wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Compre

Total questions: 120

Worksheet time: 40mins

Name
Class
Date
1.

What is cybersecurity?

a)

Protection against unauthorized physical access

b)

Techniques to secure digital components, networks, and data

c)

An antivirus software

d)

Preventing hardware malfunctions

2.

Which of the following is NOT a core pillar of cybersecurity?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Affordability

3.

What is the purpose of the CIA triad in cybersecurity?

a)

To define operational costs

b)

To guide data security principles

c)

To improve user experience

d)

To establish firewall rules

4.

What is the main feature of a Distributed Denial of Service (DDoS) attack?

a)

Sending phishing emails

b)

Monitoring user passwords

c)

Injecting malicious SQL code

d)

Flooding a network with excessive traffic

5.

In a man-in-the-middle attack, what does the hacker do?

a)

Sends malware to a user

b)

Encrypts a user's data and demands ransom

c)

Gains access to the communication path between two systems

d)

Sends phishing emails to steal credentials

6.

What is a firewall used for?

a)

Blocking unauthorized traffic based on rules

b)

Encrypting all network traffic

c)

Creating user passwords

d)

Scanning for malware

7.

What is a honeypot in cybersecurity?

a)

A tool to encrypt data

b)

A dummy system to attract attackers

c)

A software for password management

d)

A type of malware

8.

What additional layer of security does two-factor authentication provide?

a)

Increased password length

b)

Enhanced user accessibility

c)

Verification through an additional device or code

d)

Simplified login processes

9.

What was the purpose of the Stuxnet malware?

a)

To disrupt global internet traffic

b)

To damage Iran's nuclear infrastructure

c)

To steal financial information

d)

To disable antivirus software

10.

The WannaCry ransomware attack was propagated through:

a)

An exposed SMB vulnerability

b)

Phishing emails

c)

DNS poisoning

d)

SQL injection

11.

Which cybersecurity professional identifies and exploits system vulnerabilities to provide solutions to fix them and ensure safety?

a)

Black hat hacker

b)

Ethical hacker

c)

Malware analyst

d)

SOC analyst

12.

Which type of attack can be mitigated by using multifactor authentication?

a)

Phishing attacks

b)

Brute force attacks

c)

Denial-of-service attacks

d)

SQL injection attacks

13.

What does an ethical hacker do?

a)

Exploits systems for financial gain

b)

Identifies and resolves system vulnerabilities

c)

Develops malware to test antivirus software

d)

Performs denial-of-service attacks

14.

Which role is responsible for overall enterprise security?

a)

Network Engineer

b)

Security Architect

c)

Chief Information Security Officer (CISO)

d)

Information Security Analyst

15.

Why is backing up data regularly considered a good cybersecurity practice?

a)

It prevents data breaches

b)

It ensures data availability during ransomware attacks or hardware failures

c)

It speeds up network performance

d)

It automatically encrypts all files

16.

What does antivirus software primarily protect against?

a)

Unauthorized physical access

b)

Data loss due to hardware failure

c)

Network intrusions

d)

Malware such as viruses, worms, and trojans

17.

What is the main purpose of encryption in cybersecurity?

a)

To speed up data transmission

b)

To prevent unauthorized access to data

c)

To reduce file size

d)

To enhance network connectivity

18.

What is the purpose of a security awareness program?

a)

To train employees to recognize and avoid potential threats

b)

To install firewalls on employee devices

c)

To encrypt all company data

d)

To reduce software development costs

19.

What is the function of a Virtual Private Network (VPN)?

a)

To create an encrypted tunnel for secure communication

b)

To block malicious websites

c)

To filter emails

d)

To scan for malware

20.

Which cybersecurity principle ensures that data is not altered by unauthorized parties?

a)

Confidentiality

b)

Availability

c)

Integrity

d)

Scalability

21.

Which of the following is an example of a strong password?

a)

12345678 

b)

Password1 

c)

M0n3y@2024! 

d)

abcdefg

22.

Which type of malware disguises itself as legitimate software?

a)

Ransomware

b)

Trojan Horse

c)

Spyware

d)

Adware

23.

What is a common indicator of a denial-of-service (DoS) attack?

a)

Slow or unresponsive services

b)

Sudden malware alerts

c)

Unauthorized data access logs

d)

Frequent software crashes

24.

What kind of malware is designed to secretly monitor user activity and steal sensitive data?

a)

Spyware

b)

Ransomware

c)

Worm

d)

Adware

25.

