NEW
Font size
WorksheetsQuiz2-ADV05-MakScie
Total questions: 40
Worksheet time: 40mins
A hospital encrypts all patient records stored in its database. Which aspect of the CIA Triad is being addressed primarily?
A. Availability
B. Integrity
C. Confidentiality
D. Authentication
A software company uses SHA-256 hashing to verify that downloaded updates haven’t been altered. Which CIA principle is this?
Confidentiality
Integrity
Availability
Non-repudiation
During a DDoS attack, a company’s website becomes unreachable for customers. Which CIA component is affected?
Integrity
Availability
Confidentiality
Authenticity
An HR staff member accidentally emails employee salary data to all staff. Which CIA principle was violated?
Confidentiality
Integrity
Availability
Non-repudiation
An attacker modifies audit logs to erase evidence of unauthorized access. Which CIA element is compromised?
Confidentiality
Integrity
Availability
Accountability
To ensure that systems are always operational during power outages, a company installs backup generators. This supports:
Availability
Confidentiality
Integrity
Non-repudiation
A financial institution uses multi-factor authentication to prevent unauthorized account access. Which CIA principle is this?
A. Availability
B. Confidentiality
C. Integrity
A developer signs an application digitally before distribution. This supports:
Confidentiality
Integrity
Availability
Authorization
A company replicates its data to a secondary data center every hour. This ensures:
Confidentiality
Integrity
Availability
Accountability
Unauthorized access to a database allowed a hacker to view customer credit card numbers. Which is violated?
Integrity
Availability
Confidentiality
Auditability
Checksum validation during file transfer ensures what?
Data is private
Data is accurate and unaltered
Data is always accessible
Data is encrypted
A system regularly backs up data to prevent loss during system crashes. Which is protected?
Integrity
Availability
Confidentiality
Authorization
Access control lists (ACLs) prevent unauthorized users from viewing system logs. Which CIA principle is upheld?
Integrity
Availability
Confidentiality
Reliability
A user deletes critical system files accidentally, rendering a server inoperable. Which CIA element is violated?
A. Availability
B. Integrity
C. Confidentiality
D. Accountability
An attacker intercepts a message and alters its content before delivery. This impacts:
Availability
Integrity
Confidentiality
Authorization
To maintain accurate patient records, a hospital uses a checksum verification system. This ensures:
Confidentiality
Integrity
Availability
Usability
Data stored in the cloud is encrypted and accessible only through authorized credentials. This ensures:
Integrity
Confidentiality and Availability
Availability only
Confidentiality only
A ransomware attack encrypts all company data, making it inaccessible. Which CIA component suffers most?
A. Availability
B. Integrity
C. Confidentiality
D. Authentication
An employee modifies a colleague’s performance report without permission. Which principle is breached?
Integrity
Availability
Confidentiality
Authenticity
A backup server ensures the company can restore operations within minutes of failure. This maintains:
Availability
Confidentiality
Integrity
Authorization
A company installs a device that blocks traffic from unauthorized IP addresses. What type of device is this?
IDS
IPS
Firewall
Antivirus
An organization uses a system that detects suspicious network activity but doesn’t stop it. This system is:
IDS
IPS
Firewall
Antivirus
An IPS blocks a user trying to exploit a vulnerability in the company’s web server. Which function is demonstrated?
Detection only
Prevention and blocking
Data encryption
Authentication
A firewall rule blocks all incoming connections except HTTP and HTTPS. What is the main goal?
Improve system performance
Maintain integrity
Control access and reduce exposure
Encrypt network traffic
An antivirus quarantines a malicious file found in a user’s email. Which CIA component is it protecting?
Integrity
Confidentiality
Availability
Authentication
A firewall blocks port 23 (Telnet) due to security concerns. What attack type is it preventing?
Brute-force login
Unencrypted communication sniffing
SQL injection
Malware infection
A company uses a next-generation firewall that analyzes packet content. This feature is called:
Deep Packet Inspection (DPI)
Port Filtering
Packet Forwarding
Content Encryption
An IDS generates too many false alarms, causing administrators to miss real threats. This issue is called:
False negative
Alert flooding
Data leakage
Packet dropping
Which device should be placed behind a firewall to detect insider attacks?
Router
IDS
Proxy
Switch
A user disables antivirus updates to improve PC speed. What is the consequence?
Reduced confidentiality
Reduced protection against new malware
Increased availability
Improved integrity
A host-based IDS monitors:
Network packets between systems
Events within a specific host or computer
Traffic leaving the organization
Email messages for spam
Which technology would best prevent a zero-day attack?
Signature-based IDS
Behavior-based IPS
Static firewall
Blacklist antivirus
A company separates its internal network from the internet using a firewall. This design is known as:
DMZ architecture
VLAN
VPN
IDS configuration
An IDS fails to detect an attack that occurred. This is known as:
False positive
False negative
False alarm
Detection bias
Which system would stop malicious traffic in real-time?
Firewall
IDS
IPS
Antivirus (on-demand)
A company uses antivirus software that compares files to a known malware database. This method is:
Heuristic analysis
Signature-based detection
Behavior analysis
Sandboxing
Which of the following would BEST prevent data exfiltration through email attachments?
IDS
Firewall
Data Loss Prevention (DLP) integrated with firewall
Antivirus only
An attacker floods a firewall with traffic, causing it to crash. What CIA element is impacted?
Integrity
Availability
Confidentiality
Authenticity
The antivirus detected malware but could not remove it completely. Which step should follow?
Ignore it
Disable the antivirus
Isolate or quarantine the infected system
Restart the computer
A network security team configures an IPS to automatically block repeated suspicious login attempts. This best supports:
Integrity
Confidentiality
Availability
Non-repudiation
