Time limit: 0
Quiz-summary
0 of 77 questions completed
Questions:
- 1
- 2
- 3
- 4
- 5
- 6
- 7
- 8
- 9
- 10
- 11
- 12
- 13
- 14
- 15
- 16
- 17
- 18
- 19
- 20
- 21
- 22
- 23
- 24
- 25
- 26
- 27
- 28
- 29
- 30
- 31
- 32
- 33
- 34
- 35
- 36
- 37
- 38
- 39
- 40
- 41
- 42
- 43
- 44
- 45
- 46
- 47
- 48
- 49
- 50
- 51
- 52
- 53
- 54
- 55
- 56
- 57
- 58
- 59
- 60
- 61
- 62
- 63
- 64
- 65
- 66
- 67
- 68
- 69
- 70
- 71
- 72
- 73
- 74
- 75
- 76
- 77
Information
Introduction to Cybersecurity: Course Final Exam Test Online
You have already completed the quiz before. Hence you can not start it again.
Quiz is loading...
You must sign in or sign up to start the quiz.
You have to finish following quiz, to start this quiz:
Results
0 of 77 questions answered correctly
Your time:
Time has elapsed
You have reached 0 of 0 points, (0)
| Average score |
|
| Your score |
|
Categories
- Not categorized 0%
- 1
- 2
- 3
- 4
- 5
- 6
- 7
- 8
- 9
- 10
- 11
- 12
- 13
- 14
- 15
- 16
- 17
- 18
- 19
- 20
- 21
- 22
- 23
- 24
- 25
- 26
- 27
- 28
- 29
- 30
- 31
- 32
- 33
- 34
- 35
- 36
- 37
- 38
- 39
- 40
- 41
- 42
- 43
- 44
- 45
- 46
- 47
- 48
- 49
- 50
- 51
- 52
- 53
- 54
- 55
- 56
- 57
- 58
- 59
- 60
- 61
- 62
- 63
- 64
- 65
- 66
- 67
- 68
- 69
- 70
- 71
- 72
- 73
- 74
- 75
- 76
- 77
- Answered
- Review
-
Question 1 of 77
1. Question
1 pointsWhich of the following firewalls hides or masquerades the private addresses of network hosts?Correct
Incorrect
Hint
A Network address translation (NAT) firewall is specifically designed to hide or masquerade the private addresses of network hosts, protecting internal network identities from the public internet. -
Question 2 of 77
2. Question
1 pointsCarrying out a multi-phase, long-term, stealthy and advanced operation against a specific target is often referred to as what?Correct
Incorrect
Hint
An Advanced Persistent Threat (APT) is defined as a multi-phase, long-term, and stealthy operation directed at a specific target. Its primary goal is to deploy customized malware and maintain unauthorized access to the target’s systems while remaining undetected for an extended period. -
Question 3 of 77
3. Question
1 pointsYou are configuring access settings to require employees in your organization to authenticate first before accessing certain web pages. Which requirement of information security is addressed through this configuration?Correct
Incorrect
Hint
Confidentiality is a set of rules that prevents sensitive information from being disclosed to unauthorized people, resources and processes. Methods to ensure confidentiality include data encryption, identity proofing and two factor authentication. -
Question 4 of 77
4. Question
1 pointsWhat are the objectives of ensuring data integrity? (Choose two correct answers)Correct
Incorrect
Hint
The objectives for data integrity include data not being altered during transit and not being changed by unauthorized entities. Authentication and encryption are methods to ensure confidentiality. Data being available all the time is the goal of availability. -
Question 5 of 77
5. Question
1 pointsAn organization is experiencing overwhelming visits to a main web server. You are developing a plan to add a couple of more web servers for load balancing and redundancy. Which requirement of information security is addressed by implementing the plan?Correct
Incorrect
Hint
Adding web servers for load balancing and redundancy ensures that authorized users can consistently access systems and data when needed, even during periods of overwhelming traffic or hardware failure, which fulfills the Availability principle of the McCumber Cube. -
Question 6 of 77
6. Question
1 pointsWhat of the following are examples of cracking an encrypted password? (Choose four correct answers)Correct
Incorrect
Hint
These four techniques are specific methods used to uncover or crack passwords: brute-force attacks try every possible character combination; dictionary attacks systematically test words from a list; spraying uses common passwords across many different accounts; and rainbow tables utilize a dictionary of precomputed hashes to identify passwords without calculating each hash individually. -
Question 7 of 77
7. Question
1 pointsImproper management of physical access to a resource, such as a file, can lead to what type of security vulnerability?Correct
Incorrect
Hint
Access control involves managing who can access resources, ranging from physical access to equipment to dictating who can read or change a file. Improper management of these controls creates security vulnerabilities because an attacker with physical access can bypass standard operating system protections to read data directly from a disk. -
Question 8 of 77
8. Question
1 pointsA medical office employee sends emails to patients about their recent visits to the facility. What information would put the privacy of the patients at risk if it was included in the email?Correct
Incorrect
Hint
An email message is transmitted in plain text and can be read by anyone who has access to the data while it is en route to a destination. Patient records include confidential or sensitive information that should be transmitted in a secure manner. -
Question 9 of 77
9. Question
1 pointsWhat is the best way to avoid getting spyware on a machine?Correct
Incorrect
Hint