What is the goal of social engineering attacks?

a)

To exploit software vulnerabilities

b)

To disable network hardware

c)

To trick individuals into revealing sensitive information

d)

To compromise antivirus programs

26.

What is the function of a digital certificate?

a)

To encrypt user files

b)

To authenticate the identity of websites or users

c)

To store passwords securely

d)

To create a backup of encrypted data

27.

What is multifactor authentication (MFA)?

a)

A) A password system with multiple words

b)

B) A network encryption protocol

c)

C) A tool for managing multiple devices

d)

D) A security method that requires two or more verification factors

28.

What is the primary objective of a SQL injection attack?

a)

Encrypt data in transit

b)

Manipulate databases by injecting malicious SQL queries

c)

Flood servers with excessive traffic

d)

Disguise malware as legitimate software

29.

What does a keylogger do?

a)

Encrypt data for secure transmission

b)

Monitor and record user keystrokes

c)

Block access to malicious websites

d)

Perform network scans for vulnerabilities

30.

What is a brute force attack?

a)

A method of guessing passwords by trying all possible combinations

b)

An attack that crashes a server

c)

An attempt to inject malicious code into software

d)

A phishing attempt using email

31.

What is pharming in cybersecurity?

a)

Redirecting users from legitimate websites to fraudulent ones

b)

Sending malicious emails to collect user data

c)

Injecting malicious scripts into a database

d)

Blocking access to specific websites

32.

What is an APT (Advanced Persistent Threat)?

a)

A short-term malware attack

b)

An outdated threat model

c)

A social engineering technique

d)

A continuous and targeted cyber attack

33.

What is the primary goal of data masking?

a)

To encrypt data in transit

b)

To hide sensitive information with altered values

c)

To compress large data files

d)

To back up critical data

34.

What is a key feature of "zero trust" architecture?

a)

Trusting all devices within a network

b)

Verifying every user and device before granting access

c)

Using antivirus software only

d)

Enabling open access to shared resources

35.

What does "patch management" refer to in cybersecurity?

a)

Installing software updates to address vulnerabilities

b)

Backing up data regularly

c)

Encrypting network traffic

d)

Conducting penetration tests

36.

Which cybersecurity risk is associated with IoT devices?

a)

Weak authentication protocols

b)

High cost of deployment

c)

Limited availability

d)

Excessive data encryption

37.

What is the purpose of behavioral analytics in cybersecurity?

a)

Monitoring user activities to detect anomalies and threats

b)

Encrypting sensitive data

c)

Accelerating network speed

d)

Testing software vulnerabilities

38.

Which technology ensures secure communication over the internet?

a)

HTTPS

b)

FTP

c)

DNS

d)

SMTP

39.

What is a major challenge in securing cloud environments?

a)

Limited storage capacity

b)

Shared responsibility for security between providers and users

c)

High costs of data migration

d)

Slow access to resources

40.

What does a "sandbox" environment do?

a)

Accelerates software updates

b)

Encrypts sensitive files

c)

Blocks phishing emails

d)

Isolates suspicious programs to study their behavior

41.

What does PCI DSS compliance regulate?

a)

Encrypting email communications

b)

Protecting payment card information

c)

Monitoring physical access to devices

d)

Training employees in cybersecurity awareness

42.

What does "ethical hacking" aim to achieve?

a)

Identifying vulnerabilities to strengthen defenses

b)

Spreading awareness about malware risks

c)

Developing malicious software

d)

Encrypting sensitive user data

43.

What is the main purpose of phishing simulations in organizations?

a)

To improve system performance

b)

To test employee awareness and preparedness against phishing attacks

c)

To increase network speed

d)

To reduce software vulnerabilities

44.

Which practice helps protect against ransomware attacks?

a)

Regularly updating software and systems

b)

Using weak passwords for convenience

c)

Sharing login credentials with trusted individuals

d)

Disabling all firewalls

45.

What should be done to secure physical devices against unauthorized access?

a)

Encrypt hard drives

b)

Use strong passwords and biometric locks

c)

Keep devices in locked and secure locations

d)

All of the above

46.

Which of the following is an example of multifactor authentication?

a)

Logging in with a username and password only

b)

Logging in with a password and a onetime code sent to a phone

c)

Using a PIN for access

d)

Relying solely on biometric data

47.

What is the most effective way to manage software vulnerabilities?

a)

Regular patching and updates

b)

Using older, proven software versions

c)

Avoiding cloud services

d)

Disabling antivirus software

48.

