Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

CyPS MCQ 06 – revision 02

Total questions: 30

Worksheet time: 15mins

Name
Class
Date
1.

To verify the authenticity of an email, you can check the email headers to ensure that:

a)

The "reply to" and "return-path" lead to the same domain stated in the email.

b)

The email is written in your native language.

c)

The email has a professional-looking logo.

d)

The sender's display name is from a known company.

2.

A key strength of an application layer firewall (gateway/proxy) is that it:

a)

Operates primarily at the network layer for maximum speed.

b)

Allows a direct, routed connection between internal and external endpoints.

c)

Breaks the client/server model, preventing a direct connection between endpoints.

d)

Requires no specific client software or configuration.

3.

A major administrative drawback of using an application layer firewall is that:

a)

It does not provide any form of Network Address Translation (NAT).

b)

Each protocol (e.g., HTTP, SMTP) requires its own specific gateway/proxy application.

c)

It is inherently immune to the security flaws of the underlying operating system.

d)

It offers limited content filtering capabilities.

4.

What is the FIRST step to disable the ActiveX Installer (AxInstSV) service in Windows Server 2012?

a)

Change the Startup Type to Disabled.

b)

Open the Services application.

5.

Another significant risk of a rogue access point is that it can facilitate:

a)

Improved bandwidth allocation.

b)

Eavesdropping on network communications.

c)

Automatic software updates.

d)

Centralized user authentication.

6.

What is the primary purpose of a firewall in network security?

a)

To increase internet connection speed.

b)

To act as a barrier between trusted and untrusted networks, controlling traffic flow.

c)

To encrypt all data passing through the network.

d)

To physically secure network servers.

7.

A key security challenge of an Application Layer Firewall is that its security is dependent on:

a)

The strength of the user's passwords.

b)

The physical security of the network switch.

c)

The security of the host operating system it runs on.

d)

The type of antivirus software installed.

8.

What does RBAC stand for?

a)

Random Based Access Control

b)

Role-Based Access Control

c)

Rule-Based Authentication Control

d)

Risk-Based Access Calculation

9.

Which access control model is least likely to be used in a military setting?

a)

Mandatory Access Control (MAC)

b)

Role-Based Access Control (RBAC)

c)

Discretionary Access Control (DAC)

d)

Both MAC and RBAC

10.

Which type of attack is characterized by being very difficult to detect due to a lack of overt activity?

a)

Active Attack

b)

Phishing Attack

c)

Passive Attack

d)

DoS Attack

11.

What is the FIRST best practice recommended for securing a web interface?

a)

Use the latest encryption.

b)

Never allow the use of default passwords.

c)

Prevent brute forcing.

d)

Store credentials securely.

12.

Why are mobile devices considered the "crown jewel for hackers"?

a)

They are cheap to produce.

b)

They hold most of a user's sensitive data and are very popular.

c)

They cannot be updated.

d)

They do not require passwords.

13.

The "Ping of Death" attack sends IP packets that are:

a)

Smaller than the standard size.

b)

Exactly 65,535 bytes.

c)

Over the maximum allowed size of 65,535 bytes.

d)

Only used for legitimate network testing.

14.

What makes DDoS attacks using botnets difficult to trace?

a)

The use of strong encryption.

b)

The bots are located in differing geographic locations.

c)

The attacks are very slow.

d)

They only use wireless networks.

15.

In a Man-in-the-Middle (MitM) session hijacking, what does the attacker do?

a)

Deletes the server's data.

b)

Substitutes its own IP address for the trusted client's.

c)

Sends phishing emails to all users.

d)

Infects the system with a macro virus.

16.

IP Spoofing is used to:

a)

Encrypt network traffic.

b)

Convince a system it is communicating with a trusted host.

c)

Physically destroy a network router.

d)

Create a backup of data.

17.

A Replay attack can be countered by using:

a)

Default passwords.

b)

Session timestamps or nonces.

c)

Larger buffers.

d)

More complex passwords.

18.

What is the key difference between phishing and spear phishing?

a)

A) Spear phishing is less targeted.

b)

B) Phishing uses malware, spear phishing does not.

c)

C) Spear phishing is more targeted and personalized.

d)

D) Phishing is only done via email.

19.

An inherent weakness in the design of a system that renders it susceptible to a threat is called a:

a)

Attack

b)

Vulnerability

c)

Threat

d)

Exploit

20.

Which Windows Log contains record of error while starting an application?

a)

Application Log

b)

System Log

c)

Security Log

d)

Directory Service Log

21.

What is a primary purpose of wireless network scanning?

a)

To increase the wireless network's bandwidth.

b)

To identify rogue access points.

c)

To hide the network's SSID broadcast.

d)

To replace all network-based scans.

22.

What is a recommended countermeasure against port scanning?

a)

Disabling all encryption on the network.

b)

Implementing firewalls to filter traffic.

c)

Sharing all DNS information publicly.

d)

Using only wireless networks.

23.

What is a major drawback of running comprehensive vulnerability scans?

a)

They are too focused and may miss many devices.

b)

They can use significant bandwidth and be impractical to run frequently.

c)

They are only effective for external scanning.

d)

They cannot identify unauthorized devices.

24.

In Windows Event Viewer, an event that describes the successful operation of a task, like a driver loading, is classified as what type?

a)

Warning

b)

Error

c)

Information

d)

Success Audit

25.

Which Windows Event Log category would record a failure to start a device driver during system startup?

a)

Application Log

b)

Security Log

26.

Wireshark is an example of a:

a)

Vulnerability Scanner

b)

Packet Sniffer

c)

Port Scanner

d)

Log Management Tool

27.

What is the primary privacy concern regarding data stored by organizations?

a)

It takes up too much storage space.

b)

It is one of the most valuable and sensitive assets.

c)

It is difficult to manage.

d)

It slows down network performance.

28.

A Denial-of-Service (DoS) attack aims to:

a)

Steal sensitive data directly.

b)

Overwhelm a system's resources so it cannot respond to requests.

c)

Encrypt files for ransom.

d)

Gain administrative access to a server.

29.

An organization is experiencing slow network performance after deploying a new Application Layer Firewall. Which of the following challenges BEST explains this issue?

a)

The firewall requires additional client configuration.

b)

The operating system hosting the firewall is not secure.

c)

Performance degrades as the number of clients or gateways increases.

d)

It is more susceptible to phishing attacks.

30.

Which of these is an example of an active attack?

a)

Packet Sniffing

b)

Traffic Analysis

c)

Denial-of-Service

d)

Passive Key Logging