To prevent malicious software like spyware from being installed on a machine, the sources explicitly state that you should only ever download software from trusted websites. While using antivirus software and keeping your operating system and browser updated provide essential additional layers of protection against vulnerabilities, downloading from trusted sources is the primary method to avoid the initial infection. -
Question 10 of 77
10. Question
1 pointsYou are surfing the Internet using a laptop at a public Wi-Fi cafe. What should you check first before you connect to the public network?Correct
Incorrect
Hint
You should always verify that your device isn’t configured with file and media sharing and that it requires user authentication with encryption. -
Question 11 of 77
11. Question
1 pointsWhat is the main function of the Cisco Security Incident Response Team?Correct
Incorrect
Hint
The primary function of the Cisco Security Incident Response Team (CSIRT) is to receive, review, and respond to security incident reports. Beyond reactive measures, they perform proactive threat assessments and mitigation planning specifically to prevent incidents and ensure the preservation of the organization’s systems and data. -
Question 12 of 77
12. Question
1 pointsWhich of the following firewalls are placed in front of web services to protect, hide, offload and distribute access to web servers?Correct
Incorrect
Hint
Placed in front of web servers, reverse proxy servers protect, hide, offload and distribute access to web servers. -
Question 13 of 77
13. Question
1 pointsWhich of the following certifications meets the U.S. Department of Defense Directive 8570.01-M requirements, which is important for anyone looking to work in IT security for the federal government?Correct
Incorrect
Hint
This is an entry-level security certification that meets the U.S. Department of Defense Directive 8570.01-M requirements, which is an important item for anyone looking to work in IT security for the federal government. -
Question 14 of 77
14. Question
1 pointsOne of your colleagues has lost her identification badge. She is in a hurry to get to a meeting and does not have time to visit Human Resources to get a temporary badge. You lend her your identification badge until she can obtain a replacement. Is this behavior ethical or unethical?Correct
Incorrect
Hint
Lending an identification badge is unethical because it bypasses access control, which is the formal process of managing physical access to an organization’s equipment and resources. While the intention to help a colleague is positive, cybersecurity ethics require professionals to act within the bounds of policy and the law to protect the organization’s data and reputation. Such behavior creates a security vulnerability and does not comply with established security practices. -
Question 15 of 77
15. Question
1 pointsWhich of the following certifications tests your understanding and knowledge in how to look for weaknesses and vulnerabilities in target systems using the same knowledge and tools as a malicious hacker, but in a lawful and legitimate manner?Correct
Incorrect
Hint
This certification tests your understanding and knowledge of how to look for weaknesses and vulnerabilities in target systems using the same knowledge and tools as a malicious hacker but in a lawful and legitimate manner. -
Question 16 of 77
16. Question
1 pointsWhat is the main purpose of cyberwarfare?Correct
Incorrect
Hint
The main reason for resorting to cyberwarfare is to gain advantage over adversaries, whether they are nations or competitors. -
Question 17 of 77
17. Question
1 pointsWhat vulnerability occurs when the output of an event depends on ordered or timed outputs?Correct
Incorrect
Hint
A race condition is a software vulnerability that occurs when the output of an event is dependent on the specific ordering or timing of outputs. It becomes a security risk if the required events do not happen in the correct sequence or at the intended time. -
Question 18 of 77
18. Question
1 pointsWhat do you call the vulnerabilities discovered by Google security researchers that affect almost all CPUs released since 1995? (Select two correct answers)Correct
Incorrect
Hint
Google security researchers discovered Meltdown and Spectre, which are two hardware design flaws affecting nearly all CPUs released since 1995. These vulnerabilities allow attackers to perform side-channel attacks to read sensitive data from system memory or information handled by other applications. -
Question 19 of 77
19. Question
1 pointsIf developers attempt to create their own security algorithms, it will likely introduce what type of vulnerabilities?Correct
Incorrect
Hint
Systems and sensitive data can be protected through techniques such as authentication, authorization and encryption. Developers should stick to using security techniques and libraries that have already been created, tested and verified and should not attempt to create their own security algorithms. These will only likely introduce new vulnerabilities. -
Question 20 of 77
20. Question
1 pointsWhich technology creates a security token that allows a user to log in to a desired web application using credentials from a social media website?Correct
Incorrect
Hint
Open Authorization is an open standard protocol that allows end users to access third party applications without exposing their user passwords. -
Question 21 of 77
21. Question
1 pointsWhich of the following security implementations use biometrics? (Choose two correct answers)Correct
Incorrect
Hint