What is the role of a Data Loss Prevention (DLP) tool?

a)

Preventing unauthorized access to networks

b)

Monitoring and protecting sensitive data from being leaked

c)

Encrypting email communications

d)

Detecting phishing emails

49.

Which of the following is an example of biometric authentication?

a)

Retina scanning

b)

Fingerprint recognition

c)

Facial recognition

d)

All of the above

50.

Why should public WiFi networks be avoided for sensitive transactions?

a)

They are often unsecured and vulnerable to eavesdropping

b)

They slow down transaction speeds

c)

They frequently disconnect

d)

They block encrypted connections

51.

What is the benefit of using a password manager?

a)

It generates and securely stores strong, unique passwords for all accounts

b)

It encrypts files on a device

c)

It blocks phishing attempts automatically

d)

It improves internet speed

52.

What is an insider threat?

a)

A hacker outside the organization breaching its system

b)

An employee misusing access to harm the organization

c)

A security misconfiguration in the organization’s systems

d)

A social engineering attempt via phishing

53.

What is the primary method used by spyware?

a)

Flooding networks with traffic

b)

Encrypting user files

c)

Monitoring and collecting user activity and data without consent

d)

Sending malicious emails

54.

What is the main purpose of a digital signature?

a)

To encrypt data for transmission

b)

To increase network speed

c)

To block unauthorized access

d)

To authenticate the sender of a message

55.

What does "cyber resilience" refer to?

a)

The ability of an organization to recover quickly from cyber incidents

b)

The strength of an organization’s firewalls

c)

The reliability of antivirus software

d)

The scalability of cybersecurity tools

56.

What should you do if you suspect your device has been compromised?

a)

Disconnect from the internet immediately

b)

Delete random files

c)

Restart the device repeatedly

d)

Ignore warning messages

57.

What type of attack occurred in Estonia in 2007, targeting its government and financial institutions?

a)

Phishing attack

b)

Distributed Denial-of-Service (DDoS) attack

c)

SQL injection

d)

Spyware attack

58.

Which company faced a massive data breach in 2014, resulting in the theft of 56 million payment cards?

a)

Target

b)

Home Depot

c)

Sony Pictures

d)

TJX

59.

The 2015 cyber attack on Ukraine’s power grid was executed through:

a)

SQL injection attacks

b)

Phishing emails containing malware

c)

A man-in-the-middle attack

d)

DNS spoofing

60.

What is the primary goal of artificial intelligence in cybersecurity?

a)

To automate threat detection and response

b)

To encrypt user data

c)

To create malicious software

d)

To bypass firewalls

61.

Which technology enhances security by storing data in decentralized networks?

a)

Blockchain

b)

VPN

c)

Cloud computing

d)

Firewalls

62.

Which of the following is an ethical concern in cybersecurity?

a)

Installing firewalls on user devices

b)

Developing encryption algorithms

c)

Testing system vulnerabilities ethically

d)

Selling user data without consent

63.

Which of the following is a common vulnerability in cloud environments?

a)

Overuse of encryption

b)

Insufficient identity and access management

c)

Use of private networks

d)

Excessive software patches

64.

What is the first step in an incident response plan?

a)

Containment of the attack

b)

Identification of the security incident

c)

Recovery of affected systems

d)

Communication with stakeholders

65.

Which of the following best describes ransomware?

a)

Software that monitors user activity

b)

A virus that spreads through networks automatically

c)

Malware that encrypts data and demands payment for decryption

d)

Communication with stakeholders

66.

What is a botnet?

a)

A network of infected computers controlled by a hacker

b)

A group of servers hosting malicious websites

c)

A secure network for government communication

d)

A tool used to prevent cyber attacks

67.

Which of the following is a key characteristic of phishing attacks?

a)

Exploiting software vulnerabilities

b)

Sending fraudulent messages to trick individuals into revealing sensitive information

c)

Installing hardware keyloggers on a target system

d)

Blocking access to websites

68.

Which of the following is NOT a common motive behind cybercrimes?

a)

Financial gain

b)

Espionage

c)

Revenge or personal grievances

d)

Improving cybersecurity measures

69.

How does a phishing attack typically trick users?

a)

By exploiting unpatched software vulnerabilities

b)

By sending fraudulent messages and redirecting users to fake websites

c)

By launching automated brute force password attacks

d)

By encrypting user data without their knowledge

70.

