WorksheetsAP Cybersecurity — Unit 2 Comprehensive Review
Total questions: 45
Worksheet time: 23mins
Which statement best explains why physical security matters in cybersecurity?
It protects passwords from being guessed online
If someone can physically access a system, they can compromise it directly
It prevents SQL injection
It only matters in large organizations
Tailgating is best described as:
Using someone’s password without permission
Following someone into a secure area without authorization
Watching someone type their password
Picking a lock
Which of the following is an example of a physical control?
Password policy
UFW firewall
Locked server rack
Removing admin rights
Which control category are password complexity rules part of?
Physical
Managerial
Technical
Detection
Which control is a technical control?
Card readers
Motion sensors
Updating software
Visitor logs
What is piggybacking?
Watching someone type
Following someone into a door by convincing them to let you in
Guessing someone’s password
Using a fake badge
Dumpster diving is an attack targeting what weakness?
Poor digital encryption
Poor firewall rules
Poor disposal of physical documents
Weak passwords
A server room that is unlocked and unmonitored is considered:
Low risk
Moderate risk
High risk
No risk
USB port blockers are a type of:
Technical control
Managerial control
Physical control
Social engineering control
Which is the BEST example of a managerial control?
Installing fences
Training employees
Enabling UFW
Using a generator
Motion sensors are primarily used for:
Patching vulnerabilities
Detecting unauthorized presence
Updating software
Restricting password reuse
Which control prevents the installation of unauthorized software?
Fences
Password policy
Software authorization rules
Cameras
Which AP Unit 2 topic deals with environmental risks like fire and flood?
2.1 Physical Vulnerabilities
2.2 Detection
2.3 Technical controls
2.4 Digital forensics
Badge cloning attacks target what weakness?
Weak encryption
Poor physical access control
Misconfigured firewalls
User password habits
Which environmental issue could cause a cybersecurity outage?
SQL injection
Power loss
Encryption failure
Weak password hashing
A clean desk policy helps prevent:
DDoS attacks
The spread of malware
Data exposure from unattended documents
Service outages
Which of the following is a detection control?
Firewall
Cameras
Password rules
Updates
Turnstiles are used to:
Detect anomalies
Separate VLANs
Control physical entry
Disable software
Which is the BEST placement for cameras?
Random hallways
Server rooms and entrances
Bathrooms
Parking lots only
Security guards provide what kind of control?
Technical
Physical
Managerial
Environmental
In CyberPatriot, restricting the admin group is a:
Physical control
Managerial control
Technical control
Detection control
Enforcing password history in Windows is what type of control?
Technical
Physical
Managerial
Environmental
Removing unauthorized Linux users is done using:
sudo shutdown
sudo deluser
sudo archive-user
sudo remove-account
Which command removes admin rights in Linux Mint?
sudo revoke admin
sudo chmod -admin
sudo gpasswd -d username sudo
sudo sudo-off
Disabling root login in Linux is done with:
sudo lock root
sudo passwd -l root
sudo disable-root
sudo rm-root
Setting password expiration in Linux uses which command?
sudo expire user
sudo pass-age
sudo chage -M 90 username
sudo pw-age
Which firewall command enables UFW?
sudo ufw block all
sudo fw-enable
sudo ufw enable
sudo ufw activate secure
Which Linux file configures password complexity?
/etc/shadow
/etc/sysctl.conf
/etc/pam.d/common-password
/etc/sudoers
Removing nullok strengthens authentication by:
Allowing short passwords
Preventing empty passwords
Enabling SSH
Disabling users
ASLR protects against what?
Physical theft
Social engineering
Memory exploitation
Weak passwords
SYN cookies defend against:
XSS
SQL injection
SYN flood attacks
Ransomware
Disabling nginx in Linux is done using:
sudo stop nginx forever
sudo kill nginx
sudo systemctl disable --now nginx
sudo nginx-off
Which Windows tool removes unauthorized users?
cmd.exe
services.msc
Computer Management
taskmgr
Password policies in Windows are configured using:
secpol.msc
regedit
msconfig
firewall.cpl
Which policy requires secure login?
Disable Guest
Require CTRL+ALT+DEL
Firewall rules
Update schedule
Disabling unencrypted WinRM protects against:
Keylogging
Credential interception
Password reuse
SYN floods
Windows Firewall must be enabled for:
Domain
Private
Public
All profiles
Purging unauthorized Linux packages uses:
uninstall
sudo pkg rm
sudo apt purge
sudo delete pkg
Which Windows tool disables Remote Desktop?
secpol.msc
Optional Features
System Properties
Settings → Remote Desktop
Linux vs Windows: which is true?
Linux uses UFW; Windows uses Windows Firewall
Both use secpol.msc
Both require sudo
Windows uses apt purge
In CyberPatriot, backdoor scripts in Linux are found in:
/bin/backdoor
/usr/share/zod
/var/hidden/backdoor
/etc/system/backdoor
Locked root accounts help prevent:
Software updates
Unauthorized full-system access
File deletion
Network outages
Access logs are useful because they:
Filter network traffic
Identify who accessed what and when
Encrypt passwords
Install updates
Clean desk policies primarily protect:
System uptime
Confidential printed information
Hardware power
Cameras
A policy requiring employees to report suspicious behavior is a:
Technical control
Managerial control
Physical control
Detection control
