Font size
WorksheetsNetwork Intrusion Quiz
Total questions: 100
Worksheet time: 50mins
Which of the following best defines a network intrusion in cyber security?
An illegal entrance into a network or domain, either passively or aggressively
A routine update of network resources
The installation of authorized software on a network
The regular monitoring of network traffic
Which of the following is an example of a passive network intrusion?
Gaining access quietly and undetected
Defacing a website with obscene graphics
Launching a DDOS attack
Implanting code to alter public-facing web sites
Which of the following is NOT considered a type of network intrusion?
Routine software updates
Malware such as ransomware
DDOS (Distributed Denial of Service) attacks
Phishing campaigns
What is the main difference between passive and aggressive network intrusions?
Passive intrusions are undetected, while aggressive intrusions are overt and involve changes to network resources
Passive intrusions involve physical access, while aggressive intrusions are only external
Passive intrusions use malware, while aggressive intrusions use phishing
Passive intrusions are legal, while aggressive intrusions are illegal
Which of the following is a strategic way attackers might compromise a network, based on the text?
Implanting carefully developed code to siphon data regularly
Updating the network’s antivirus software
Backing up network data to a secure location
Restricting user access to sensitive folders
Why might an attacker use social engineering techniques such as phishing campaigns?
To deceive consumers with seemingly genuine communication
To physically access restricted machines
To destroy cyber-enabled equipment
To perform routine network maintenance
Which of the following is an example of an employee security breach that is considered an intrusion?
Moving a secure file into a shared folder unintentionally
Installing authorized software updates
Reporting suspicious network activity
Encrypting sensitive data
How can attackers gain physical access to a system, according to the text?
By physically accessing a restricted computer and its hard drive and/or BIOS
By sending phishing emails only
By updating the system’s firewall
By monitoring network traffic legally
Which of the following best describes asymmetric routing in the context of network attacks?
Attackers use several routes to gain access to a targeted device or network.
Attackers overwrite memory buffers to gain access.
Attackers use CGI scripts to relay user requests.
Attackers generate enormous traffic loads to cause congestion.
What is the main function of an Intrusion Detection System (IDS)?
To monitor and report irregularities in network architecture.
To prevent all network attacks automatically.
To encrypt network traffic.
To manage network bandwidth.
Which detection method in IDS matches data activity to a signature or pattern in a database?
Signature-based detection
Behavior-based detection
Heuristic-based detection
Protocol-based detection
How does behavior-based detection differ from signature-based detection in IDS?
It recognizes abnormality and issues alarms, learning what regular behavior looks like.
It matches data activity to a known signature in a database.
It encrypts network traffic to prevent attacks.
It only monitors traffic without reporting irregularities.
Why might signature-based detection fail to identify a new harmful behavior?
The new behavior is not in the signatures database.
The system is offline.
The network is encrypted.
The IDS is positioned inside the real-time communication band.
Worms are considered one of the easiest and most dangerous network penetration tools because:
They are commonly distributed by email attachments or instant messaging and use a considerable amount of network resources.
They require physical access to the network.
They only affect productivity software.
They cannot be detected by any IDS.
What is the role of a SPAN or TAP port in an IDS setup?
To watch the network and examine a copy of inline network packets.
To encrypt all network traffic.
To generate traffic loads for testing.
To overwrite memory buffers.
Which of the following is a potential impact of malformed information packets detected by an IDS?
Severe impact on overall network performance.
Increased network encryption.
Improved bandwidth management.
Enhanced productivity software usage.
Which of the following best describes the primary function of an Intrusion Detection System (IDS) in information security?
To monitor network traffic and detect irregularities or attacks
To create passwords for users
To manage user accounts
To design computer hardware
What is the main benefit of IDS alarms for IT administrators?
They allow rapid troubleshooting and identification of root causes of problems
They automatically fix all network issues
They create new user accounts
They delete suspicious files without review
Which of the following is NOT a type of attack that an IDS is designed to identify?
Privilege escalation
Unauthorized logins
Malware (viruses, trojan horses, worms)
Creating new passwords
What are the main components of an IDS?
