Cybersecurity
1.Malware cannot inflict physical damage to systems.--False
2.The type of malware that restricts access to the computer either by encrypting files on the hard drive or by displaying messages demanding a ransom is called __________.------Ransomware
3._________ is commonly known for providing backdoor access to the system for malicious users.--Trojans
4.The type of malware that tricks users by making them believe that their computer has been infected with a virus is called __________.------Scareware
5._________ is a standalone software that does not need human help/host program to spread.---Worm
6.An error message displayed on the system symbolizes virus infection.--False
7.Which of the following malware is designed for advertising, such as pop-up screens?--Adware
8.Which of the following is used to draw in users and infect them and deploy fast changing infrastructures?---Malnet
9._________________ is a device infected by malware, which becomes part of a network of infected devices administered by a single attacker or attack group.--Bot
10.The common term for a software that is considered as nonessential, whose implementation can compromise privacy or weaken the computer's security is called ___________.-------Potentially Unwanted Program
11.________ is designed to extract data from its host computer for marketing purpose----Spyware
12.What is PUP?----Potentially Unwanted Program
13.The method of protecting programs, networks, and systems from digital attacks is commonly known as __________.----Cybersecurity
14.Programs that are specifically designed to disrupt the performance of computers/networks are commonly known as __________.-----Ransomware
15.The security posture of an organization is defined by the ______ link in the chain.--------Weakest
16.The security posture of an organization is defined by the ______ link in the chain.
17.Which of the following attributes is not a PII?
18.The security attribute that aims to achieve data privacy and protection against unauthorized disclosure is called ____________.
19.As an application of cryptography, digital Signatures and MACs can be used for _____________.
20.Threats can exploit assets if assets are not vulnerable.
21.Which of the following is an attack against confidentiality?
Answer: 4)Man in the Middle Attack
22.Which of the following is an intangible asset?
23.If a student gains unauthorized access to the student database and modifies his/her marks, what type of violation would it be?
24.Which of the following is an attack against availability?
25.Choose the correct option.
26.The type of attack in which the attacker intercepts the information in transit without altering it.
27.The process of converting a message to an unintelligible form with the help of an algorithm and a key is known as _______.
28.What is the practice and study of techniques for secure communication in the presence of third parties, commonly called?
29.Which of the following security attribute is compromised when data or information is changed or tampered, either accidentally or maliciously?
30.Which of the following encryption methods is more suited for key exchange, non-repudiation, and authentication?
31.Passive attacks are considered a threat to _______.
32.Which of the following attack method aims to gather confidential information by deceiving the victim?
33.Which encryption method is more suitable for quickly encrypting large amounts of data?
34.A type of assessment that is often performed in a sandbox-virtual environment to prevent malware from actually infecting production systems is known as _________.
35.A proactive process to predict potential risks efficiently.
36.SABSA Framework is commonly represented as _______ SABSA matrix.
37.A kind of a network attack, where an unauthorized person gains access to a network and remains there undetected for a long duration is called _________.
38.A process by which potential vulnerabilities and threats can be recognized, enumerated, and prioritized from a hypothetical attacker's pov is called ___________.
39.Which of the following are the three phases of Incident response maturity assessment?
40.Phishing emails include fake notifications from banks and e-payment systems.
Answer: 2)True
41.Which of these is true with respect to passwords?
42.Which of these are Threats related to Email Security?
43.How do we define RADIUS?
44.________ is designed to extract data from its host computer for marketing purposes.
Answer: 4)Spyware
45.The telephone version of phishing that exploits social engineering techniques is known as __________.
46.A type of assessment that is often performed in a sandbox-virtual environment to prevent malware from actually infecting production systems is called ________.
47.The three chains of RADIUS Security are ___________________.
48.An error message displayed on the system, symbolizes virus infection.
49.A kind of a network attack, where an unauthorized person gains access to a network and remains there undetected for a long duration is known as ______________.
Answer: 2)Advanced Persistent Threats
50.As an application of cryptography, digital Signatures and MACs can be used for _____________.
51.The process of converting a message to an unintelligible form with the help of an algorithm and a key is known as _______.
52._________ is a standalone software that does not need human help/host program to spread.
Ransomware
53.What is PUP?
54._________ is commonly known for providing backdoor access to the system for malicious users.
55.Which of the following is a physiological biometric that could be used for authentication?
56.Which of the following encryption methods is more suited for key exchange, non-repudiation, and authentication?
57.What is the type of malware that restricts access to the computer either by encrypting files on the hard drive or by displaying messages demanding a ransom?
58.A pharming tactic in which the DNS table in a server is modified to deceive users by redirecting to fraudulent websites.