What distinguishes a DoS attack from a DDoS attack?

a)

DoS uses multiple sources, while DDoS uses a single source

b)

DoS is easier to mitigate, while DDoS is harder to trace due to multiple sources

c)

DoS encrypts files, while DDoS overloads servers

d)

DoS spreads through networks, while DDoS targets applications

71.

In supervised learning, a model predicts values based on:

a)

Raw unlabeled data only

b)

Historical labeled examples

c)

Neural hardware chips

d)

Random number generation

72.

A transformer model is made up of:

a)

Encoder and Decoder

b)

Classifier and Regressor

c)

Predictor and Generator

d)

Input and Output layers only

73.

Text-to-video models can take as input:

a)

Only images

b)

Only code

c)

Text scripts or sentences

d)

Only numbers

74.

Generative AI is a subset of:

a)

Physics

b)

Deep learning

c)

Robotics

d)

Classical programming

75.

Which is NOT a common application of LLMs?

a)

Text classification

b)

Question answering

c)

Weather forecasting

d)

Document summarization

76.

When a model compares predicted and actual values, the difference is called:

a)

Accuracy

b)

Error

c)

Bias

d)

Training loss only

77.

“Zero-shot” learning means:

a)

Recognizing tasks without explicit prior training

b)

Training with zero data

c)

Failing to learn new tasks

d)

Using no hyperparameters

78.

Which requires more resources and expertise?

a)

Few-shot learning

b)

LLM development

c)

Prompt design

d)

Traditional machine learning

79.

One cause of hallucinations is:

a)

Too much labeled data

b)

Noisy or insufficient training data

c)

High optimization accuracy

d)

Excessive supervision

80.

In generative QA with LLMs:

a)

Domain knowledge is always required

b)

Only structured data is accepted

c)

Answers are limited to yes/no

d)

Models generate free text based on context

81.

If a model classifies “dog vs cat,” it is:

a)

Discriminative

b)

Generative

c)

Semi-supervised

d)

Reinforcement-based

82.

In LLMs, “pre-training” refers to:

a)

Training for specific tasks

b)

Training on large, general-purpose datasets

c)

Tuning parameters manually

d)

Only training with domain-specific data

83.

Fine-tuning involves:

a)

Adjusting every model weight with new data

b)

Using zero data

c)

Only modifying prompts

d)

Reducing hyperparameters

84.

Generative AI is a type of artificial intelligence technology that can produce:

a)

Only text

b)

Only numbers

c)

Text, imagery, audio, and synthetic data

d)

Only numerical predictions

85.

Google believes responsible AI equals:

a)

Faster AI

b)

Successful AI

c)

Free AI

d)

Automated AI

86.

What does LLM stand for?

a)

Limited Learning Machine

b)

Large Language Model

c)

Logical Language Mapping

d)

Linguistic Learning Module

87.

Predicting tip amount from bill totals and delivery type is an example of:

a)

Unsupervised learning

b)

Traditional programming

c)

Reinforcement learning

d)

Supervised learning

88.

Which of the following is a benefit of LLMs?

a)

Require large training data for every use case

b)

Must always be retrained from scratch

c)

Can be used for multiple tasks with little additional data

d)

Work only for one domain

89.

Artificial Intelligence (AI) is best described as:

a)

A. A single algorithm

b)

B. A discipline of computer science creating intelligent agents

c)

C. A hardware system for robots

d)

D. Only neural networks

90.

Chain-of-thought reasoning improves LLMs by:

a)

Explaining reasoning before giving an answer

b)

Reducing dataset size

c)

Removing irrelevant prompts

d)

Limiting responses

91.

Responsibility by design means:

a)

Responsibility is added after product launch

b)

Responsibility is built into products and organizations

c)

Only management is responsible

d)

Responsibility is optional

92.

Intelligent agents in AI are systems that can:

a)

Only calculate numbers

b)

Work only with labeled data

c)

Reason, learn, and act autonomously

d)

Function only with human guidance

93.

What is the role of prompt design?

a)

Building neural networks

b)

Removing irrelevant parameters

c)

Training LLMs from scratch

d)

Creating clear and concise prompts for tasks

94.

Machine Learning is a __________ of AI.

a)

Replacement

b)

Subfield

c)

Opposite

d)

Hardware component

95.

Responsible development and deployment means:

a)

Pursuing AI responsibly across its lifecycle

b)

Building AI without testing

c)

Limiting AI to research only

d)

Avoiding user input

96.

What does the term “large” in LLMs refer to?

a)

Large number of developers

b)

Training dataset size and parameter count

c)

Physical computer size

d)

Large company budgets

97.