Sensors, Console, and Central Engine
Keyboard, Mouse, and Monitor
Firewall, Router, and Switch
Printer, Scanner, and Fax Machine
How does an IDS help administrators after an attack has occurred?
By analyzing access logs and evaluating methods used by hackers
By automatically restoring lost data
By sending emails to all users
By shutting down the entire network
Which statement best explains password management?
It is the practice of creating, storing, managing, and organizing passwords to safeguard against unauthorized access and breach of information
It is the process of deleting old passwords
It is the method of sharing passwords with colleagues
It is the technique of writing passwords on paper
(DoK Level 2) Why is it important for an IDS to analyze network traffic and log files for specific designs?
To identify patterns that may indicate security breaches or attacks
To increase internet speed
To reduce the number of users on the network
To automatically update software
(DoK Level 2) How does password management contribute to information security?
By preventing unauthorized access and breaches through proper handling of passwords
By allowing everyone to use the same password
By making passwords easy to guess
By storing passwords in public folders
(DoK Level 3) Imagine you are an IT administrator. After a cyber attack, what steps would you take using an IDS to investigate and prevent future attacks?
Review IDS logs, analyze attack methods, identify sources, and update security protocols
Ignore the IDS alerts and continue normal operations
Delete all user accounts and start over
Disconnect the network permanently
(DoK Level 3) Given multiple types of malicious behaviors detected by an IDS, how would you prioritize your response as a security manager?
Address the most critical threats first, such as unauthorized access to sensitive information, then handle less severe issues
Respond to threats in alphabetical order
Ignore all alerts and wait for further instructions
Only respond to malware alerts and ignore others
Which of the following is a recommended practice for creating strong passwords?
Use only lowercase letters
Create long, complex, and unique passwords
Use your birthdate as your password
Repeat the same character multiple times
What is the main purpose of multi-factor authentication (MFA)?
To make passwords easier to remember
To add another layer of security beyond just entering a password
To allow access without any password
To use only one form of identity verification
Which of the following is NOT one of the factors used in multi-factor authentication?
Something you know, like a password or pin number
Something you have, like a smartphone or token
Something you are, like fingerprint or face recognition
Something you want, like a preferred username
If you have trouble remembering complex passwords, which strategy is suggested in the material?
Use your name as your password
Use the first characters of a memorable phrase
Write your password on a sticky note
Use only numbers in your password
How does a passphrase differ from a traditional password?
Passphrases are always shorter than passwords
Passphrases use a sentence, series, or combination of words and can contain more characters
Passphrases never include numbers or special characters
Passphrases are less secure than passwords
Which scenario best illustrates the use of two-factor authentication?
Entering only a password to access your email
Scanning your fingerprint to unlock your phone
Entering a password and a code sent to your authenticator app to access a system
Using a password that contains both letters and numbers
Using a combination of uppercase and lowercase letters, numbers, and symbols in a password increases its strength against cyber-attacks because:
It makes the password easier to remember
It increases the number of possible combinations, making it harder for hackers to guess or crack the password
It allows the password to be used on more websites
It makes the password shorter
A company wants to improve its security by implementing multi-factor authentication. What steps should they take to ensure proper verification of user identity?
Require users to enter only their password
Require users to provide two or more forms of authentication, such as something they know, something they have, and something they are
Allow users to choose any single method of authentication
Use only face recognition for all users
Why is it not recommended to use the same password for multiple accounts?
Because it makes it easier for hackers to access all your accounts if one password is stolen.
Because it is too difficult to remember.
Because it is required by most companies.
Because it saves time.
What is the main purpose of a password manager?
To store and create new and unique passwords for different accounts.
To share passwords with friends.
To make passwords shorter.
To delete old passwords automatically.
Which of the following best describes privileged user access?
Granting some employees a higher level of access to data or applications.
Allowing everyone to use the same password.
Sharing passwords with coworkers.
Using only simple passwords for all accounts.
According to the text, what is a recommended characteristic of a master password for a password manager?
It should be long, unique, and extremely difficult to crack.
It should be the same as your email password.
It should be easy to remember and short.
It should be shared with your coworkers.
How does using a password manager contribute to better security in an enterprise environment? (DoK Level 2)
By automating password assistance and resets, and providing robust identity governance.
