WorksheetsCybersecurity Security+
Total questions: 79
Worksheet time: 40mins
Which of the following components can have data permanently destroyed or wiped using degaussing methods?
Hard disk drives
Solid-state drives
Optical discs
Flash drives
Usually used in ethical hacker training programs and gamified competitions.
Capture the Flag (CTF)
Penetration Testing
Bug Bounty
Red Teaming
CIA stands for __________, integrity, and availability
Confidentiality
Control
Communication
Coordination
Performs a real-time lookup of a digital certificate’s status.
OCSP
SSL
TLS
DNSSEC
Malware that installs and operates silently until a certain event occurs.
Logic bomb
Worm
Adware
Trojan
A business manager is documenting a set of steps for processing orders if the primary Internet connection fails. These steps would BEST be described as:
Disaster recovery procedures
Network configuration settings
Routine maintenance tasks
Sales forecasting methods
Which of the following risk management strategies would include the purchase and installation of a next-generation firewall?
Risk avoidance
Risk transfer
Risk mitigation
Risk acceptance
The cybersecurity technique designed to detect the presence of threats that have not been discovered by normal security monitoring is known as:
Vulnerability scanning
Threat hunting
Firewall filtering
Patch management
A company would like to securely deploy applications without the overhead of installing a virtual machine for each system. Which of the following would be the BEST way to deploy these applications?
Use containers
Install a virtual machine for each application
Deploy applications on bare metal servers
Use shared hosting environments
You receive an email, with an invoice, stating that you passed through an EZPass lane without paying the toll. What type of attack is this?
Phishing
Denial of Service
Man-in-the-Middle
Brute Force
Windows user accounts are identified as:
Usernames
Passwords
IP addresses
MAC addresses
WPA3?
SAE
TKIP
WEP
EAP
What can be used to prevent shoulder surfing?
Privacy screen
Password manager
Antivirus software
Firewall
A security administrator would like to encrypt all VoIP communication on the corporate network. Which of the following protocols would provide this functionality?
SRTP
FTP
SNMP
Telnet
A hacker identified a number of devices on a corporate network that use the username of admin and the password of admin. Which vulnerability describes this situation?
Default configuration
Phishing attack
SQL injection
Privilege escalation
Which part of the PC startup process verifies that nothing on the computer has been changed by malicious software or other processes?
Measured Boot
Safe Mode
BIOS Update
Disk Cleanup
The VP of Retail Operations sent a request to the server administrator of the company to create daily backups of the retail leads database. The VP of Retail Operations is an example of a:
Data owner
Data custodian
System administrator
Database analyst
What does it mean to collect latent evidence?
It's not visible to the naked eye
It's evidence found in plain sight
It's evidence that is always physical
It's evidence that is always digital
A security administrator is researching the methods used by attackers to gain access to web servers. Which of the following would provide additional information about these techniques?
Honeypot
Firewall
Load balancer
Proxy server
Data which is stored in the RAM
Data in use
Data in backup
Data in archive
Data in cache
Which of the following attacks may allow remote authentication without cracking a password?
Pass the hash
Brute force attack
Dictionary attack
Phishing
What protocol does a smurf attack abuse?
ICMP
TCP
UDP
ARP
A digital certificate that turns the address bar green is a(n)...
Extended Validation SSL Certificate
Domain Validated SSL Certificate
Wildcard SSL Certificate
Organization Validated SSL Certificate
Linux command for managing file permissions
chmod
ls
cat
pwd
What is the primary target in a XSS attack?
Web browser
Database server
Network switch
Operating system
Which of the following describes a monetary loss if one event occurs? ________
SLE
ALE
ROI
MTTR
Changing code to make it difficult to understand or covering your tracks to make it hard for investigators to trace the origin of attack is called ________
Obfuscation
Encryption
Authentication
Replication
You received a support call from an end user who states that they've accidentally installed a virus on their Windows computer. What should be the first step you should take to remediate the situation?
Remove the computer from the network
Run a disk defragmentation
Upgrade the operating system
Install a new printer driver
A corporate security team would like to consolidate and protect the private keys across all of their web servers. Which of these would be the BEST way to securely store these keys?
