wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

MCyber Chapter 1

Total questions: 12

Worksheet time: 12mins

Name
Class
Date
1.
What type of attack occurs when data goes beyond the memory areas allocated to an application?
a)
RAM Spoofing
b)
SQL Injection
c)
RAM Injection
d)
Buffer overflow
e)
Pluto
2.
Which of the following statements describes a distributed denial of service (DDoS) attack?
a)
One computer accepts data packets based on the MAC address of another computer
b)
A botnet of zombies, coordinated by an attacker, overwhelms a server with DoS attacks
c)
An attacker sends an enormous quantity of data that a server cannot handle
d)
An attacker monitors network traffic to learn authentication credentials
3.
Employees in an organization report that the network access is slow. Further investigation reveals that one employee downloaded a third-party scanning program for the printer. What type of malware may have been introduced?
a)
Phishing
b)
Worm
c)

Virus

d)
Trojan horse
4.
Employees report that they cannot access the customer database file. Further investigation reveals that the database file is now encrypted. Shortly afterward, they receives a threatening email demanding payment for the decryption of the file. What type of attack has the organization experienced?
a)
DoS attack
b)
Trojan horse
c)
Man-in-the-middle attack
d)
Ransomware
5.
A penetration test carried out by an organization identified a backdoor on the network. What action should the organization take to find out if their systems have been compromised?
a)
Look for policy changes in Event Viewer
b)
Scan the systems for viruses
c)
Look for unauthorized accounts
d)
Look for usernames that do not have passwords
6.
What is a nontechnical method that a cybercriminal would use to gather sensitive information from an organization?
a)
man-in-the-middle
b)
social engineering
c)
pharming
d)
ransomeware
7.
All employees in an organization receive an email stating that their account password will expire immediately and that they should reset their password within five minutes. Which of the following statements best describes this email?
a)
It is a piggyback attack
b)
It is an impersonation attack
c)
It is a hoax
d)
It is a DDoS attack
8.
What three best practices can help defend against social engineering attacks? (Choose three.)
a)
Enable a policy that states that the IT department should supply information over the phone only to managers.
b)

Do not provide password resets in a chat window.

c)
Resist the urge to click on enticing web links.
d)
Deploy well-designed firewall appliances.
e)
Educate employees regarding policies.
9.
What do you call an impersonation attack that takes advantage of a trusted relationship between two systems?
a)
Man-in-the-middle
b)
Sniffing
c)
Spamming
d)
Spoofing
10.
A cyber criminal sends a series of maliciously formatted packets to the database server. The server cannot parse the packets and the event causes the server crash. What is the type of attack the cyber criminal launches?
a)
DoS
b)
man-in-the-middle
c)
packet Injection
d)
SQL injection
11.
The awareness and identification of vulnerabilities is a critical function of a cybersecurity specialist. Which of the following resources can be used to identify specific details about vulnerabilities?
a)
CVE national database
b)
NIST/NICE framework
c)
ISO/IEC 27000 model
d)
Infragard
12.

A secretary receives a phone call from someone claiming that their manager is about to give an important presentation but the presentation files are corrupted. The caller sternly asks that the secretary email the presentation right away to a personal email address. The caller also states that the secretary is being held personally responsible for the success of this presentation.

What type of social engineering tactic is the caller using?

a)
intimidation
b)
trusted partners
c)
familiarity
d)
urgency