By making all passwords the same for convenience.
By allowing passwords to be written down on paper.
By disabling password requirements altogether.
Suppose a company does not use a privileged access management platform for sensitive accounts. What potential risk does this pose? (DoK Level 3)
Sensitive information could be more easily compromised if privileged credentials are not securely stored.
Employees will have to remember fewer passwords.
Passwords will automatically become stronger.
The company will save money on security software.
Why is it important to create a strong, long passphrase for your accounts? (DoK Level 2)
It makes it significantly more difficult for hackers to crack and break into systems.
It makes it easier to remember.
It allows you to use the same password everywhere.
It is required by all password managers.
According to the US National Institute of Standards and Technology (NIST), what is a recommended best practice for creating strong passwords?
Use short passwords with only numbers
Create long passphrases that are easy to remember and difficult to crack
Use only uppercase letters in your password
Avoid using any symbols in your password
What is the main purpose of applying password encryption?
To make passwords easier to remember
To provide additional protection for passwords, even if they are stolen
To allow passwords to be shared easily
To remove the need for passwords entirely
Why is two-factor authentication considered more secure than using just a password?
It requires users to change their password every day
It makes passwords visible to attackers
It requires users to confirm their identity with an additional method, making it harder for attackers to gain access
It allows users to use dictionary words in their passwords
Which of the following is an example of an advanced authentication method?
Using a simple password
Biometric verification such as fingerprint or facial recognition
Writing your password on paper
Sharing your password with others
What is a recommended way to test the strength of your password?
Ask a friend to guess it
Use an online password strength testing tool
Use only your birthdate as a password
Never change your password
Why should you avoid using dictionary words in your password?
They are easier to remember
They are less likely to be hacked
They are more likely to be hacked
They make passwords longer
Why is it important to use different passwords for every account?
It makes remembering passwords easier
If one account is breached, other accounts with the same credentials can be compromised
It allows sharing passwords with colleagues
It reduces the need for password managers
Which of the following is a recommended way to secure your mobile phone from hackers?
Use a simple password like "1234"
Avoid using any password
Secure your phone with a strong password, fingerprint, or facial recognition
Share your password with friends
According to recent NIST guidance, when should employees be asked to change their personal passwords?
Every 30 days
Only in case of potential threat or compromise
Every time they log in
Every 180 days
What is a potential negative consequence of frequent mandatory password changes for personal accounts?
Users become more creative with passwords
Users are less likely to write passwords down
Users may write passwords down to keep track of them
Users never forget their passwords
Why should passwords be changed when an employee leaves a business?
To make the new employee feel welcome
To prevent former employees from hacking into business accounts
To comply with government regulations
To avoid password fatigue
What is a best practice for protecting accounts of privileged users?
Use the same password for all privileged accounts
Privileged accounts require special protections, such as privileged access management software
Allow privileged users to share passwords
Avoid using any software for privileged accounts
Strategically, how can a business prevent the risk associated with employees reusing passwords after periodic changes?
Ignore password reuse
Implement strategies to prevent password reuse, as users may find creative ways around periodic changes
Encourage employees to write down passwords
Force password changes every week
Which of the following is a recommended practice to keep your business secure according to the material?
Store vital company security information on the public internet.
Share passwords with colleagues via email.
Keep your business offline and remove permissions when finished with applications.
Use the same password for all accounts.
Why should you avoid storing passwords either digitally or on paper?
Because passwords are too long to remember.
Because they can be stolen by those with malicious motives.
Because it is illegal to store passwords.
Because passwords never change.
Which action can help prevent cybercriminals from stealing your credentials?
Using outdated software.
Ignoring vulnerability management.
Using up-to-date anti-malware and vulnerability management solutions.
Writing passwords on sticky notes.
What is the main advantage of using a password manager?
You only need to remember one master password.
You can share passwords easily with friends.
It makes passwords visible to everyone.
It stores passwords in plain text.
If someone acquires the master password to your password manager, what is the potential risk?
They can only access one account.
They have access to all your stored passwords.
They cannot access any passwords.
They can only change your master password.
How do password managers help when signing up for new websites?
They generate and save strong, unique passwords for you.