59.Threats can exploit assets if assets are not vulnerable.
60.Which of the following security attribute is compromised when data or information is changed or tampered, either accidentally or maliciously?
61.Which of the following is an effective solution to ensure confidentiality?
62.A process by which potential vulnerabilities and threats can be recognized, enumerated, and prioritized from a hypothetical attacker's pov is called _______________.
63.__________ is a proactive process to predict potential risks efficiently.
2.The type of malware that restricts access to the computer either by encrypting files on the hard drive or by displaying messages demanding a ransom is called __________.------Ransomware
3._________ is commonly known for providing backdoor access to the system for malicious users.--Trojans
4.The type of malware that tricks users by making them believe that their computer has been infected with a virus is called __________.------Scareware
5._________ is a standalone software that does not need human help/host program to spread.---Worm
6.An error message displayed on the system symbolizes virus infection.--False
7.Which of the following malware is designed for advertising, such as pop-up screens?--Adware
8.Which of the following is used to draw in users and infect them and deploy fast changing infrastructures?---Malnet
9._________________ is a device infected by malware, which becomes part of a network of infected devices administered by a single attacker or attack group.--Bot
10.The common term for a software that is considered as nonessential, whose implementation can compromise privacy or weaken the computer's security is called ___________.-------Potentially Unwanted Program
11.________ is designed to extract data from its host computer for marketing purpose----Spyware
12.What is PUP?----Potentially Unwanted Program
13.The method of protecting programs, networks, and systems from digital attacks is commonly known as __________.----Cybersecurity
14.Programs that are specifically designed to disrupt the performance of computers/networks are commonly known as __________.-----Ransomware
15.The security posture of an organization is defined by the ______ link in the chain.--------Weakest
16.The security posture of an organization is defined by the ______ link in the chain.
- Weakest
- Strongest
- Average
17.Which of the following attributes is not a PII?
- Date of Birth
- Credit Card Information
- IP Address
- Account Numbers
- Social Security Number
18.The security attribute that aims to achieve data privacy and protection against unauthorized disclosure is called ____________.
- Integrity
- Authentication
- Availability
- Confidentiality
19.As an application of cryptography, digital Signatures and MACs can be used for _____________.
- Authentication
- Confidentiality
- Availability
- Integrity
20.Threats can exploit assets if assets are not vulnerable.
- False
- True
21.Which of the following is an attack against confidentiality?
- Password Attack
- DoS Attack
- Cross Site Scripting Attack
- Man in the Middle Attack
Answer: 4)Man in the Middle Attack
22.Which of the following is an intangible asset?
- Trade Secrets
- Inventory and Machinery
- Business Premises
- Hardware components
23.If a student gains unauthorized access to the student database and modifies his/her marks, what type of violation would it be?
- Integrity
- Both the options
- Confidentiality
24.Which of the following is an attack against availability?
- Birthday Attack
- DoS Attack
- Man in the Middle Attack
- Zero Day Attack
25.Choose the correct option.
- Risk=Threat/Vulnerability
- Risk=Threat*Vulnerability
- Threat=Risk*Vulnerability
- Vulnerability=Threat/Risk
26.The type of attack in which the attacker intercepts the information in transit without altering it.
- Active Attack
- Invasive Attack
- Passive Attack
27.The process of converting a message to an unintelligible form with the help of an algorithm and a key is known as _______.
- Cryptography
- Encryption
- Cryptology
- Cryptanalysis
28.What is the practice and study of techniques for secure communication in the presence of third parties, commonly called?
- Cryptography
- Encryption
- Cryptanalysis
- Cybersecurity
29.Which of the following security attribute is compromised when data or information is changed or tampered, either accidentally or maliciously?
- Availability
- Integrity
- Confidentiality
- Repudiation
30.Which of the following encryption methods is more suited for key exchange, non-repudiation, and authentication?
- Assymmetric Key Encryption
- Symmetric Key Encryption
31.Passive attacks are considered a threat to _______.
- Authenticity
- Availability
- Confidentiality
- Integrity
32.Which of the following attack method aims to gather confidential information by deceiving the victim?
- Phishing
- Spoofing
- Drive-by Download
- Spamming
33.Which encryption method is more suitable for quickly encrypting large amounts of data?
- Assymmetric Key Encryption
- Symmetric Key Encryption
34.A type of assessment that is often performed in a sandbox-virtual environment to prevent malware from actually infecting production systems is known as _________.
- Black Box Testing
- Dynamic Analysis
- Static Analysis
- Penetration Testing
35.A proactive process to predict potential risks efficiently.
- Threat Modeling
- Threat Analysis
- Threat Hunting
- Threat Landscaping
36.SABSA Framework is commonly represented as _______ SABSA matrix.