Use an HSM
Store them in a shared network folder
Save them in a password-protected ZIP file
Keep them in a database with user access controls
Write them to a local text file
Which of the following two reasons explain why two backups are required when protecting evidence following a security incident?
To be used as evidence
To reduce storage costs
To speed up the investigation process
To comply with software licensing
A company is implementing a series of automated processes when responding to a security event. Which of the following would provide a linear checklist of steps to perform?
Runbook
Playbook
Incident Report
Audit Log
Which Windows security feature that marks memory so that it can store data but not execute program instructions?
Data Execution Prevention (DEP)
User Account Control (UAC)
BitLocker
Windows Defender
What name is given to the team that needs to be assembled as part of the incident response policy?
Computer Security Incident Response Team (CSIRT)
Network Operations Team (NOT)
Data Recovery Task Force (DRTF)
System Maintenance Group (SMG)
What are examples of a DoS attack?
Wireless dissociation
Phishing email
SQL injection
Password reuse
When an attacker captures network traffic and retransmits it at a later time, what type of attack are they attempting?
Replay attack
Phishing attack
Man-in-the-middle attack
Denial-of-service attack
How could you prevent the boot order from being manipulated during boot?
Implement a BIOS/UEFI password
Install more RAM
Change the monitor resolution
Update the graphics driver
File type used to save packet captures
.pcap
.docx
.jpg
.mp3
Which of the following BEST describes the modification of application source code that removes white space, shortens variable names, and rearranges the text into a compact format?
Minification
Compilation
Encryption
Debugging
The lock type that involves RFID or smart cards for authentication is:
Biometric lock
Mechanical lock
Electronic lock
Combination lock
According to the OSI Model, what communicates over layer 7?
Applications
Routers
Switches
Firewalls
A security administrator is configuring an IPsec tunnel to a remote site. Which protocol should the administrator enable to protect all of the data traversing the VPN tunnel?
ESP
FTP
SMTP
SNMP
Which of the following authentication protocols would be the BEST way to provide a login to wireless systems using existing credentials from a third-party?
RADIUS
WEP
WPA2-PSK
EAP-TTLS
Which of the following mitigates clickjacking, script injection, and other client-side attacks?
Content Security Policy (CSP)
Cross-Site Request Forgery (CSRF) tokens
SQL Injection prevention
Password hashing
A company has signed an SLA with an Internet service provider. Which of the following would BEST describe the content of this SLA?
The guaranteed level of service and uptime provided by the ISP
The pricing structure for internet packages
The types of hardware used by the ISP
The physical location of the ISP's data centers
Which Windows 10 security feature stores a hash of the UEFI firmware so that it cannot be exploited by malware?
Device Guard
BitLocker
Windows Defender
Secure Boot
A security administrator is designing a network to be PCI DSS compliant. Which of the following would be the BEST choice to provide this compliance?
Implement a dedicated firewall and network segmentation for cardholder data environment
Use only wireless networks for all transactions
Allow unrestricted access to all network segments
Disable all encryption protocols
A user in the accounting department would like to send a spreadsheet with sensitive information to a list of third-party vendors. Which of the following could be used to transfer this spreadsheet to the vendors?
Encrypted email attachment
Public cloud file sharing without password
Posting on social media
Unsecured USB drive
Which of the following features may be included in an EPP?
Antivirus protection
Photo editing tools
Music streaming services
Social media integration
What BEST describes implicit deny?
Block everything except what I allow
Allow everything except what I block
Allow only what is explicitly denied
Block only what is explicitly allowed
What is the point of an entry control roster?
To track visitors in a building
To record employee salaries
To monitor fire alarm systems
To schedule maintenance activities
Which of these cloud deployment models would allow multiple organizations to share the same cloud resources, regardless of the resource's location?
Community
Private
Public
Hybrid
Your company owns a purpose-built appliance that doesn't provide any access to the operating system and doesn't provide a method to upgrade the firmware. Which of the following describes this appliance?
Embedded system
Virtual machine
Cloud server
Workstation
An unauthorized AP broadcasting an identical SSID as a corporate network is considered a/an...