They reuse your old passwords.
They delete your account information.
They send your passwords to your email.
Using a password manager with a strong and unique master password can enhance your personal security because:
It makes all your passwords visible to hackers.
It establishes a near-perfect way to protect your personal passwords from improper access, as only you know the master password.
It prevents you from creating new passwords.
It allows you to share passwords with others easily.
A strategy to mitigate weaknesses that might allow intruders to enter or move around your environment is to:
Ignore software updates.
Use up-to-date anti-malware and vulnerability management solutions to harden your systems.
Store passwords on paper.
Share your credentials with coworkers.
Which of the following is a primary function of password managers?
To provide access to all your passwords in an encrypted format
To create new operating systems
To monitor network traffic
To block all internet access
What is the main difference between Personal Password Managers and Privileged Password Managers?
Personal managers are for individual users, while privileged managers are for managing sensitive enterprise credentials
Personal managers are only for mobile devices, while privileged managers are for computers
Privileged managers are free, while personal managers are paid
Personal managers require no encryption, while privileged managers do
Why is encrypted synchronization across devices an important feature of many password managers?
It allows users to access their passwords securely from any device
It increases the speed of the internet connection
It prevents the need for antivirus software
It automatically changes passwords every day
Which of the following is a limitation of password management practices mentioned in the text?
Forgetting the passwords
Too many advertisements
Lack of internet access
High cost of software
Suppose an organization needs to manage access to highly sensitive user accounts and systems. Which type of password manager should they use, and why?
Privileged Password Manager, because it secures and manages privileged credentials for enterprise-wide access
Personal Password Manager, because it is easier to use for individuals
Any password manager, because all have the same features
No password manager, because manual management is safer
Which password in a password manager must be particularly strong and secure due to its protective function?
The master password
The user password
The backup password
The browser password
Why is careless use of the master password in a password manager risky?
It can lead to forgetting other passwords
It allows third parties access to all stored passwords
It makes the database run slower
It increases the number of passwords needed
What should be done if the database of a password manager gets corrupted or deleted?
Ignore the issue
Use a different password manager
Ensure backup copies exist
Change the master password
Which of the following is a disadvantage of storing passwords in most web browsers?
Passwords are always encrypted
Passwords are not always secure
Passwords cannot be accessed by third parties
Passwords are stored in multiple locations
If third parties gain access to the data stored in a password manager, what must be done?
Change only the master password
Exchange all passwords completely
Delete the password manager
Ignore the breach
(DoK Level 2) What is the main reason for taking appropriate security measures for the master password in a password manager?
To make password recovery easier
To prevent unauthorized access to all stored passwords
To reduce the number of passwords needed
To allow sharing passwords with friends
(DoK Level 2) How does the dependence on the database affect the security of a password manager?
It makes passwords easier to remember
It requires reliable database management and protection
It allows passwords to be stored in plain text
It eliminates the need for a master password
(DoK Level 3) Suppose a user loses their master password for a password manager. What steps should they take to maintain security?
Ignore the loss and continue using the manager
Use a simple password for easy recall
Take appropriate security measures, such as resetting the master password and ensuring it is stored securely
Share the master password with trusted friends
(DoK Level 3) Evaluate the risks associated with storing all passwords in a single password manager and suggest a strategy to mitigate these risks.
There are no risks; no strategy is needed
The risk is minimal; use any password manager
If access is gained by third parties, all passwords are compromised; mitigate by regularly updating passwords and using strong master passwords
Only browser-based managers are risky; use only offline managers
Which of the following is a major challenge associated with using a master password in password managers?
The master password can be compromised, giving attackers access to all accounts.
The master password is always unbreakable.
Password managers do not require a master password.
The master password automatically changes every day.
What is a credential stuffing attack as described in the context of password managers?
An attack using stolen email addresses and passwords from third-party breaches to access accounts.
An attack that only targets a single account with a guessed password.
A method of encrypting passwords for extra security.
A way to automatically reset all passwords in a manager.
In 2019, what was discovered about several top password managers?
Security flaws allowed passwords to be exfiltrated from a computer’s memory.
They were immune to all types of hacking attempts.
They could only be accessed with biometric authentication.