- 4x4
- 8x8
- 5x5
- 6x6
37.A kind of a network attack, where an unauthorized person gains access to a network and remains there undetected for a long duration is called _________.
- Invisible Threats
- Hidden Threats
- Advanced Persistent Threats
- Malicious threats
38.A process by which potential vulnerabilities and threats can be recognized, enumerated, and prioritized from a hypothetical attacker's pov is called ___________.
- Threat Landscaping
- Threat Modeling
- Threat Analysis
- Threat Hunting
39.Which of the following are the three phases of Incident response maturity assessment?
- Prepare, Response, and Follow-up
- Prepare, Identify, and analyze
- Reconnaissance, Installation, Command, and control
- Identify, Decompose, and Mitigate
40.Phishing emails include fake notifications from banks and e-payment systems.
- False
- True
Answer: 2)True
41.Which of these is true with respect to passwords?
- None of the options
- Passwords need to be easy
- Passwords can be kept openly
- Passwords need to be atleast 8 chars of length
42.Which of these are Threats related to Email Security?
- All the options
- Spoofing
- Pharming
- Phishing
- Spam
43.How do we define RADIUS?
- Remote Authorization Dial-In User Service.
- Remote Authentication Dial-In User Service.
- Remote Authentication Service.
- Remote Authentication Dial-In Unified Service.
44.________ is designed to extract data from its host computer for marketing purposes.
- Ransomware
- Trojans
- Adware
- Spyware
Answer: 4)Spyware
45.The telephone version of phishing that exploits social engineering techniques is known as __________.
- Pharming
- Smishing
- Vishing
46.A type of assessment that is often performed in a sandbox-virtual environment to prevent malware from actually infecting production systems is called ________.
- Static Analysis
- Black Box Testing
- Dynamic Analysis
- Penetration Testing
47.The three chains of RADIUS Security are ___________________.
- Authentication, Availability, Accounting
- Authorization, Availability, Accounting
- Authentication, Authorization, Accounting
48.An error message displayed on the system, symbolizes virus infection.
- False
- True
49.A kind of a network attack, where an unauthorized person gains access to a network and remains there undetected for a long duration is known as ______________.
- Malicious threats
- Advanced Persistent Threats
- Hidden Threats
- Invisible Threats
Answer: 2)Advanced Persistent Threats
50.As an application of cryptography, digital Signatures and MACs can be used for _____________.
- Confidentiality
- Integrity
- Availability
- Authentication
51.The process of converting a message to an unintelligible form with the help of an algorithm and a key is known as _______.
- Encryption
- Cryptography
- Cryptanalysis
- Cryptology
52._________ is a standalone software that does not need human help/host program to spread.
Ransomware
- Worm
- Trojan
- Virus
53.What is PUP?
- Potentially Unwanted Program
- Practially Unwanted Program
- Potentially Unwanted Procss
- Practically Unrelated Program
54._________ is commonly known for providing backdoor access to the system for malicious users.
- Trojans
- Worms
- Rootkits
- Botnets
55.Which of the following is a physiological biometric that could be used for authentication?
- Signature
- Voice Recognition
- Facial Recognition
- Gait
- All the options
56.Which of the following encryption methods is more suited for key exchange, non-repudiation, and authentication?
- Symmetric Key Encryption
- Assymmetric Key Encryption
57.What is the type of malware that restricts access to the computer either by encrypting files on the hard drive or by displaying messages demanding a ransom?
- Ransomware
- Spyware
- Trojans
- Scareware
58.A pharming tactic in which the DNS table in a server is modified to deceive users by redirecting to fraudulent websites.
- DNS Phishing
- Smishing
- Vishing
- DNS Poisoning
59.Threats can exploit assets if assets are not vulnerable.
- False
- True
60.Which of the following security attribute is compromised when data or information is changed or tampered, either accidentally or maliciously?
- Availability
- Confidentiality
- Integrity
- Repudiation
- Confidentiality and Integrity
61.Which of the following is an effective solution to ensure confidentiality?
- Logging and Auditing
- Encryption
- Network Monitoring
- Data Hiding
62.A process by which potential vulnerabilities and threats can be recognized, enumerated, and prioritized from a hypothetical attacker's pov is called _______________.
- Threat Modeling
- Threat Landscaping
- Threat Analysis
- Threat Hunting
63.__________ is a proactive process to predict potential risks efficiently.
- Threat Hunting
- Threat Modeling
- Threat Analysin
- Threat Landscaping
Disclaimer: This site is for pure educational purpose
only. we recommend it only for reference. we still encourage to go through the
course and learn the topics

Post a Comment