NEW
Font size
WorksheetsQUIZ DFS40143 UNIT 1
Total questions: 10
Worksheet time: 5mins
A user accesses a banking website using HTTPS, but ignores a browser warning about an invalid certificate. What security risk is MOST likely present?
Data confidentiality is completely lost
The website identity cannot be trusted
Encryption algorithm becomes weaker
Passwords are sent in cleartext
Two systems use encryption to secure communication. System A ensures data cannot be read by attackers. System B ensures data cannot be altered during transmission. Which encryption objectives are being applied respectively?
Authentication and confidentiality
Confidentiality and integrity
Integrity and authentication
Non-repudiation and integrity
An organization still uses DES for encrypting sensitive data. Based on current computing power, what is the MOST significant weakness of this approach?
DES uses symmetric encryption
DES block size is too large
DES key length is too short
DES cannot encrypt images
A system uses AES-256 instead of AES-128. What can be concluded from this choice?
Encryption speed will always increase
Security strength is increased due to longer key length
Block size becomes larger
Encryption becomes asymmetric
A message is encrypted using a public key and can only be decrypted using a private key. Which conclusion can be made about the encryption method?
It is symmetric encryption
It uses the Caesar Cipher
It is asymmetric encryption
It uses block cipher chaining
A network administrator replaces Telnet with SSH for remote login. Which combined security improvements does this provide?
Confidentiality and integrity
Availability and speed
Image protection and authentication
Data compression and confidentiality
An attacker captures encrypted traffic but successfully alters the message without detection. Which encryption objective has FAILED?
Confidentiality
Authentication
Integrity
Non-repudiation
A photographer applies watermarks and also embeds EXIF copyright data into images. What is the MAIN advantage of combining these two methods?
Images become impossible to copy
Both visual deterrence and ownership evidence are provided
File size is reduced
Image quality is improved
A website encrypts user data but does not authenticate its server identity. What potential attack could still occur?
Brute-force attack
Man-in-the-middle attack
Denial-of-service attack
Image theft
A company encrypts stored customer data and also encrypts data sent over the network. Which conclusion BEST describes this strategy?
Encryption is applied only for compliance
Data is protected only during transmission
Both data at rest and data in transit are protected
Encryption replaces access control