Evil Twin
Rogue Gateway
Phantom Bridge
Shadow Node
In WPA3, what replaces CCMP to ensure perfect forward secrecy of packets?
GCMP
TKIP
AES
WEP
Maintaining the integrity and proper handling of evidence from collection, to analysis, to storage, and then to presentation is known as________
Chain of Custody
Evidence Tampering
Data Encryption
Forensic Imaging
Which of the following best describes whaling?
Spear phishing executives
Sending spam emails to random users
Phishing for credit card information from the public
Hacking into social media accounts
Which of the following control types is associated with a bollard?
Physical
Technical
Administrative
Logical
Which of the following software can be used to recover data from slack space?
Autopsy
Photoshop
WinRAR
Notepad
A security administrator has installed a network-based DLP solution to determine if file transfers contain PII. Which of the following describes the data during the file transfer?
In-transit
At-rest
In-use
Encrypted
A company's security policy requires that login access should only be available if a person is physically within the same building as the server. Which of the following would be the BEST way to provide this requirement?
Biometric scanner
VPN access
Password authentication
Remote desktop
What type of attack involves an attacker putting a layer of code between an original device driver and the operating system?
Shimming
Spoofing
Phishing
Rootkit
An organization is installing a UPS for their new data center. Which of the following would BEST describe this type of control?
Compensating
Detective
Corrective
Preventive
A company would like to protect the data stored on laptops used off-site. Which of the following would be the BEST choice for this requirement?
SED
RAID
VPN
Firewall
Which of the following would limit the type of information a company can collect from their customers?
Minimization
Maximization
Diversification
Aggregation
An organization maintains a large database of customer information for sales tracking and customer support. Which person in the organization would be responsible for managing the access rights to this data?
Data custodian
Sales manager
Customer support representative
Database administrator
What is the advantage of using an EPP instead of a traditional AV?
EPP combines additional security functions, increasing security
EPP is only compatible with older operating systems
EPP requires less frequent updates than AV
EPP is less effective against malware than AV
Which of the following is known as eavesdropping?
Capturing and reading data packets as they move over the network
Encrypting data before transmission
Blocking unauthorized access to a network
Sending spam emails to users
Which of the following cloud deployments would include CPU, storage, and networking, but not include any operating system or application?
IaaS
PaaS
SaaS
FaaS
Rules can be added to a Linux-based NOS firewall by using the command...
iptables
netstat
ping
chmod
Which of the following would be the BEST way to determine if files have been modified after the forensics data acquisition process has occurred?
Create a hash of the data
Check the file size only
Review the file names
Rely on file timestamps
A network administrator is installing a series of access points in a public library. Which of the following would be the BEST way to prevent theft of his laptop while performing this work?
Cable lock
Password protect the laptop
Install antivirus software
Enable firewall
In China, the National Data Center was compromised due to a Chinese hacker group hacking a number of Chinese government websites that was frequently visited. What type of an attack is this?
Watering hole
Phishing
Man-in-the-middle
SQL injection
Which of the regulatory compliance laws ensures proper handling of patient health information?
HIPAA
SOX
FERPA
GLBA
You have two APs within close proximity. Both are emitting SSIDs from a 2.4GHz radio. One AP is set to channel 1 and the other AP is set to channel 2. What is this an example of?
Adjacent channel interference
Co-channel interference
Hidden node problem
Signal attenuation
If you want to encrypt a file or folder in Windows, what can you use?
EFS
NTFS
FAT32
BitLocker
What is the policy of preventing any one individual performing the same role or tasks for too long?
Job rotation
Job enrichment
Job enlargement
Job specialization
What next-gen endpoint protection system specializes in containment of the threat versus eradication?
Endpoint Detection & Response (EDR)
Antivirus Software
Firewall
Intrusion Prevention System (IPS)
Which of the following is a stateless firewall?
Packet filtering
Stateful inspection
Application proxy
Circuit-level gateway
Where can you implement a password policy that can be applied to an entire network?
Group Policy Management
Local Security Policy
User Account Control
Control Panel
