)

Ransomware

10.

Attack vector that trumps logical, leverage remote device physical access to gain access to other devices on a network

a)

Social Engineering Attacks

b)

Phishing Attacks

c)

Information Attacks

d)

Physical Attacks

11.

A set of computers that are penetrated by malicious software known as malware that allows an external agent to control their actions

a)

Botnets

b)

Trojans

c)

Honeypots

d)

Blockchains

12.

A password-cracking program that tries every possible combination of characters.

a)
Dictionary attack
b)
Phishing attempt
c)
Social engineering
d)
Brute-force attack
13.

Who are Cyber Attackers?

a)

A form of eavesdropping where the attacker makes an independent connection between two victims and steals information to use fraudulently.

b)

Cyberattacks can target a wide range of victims from individual users to enterprises or even governments. When targeting businesses or other organizations, the hacker's goal is usually to access sensitive and valuable company resources, such as intellectual property (IP), customer data or payment details.

c)

A SQL Injection attack leverages system vulnerabilities to inject malicious SQL statements into a data-driven application, which then allows the hacker to extract information from a database. Hackers use SQL Injection techniques to alter, steal or erase application's database data.

d)

Cyber attack vectors are the methods or pathways that cybercriminals use to gain unauthorized access to systems, networks, or devices, often exploiting vulnerabilities.

14.

A SQL Injection attack leverages system vulnerabilities to inject malicious SQL statements into a data-driven application, which then allows the hacker to extract information from a database. Hackers use SQL Injection techniques to alter, steal or erase application's database data.

a)

Website and Application Attacks (SQL injection)

b)

IoT Vulnerabilities

c)

Man in the Middle Attack

d)

Replay Attack

15.

Current or former employee, contractor or other partner that has or had authorized access and intentionally misused that access

a)
Malware incident
b)
Data breach
c)
External attack
d)
Insider threat
16.

An unauthorized attempt to increase permission levels.

a)

Privilege Escalation Attack

b)

User Authentication Attack

c)

Access Control Attack

d)

Data Encryption Attack

17.

A weakness in an asset that can be exploited by a threat to cause harm.

a)

IoT Vulnerabilities

b)

Cybersecurity Vulnerabilities

c)

Cybersecurity Mitigation

d)

Physical Attacks

18.

A type of software attack where an attacker inserts some type of undesired or unauthorized software into a target device

a)

Malware Attack

b)

Spyware Attack

c)

Adware Attack

d)

Ransomware Attack

19.

Attacks that are carried out to intentionally block a service

a)
Denial of Service (DoS) attacks
b)
Malware attacks
c)
Data breaches
d)
Phishing attempts
20.

Cyber attack vectors are the methods or pathways that cybercriminals use to gain unauthorized access to systems, networks, or devices, often exploiting vulnerabilities.

a)

Brute Force Attack

b)

Cyber Attack Vectors

c)

Physical Attacks

d)

Malware Attack

21.

Is an attempt by cybercriminals, hackers or other digital adversaries to access a computer network or system, usually for the purpose of altering, stealing, destroying or exposing information.

a)

Cybersecurity Types of Attackers

b)

Malware Attack

c)

Physical Attacks

d)

Cyber Attack Vectors

22.

When someone pretends to be someone else with the intent of obtaining unauthorized data.

a)

Spoofing

b)

Tailgating

c)

Sniffing

d)

Spooling