NEW
Font size
WorksheetsCybersecurity Incidents and Statistics Worksheet
Total questions: 25
Worksheet time: 13mins
What is a network threat?
A) A type of computer virus that spreads through email
B) Malicious activities that exploit vulnerabilities in computer networks to gain unauthorised access, disrupt services, or steal information
C) A firewall that protects networks from external attacks
D) Software used to monitor network traffic
According to the Verizon 2025 Data Breach Investigations Report, what percentage of all breaches involved ransomware?
20%
30%
44%
60%
What is the main difference between a virus and other types of malware?
Viruses are less harmful than other malware
Viruses require a host file to attach to and spread, while worms can self-replicate without a host
Viruses only affect mobile devices
There is no difference - they are the same thing
What is the primary goal of a Denial of Service (DoS) attack?
To steal sensitive data from a network
To install ransomware on systems
To overwhelm systems or networks to make them unavailable to legitimate users
To gain administrative access to a server
Which ransomware gang was responsible for the Change Healthcare attack in February 2024?
RansomHub
REvil
BlackCat (ALPHV)
Scattered Spider
What was the estimated total cost of the Change Healthcare ransomware attack in 2024?
$100 million
$500 million
$1.5 billion
$2.87 billion
What method did the Scattered Spider group use to gain initial access to MGM Resorts in September 2023?
SQL injection vulnerability
Exploiting a zero-day vulnerability
Social engineering - calling the IT help desk impersonating an employee
Brute force password attack
How did MGM's response to the ransomware attack differ from Caesars Entertainment?
MGM paid the ransom, Caesars did not
MGM refused to pay the ransom, while Caesars reportedly paid approximately $15 million
Both companies paid the ransom
Both companies refused to pay
According to the Verizon DBIR, what percentage of all breaches involve the human element (social engineering, errors, or credential misuse)?
39%
50%
68%
74%
What percentage of email threats are attributed to phishing?
25.4%
39.6%
50.2%
60.8%
Which of the following is NOT a type of social engineering attack?
Phishing
Vishing
Smishing
Cryptojacking
How did Russian state-sponsored hackers (Midnight Blizzard/APT29) breach Microsoft's corporate systems in January 2024?
Through a zero-day vulnerability
Through a password spray attack on a legacy account without MFA
Through a phishing email to senior leadership
Through stolen employee credentials from the dark web
Which of the following is a common red flag in phishing emails?
Generic greetings like "Dear Valued Customer"
Proper company branding and logos
Requests sent during business hours
Emails with no attachments
According to the Verizon 2025 DBIR, what percentage of breaches were linked to third-party involvement?
10%
15%
20%
30%
What type of vulnerability did the Cl0p ransomware gang exploit in the MOVEit Transfer attack of 2023?
Buffer overflow
Zero-day SQL injection vulnerability
Cross-site scripting (XSS)
Remote code execution
Approximately how many organisations were affected by the MOVEit Transfer attack?
200
500
1,000
2,000
What was the main attack vector used in the May 2024 Snowflake data breach?
Exploited software vulnerability
Compromised credentials from a Snowflake employee account
DDoS attack
Insider threat from a disgruntled employee
In a Defence in Depth strategy, what is the purpose of network segmentation and VLANs?
To improve network speed
To limit lateral movement and contain breaches
To reduce hardware costs
To eliminate the need for firewalls
According to the Verizon DBIR, what percentage of breaches involved stolen credentials (making MFA critically important)?
44%
68%
88%
95%
What is the core principle of Zero Trust Architecture?
Trust all internal network traffic
Only verify users once at initial login
Never trust, always verify - authenticate every access request
Trust employees but not external contractors
According to the report, organisations using AI and automation for security have seen what reduction in average breach costs?
$500,000
$1.25 million
$1.76 million
$2.5 million
What was the total cryptocurrency payment to ransomware attackers in the first half of 2023?
$100 million
$250 million
$449.1 million
$800 million
What is "vishing"?
Video-based phishing attacks
Voice phishing conducted via phone calls
Virtual reality phishing
Virus-based social engineering
Which attack demonstrated how a single widely-used software vulnerability can affect thousands of organisations?
Change Healthcare ransomware
MGM Resorts attack
MOVEit Transfer zero-day exploit
Microsoft corporate breach
Why are insider threats particularly dangerous for organisations?
They are more common than external threats
Insiders have legitimate access and knowledge of systems, making detection difficult
Insider threats always involve physical security breaches
They are impossible to prevent