Organizations are developing their own AI principles that reflect their mission and values. What are the common themes among these principles?

a)

A. A consistent set of ideas about transparency, fairness, and equity.

b)

B. A consistent set of ideas about fairness, accountability, and inclusion.

c)

C. A consistent set of ideas about transparency, fairness, accountability, and privacy.

d)

D. A consistent set of ideas about transparency, fairness, and diversity.

98.

Gemini and LaMDA are examples of:

a)

Generative AI models

b)

Discriminative AI models

c)

Unsupervised models

d)

Optimization algorithms

99.

Bold innovation means:

a)

Avoiding risks completely

b)

Using AI to empower people and solve big challenges

c)

Focusing only on business profits

d)

Ignoring social impact

100.

Which type of LLM predicts the next word in a sequence?

a)

Generic language model

b)

Instruction-tuned model

c)

Dialog-tuned model

d)

Transformer-free model

101.

A discriminative model is mainly used for:

a)

Generating new data

b)

Writing text

c)

Creating new images

d)

Classifying or predicting labels

102.

Who makes AI-related decisions?

a)

Only machines

b)

Only customers

c)

AI systems alone

d)

Humans who design, deploy, and apply AI

103.

Deep learning is a type of machine learning that uses:

a)

Randomized algorithms

b)

Artificial neural networks

c)

Manual programming only

d)

Probability tables only

104.

Common themes across responsible AI principles include:

a)

Profit, control, competition

b)

Transparency, fairness, accountability, privacy

c)

Speed, automation, scale, innovation

d)

None of these

105.

Large Language Models are a subset of which field?

a)

Robotics

b)

Data Mining

c)

Deep Learning

d)

Cognitive Psychology

106.

Fine-tuning in LLMs means:

a)

Removing parameters

b)

Using small domain-specific datasets to adapt a model

c)

Pre-training again from scratch

d)

Reducing dataset size

107.

The process of learning from existing content is called:

a)

Hallucination

b)

Prompting

c)

 Labeling

d)

Training

108.

Clustering employees by tenure and income is an example of:

a)

Supervised learning

b)

Reinforcement learning

c)

Unsupervised learning

d)

Foundation models

109.

Prompt engineering differs from prompt design in that it:

a)

Focuses on clarity only

b)

Uses strategies to improve performance

c)

Avoids domain-specific knowledge

d)

Does not require testing

110.

AI principles serve as:

a)

A foundation for responsible decisions

b)

Direct instructions for coding

c)

Legal requirements

d)

Optional guidelines

111.

Prompts are:

a)

Long codes

b)

Short text inputs guiding model output

c)

Neural connections

d)

Random tokens

112.

Which of these is correct with regard to applying responsible AI practices?

a)

Only decisions made by the project owner at any stage in a project make an impact on responsible AI.

b)

Decisions made at an early stage in a project do not make an impact on responsible AI.

c)

Decisions made at a late stage in a project do not make an impact on responsible AI.

d)

Decisions made at all stages in a project make an impact on responsible AI.

113.

LLMs are mostly based on which type of model?

a)

Convolutional Neural Networks

b)

Transformer models

c)

Decision Trees

d)

Support Vector Machines

114.

Why is responsible AI practice important to an organization?

a)

Responsible AI practice can help build trust with customers and stakeholders.

b)

Responsible AI practice can help improve operational efficiency.

c)

Responsible AI practice can improve communication efficiency.

d)

Responsible AI practice can help drive revenue.

115.

If AI is developed responsibly, its main benefit is:

a)

Human flourishing

b)

Profit maximization

c)

Self-preservation

d)

Stronger machines

116.

What ensures rigor and consistency in Google’s AI decisions?

a)

Marketing campaigns

b)

Assessments and reviews

c)

Customer feedback only

d)

Random testing

117.

Collaborative progress means:

a)

Working alone on AI

b)

Empowering others to harness AI for collective benefit

c)

Restricting AI access

d)

Eliminating competition

118.

Which is NOT one of Google’s three guiding AI principles?

a)

Bold innovation

b)

Responsible development and deployment

c)

Collaborative progress

d)

Maximizing short-term profits

119.

Which of the following is an ethical challenge in AI?

a)

High internet cost

b)

Short battery life

c)

Weak algorithms

d)

Misaligned goals between AI and humans

120.

What makes supervised learning different from unsupervised learning?

a)

Amount of data used

b)

Use of labeled data

c)

Use of synthetic data

d)

Model speed