WorksheetsBreak and Build Set 2
Total questions: 30
Worksheet time: 6mins
Which of the following is not a type of malware?
Firewall
Virus
Worm
Trojan
Which device connects multiple networks together?
Router
Switch
Hub
Repeater
In Linux, which command lists files in a directory?
cd
ls
rm
cat
What does “phishing” usually involve?
Sending fake emails to trick users
Encrypting files for ransom
Overloading a server with traffic
Monitoring keystrokes
Which port is used by HTTP?
22
25
80
443
Which command shows current directory path in Linux?
mkdir
pwd
echo
dir
SSL/TLS mainly provides:
Confidentiality and integrity
Physical security
Server load balancing
Password storage
Which is the most secure Wi-Fi encryption protocol?
WEP
WPA
WPA2
WPA2-Enterprise
Which command is used to remove a file in Linux?
rm
del
erase
clear
Which layer of OSI deals with IP addressing?
Application
Network
Session
Data Link
Which protocol is used for secure remote login?
FTP
SSH
HTTP
Telnet
What is the default port of HTTPS?
23
80
443
21
Which of these is a strong password?
password123
Admin
MyDog#2025!
123456
What does DNS stand for?
Data Name Service
Domain Name System
Direct Network Server
Dynamic Node Service
Which Linux command is used to change file permissions?
chmod
chperm
change
permset
Which one is a social engineering attack?
SQL Injection
Phishing
DDos
Buffer Overflow
Tool used for network packet capturing:
Wireshark
photoshop
Netpaint
PacketDraw
Which Linux command displays disk usage?
df
du
Is
disk
What is the function of a firewall?
Scan viruses
Block unauthorized access
Store data
Encrypt data
VPN stands for:
Virtual Public Network
Virtual Private Network
Verified Private Network
Virtual Protected Node
What type of attack floods a server with traffic?
MITM
Phishing
DDos
Spoofing
The process of converting readable data into unreadable form is called (a) .
In networking, a (a) address uniquely identifies a device at Layer 2.
The command used to change ownership of a file in Linux is (a) .
The tool (a) is widely used to perform network reconnaissance and port scanning.
The default SSH port is (a) .
You’re hired to test a client’s web app. You input ' OR '1'='1 in a login form and gain access. Which vulnerability is present?
XSS
SQL Injection
CSRF
Directory Traversal
During an engagement you compromise an internal DNS server. You now change records to direct traffic to your own machine. This is an example of:
ARP Spoofing
DNS Poisoning
VLAN Hopping
ICMP Tunneling
You work as an IT officer in a government office.
Several employees report receiving emails that look official but are from unknown domains.
The emails ask users to “update” their login credentials through a link.
On checking, you see the website URL is slightly misspelled compared to the official site.
A few staff have already entered their passwords.
This method tricks people into giving sensitive information voluntarily.
This type of cyber-attack is called (a)
A health-tech company stores patient records on a third-party cloud server.
They want to ensure even if hackers get the data, it remains unreadable.
The engineers convert the original readable data into scrambled code.
Only authorized staff with a special key can make it readable again.
This process protects information in transit and at rest.
It’s a cornerstone of secure communications online.
This process of converting data to unreadable form is called (a) .