They automatically updated passwords every month.
Why does the use of a master password in password managers create a significant security risk? (DoK Level 2)
Because compromising the master password gives access to all stored accounts.
Because it makes passwords easier to remember.
Because it allows for faster login to websites.
Because it prevents password reuse.
Suppose a new bug is found in a password manager that allows attackers to use it as a launchpad for further attacks. What does this imply about the security of password managers? (DoK Level 3)
Password managers can introduce vulnerabilities that may be exploited to compromise not just passwords, but also other systems.
Password managers are always completely secure.
Bugs in password managers only affect the user’s device and not other systems.
Password managers cannot be used to launch attacks on other systems.
Which of the following is a common hacking attack that can compromise access to a password manager?
Man-in-the-middle attack
Brute force attack
Social engineering
Denial of service
What is a major problem with password managers if an attacker gains access?
The attacker can only access one password
The attacker can cover the breadth of your entire online identity
The attacker can only view your email
The attacker cannot change any passwords
Why might someone be permanently locked out of their password manager?
They forget their username
They lose their master password and access to recovery accounts
They change their phone number
They update their browser
How can attackers elevate their attack during the password manager recovery process?
By sending spam emails
By changing the master password after accessing the recovery email
By deleting the account
By installing antivirus software
Why do attackers focus heavily on phishing the master password of a password manager?
Because it is easy to guess
Because it gives access to all stored passwords
Because it is not encrypted
Because it is shared with others
What have attackers developed for accounts with two-factor authentication in password managers?
Ways to circumvent security restrictions
Stronger encryption methods
Password hints
Automatic logout features
Which of the following is a common flaw of human-created passwords mentioned in the text?
They are always encrypted with AES-256
They are easy to guess dictionary words
They are generated by Chrome’s secure password generator
They are never reused across multiple sites
According to research, what percentage of users use Chrome’s secure password generator?
About 10%
About 20%
About 50%
About 80%
What is the main purpose of a “zero-knowledge” system in password managers?
To allow providers to decrypt passwords easily
To encrypt passwords before they leave your device
To store passwords in plain text format
To auto-fill passwords on phishing sites
Why might passwords stored in a password manager still be vulnerable to attacks?
Because password managers never encrypt passwords
Because users may use insecure passwords that are easy to guess or reused
Because password managers always auto-fill on legitimate sites only
Because password managers generate passwords for every account automatically
Evaluate the effectiveness of password managers in protecting user data, considering both their benefits and potential vulnerabilities described in the text.
Password managers are ineffective because they do not encrypt passwords
Password managers offer encryption and convenience, but can be compromised if users use insecure passwords or if the manager itself is breached
Password managers are only useful for generating passwords, not for storing them
Password managers are completely secure and have no vulnerabilities
A few years ago, an attack on which password manager allowed hackers to access and decrypt customer data?
Chrome Password Manager
LastPass
OneLogin
Dashlane
Which of the following best defines malware?
Malware is any piece of software intended to cause harm to your system or network.
Malware is a type of hardware used to protect networks.
Malware is a software that improves computer performance.
Malware is a program designed for entertainment purposes.
What distinguishes malware from normal programs?
Malware can spread itself in the network and remain undetectable.
Malware always improves network security.
Malware is only used for data storage.
Malware is always visible to users.
Who created and released the Melissa virus, and in which year?
David L. Smith, 1999
Bill Gates, 2001
Steve Jobs, 1995
Mark Zuckerberg, 2004
What was the primary method by which the Melissa virus spread?
By embedding a macro virus inside a Word file
By infecting USB drives
By exploiting web browsers
By sending spam emails with attachments
Why was the My Doom malware considered one of the fastest spreading email worms?
It was spread by spammers and contained a text.
It was distributed through social media platforms.
It was installed via physical media.
It required human intervention to spread.
Which companies were notably affected by the My Doom malware?
Google and Microsoft
Apple and Facebook
IBM and Oracle
Amazon and Twitter
What was the main impact of the Stuxnet malware attack in 2010?
Hardware level destruction of a nuclear plant in Iran
Theft of personal passwords
Disruption of banking systems
Spread of ransomware in hospitals