Biometrics verify identity using unique physical or behavioral characteristics. According to the sources, fingerprints and voice recognition (along with facial recognition) are specific examples of biometric scans, whereas devices like phones, credit cards, or fobs are classified as physical objects used for authentication. -
Question 22 of 77
22. Question
1 pointsWhich of the following firewalls filters traffic based on source and destination IP addresses?Correct
Incorrect
Hint
A Network layer firewall is designed to filter communications specifically based on source and destination IP addresses. Other firewalls use different criteria, such as data ports for the Transport layer or specific applications for the Application layer. -
Question 23 of 77
23. Question
1 pointsWhich of the following firewalls filters web content requests such as URLs and domain names?Correct
Incorrect
Hint
A proxy server is a specific type of firewall that filters web content requests, such as URLs, domain names, and media types, to control what web traffic is allowed into or out of a network. -
Question 24 of 77
24. Question
1 pointsA port scan returns a ‘dropped’ response. What does this mean?Correct
Incorrect
Hint
A ‘dropped’ response (also referred to as ‘filtered’ or ‘blocked’) means that access to the port or service is blocked by a firewall. In this state, the firewall or security appliance discards the probing packet without sending a response, ensuring the port cannot be reached or exploited. -
Question 25 of 77
25. Question
1 pointsDuring a meeting with the Marketing department, a representative from IT discusses features of an upcoming product that will be released next year. Is this employee’s behavior ethical or unethical?Correct
Incorrect
Hint
Sharing information on a new product to the Marketing department of the same company is ethical behavior. It gives them ample lead time to begin development of a marketing plan for the new product. -
Question 26 of 77
26. Question
1 pointsWhich of the following is an entry-level certification for newcomers who are preparing to start their career in cybersecurity?Correct
Incorrect
Hint
This is an entry-level certification for newcomers who are preparing to start their career in the cybersecurity field. -
Question 27 of 77
27. Question
1 points‘Cybersecurity certifications are a way for you to verify your skills and knowledge and can also boost your career.’ Is this statement true or false?Correct
Incorrect
Hint
The sources explicitly state that cybersecurity certifications serve as a “great way” to verify your skills and knowledge while simultaneously boosting your career. Various organizations like Cisco, CompTIA, and the SANS Institute offer these certifications to help professionals validate their expertise at different career stages. -
Question 28 of 77
28. Question
1 pointsWhen describing malware, what is a difference between a virus and a worm?
Correct
Incorrect
Hint
Malware can be classified as follows: Virus (self-replicates by attaching to another program or file) Worm (replicates independently of another program) Trojan horse (masquerades as a legitimate file or program) Rootkit (gains privileged access to a machine while concealing itself) Spyware (collects information from a target system) Adware (delivers advertisements with or without consent) Bot (waits for commands from the hacker) Ransomware (holds a computer system or data captive until payment isreceived) -
Question 29 of 77
29. Question
1 pointsAn employee is laid off after fifteen years with the same organization. The employee is then hired by another organization within a week. In the new organization, the employee shares documents and ideas for products that the employee proposed at the original organization. Is the employee’s behavior ethical or unethical?Correct
Incorrect
Hint
Sharing documents and product ideas from a previous employer is unethical because it violates the protection of intellectual property and trade secrets, which are critical for an organization’s economic advantage. Professional ethics require employees to safeguard an organization’s data and reputation even after leaving, and using proprietary information to benefit a competitor is a breach of that responsibility. -
Question 30 of 77
30. Question
1 pointsWhich of the following firewalls filters traffic based on the user, device, role, application type and threat profile?Correct
Incorrect
Hint
A Context aware application firewall (referred to as a context aware layer firewall in the sources) filters network communications by analyzing specific parameters such as the user, device, role, application type, and threat profile. This provides more sophisticated security than basic firewalls that only filter by IP addresses or ports. -
Question 31 of 77
31. Question
1 pointsWhat names are given to a database where all cryptocurrency transactions are recorded? (Select two correct answers)Correct
Incorrect
Hint
Cryptocurrency owners keep their money in encrypted, virtual ‘wallets.’ When a transaction takes place between the owners of two digital wallets, the details are recorded in a decentralized, electronic ledger or blockchain system. This means it is carried out with a degree of anonymity and is self-managed, with no interference from third parties such as central banks or government entities. -
Question 32 of 77
32. Question
1 pointsWhich of the following items are states of data? (Choose three correct answers)Correct
Incorrect
Hint
Processing refers to data that is being used to perform an operation such as updating a database record (data in process). Storage refers to data stored in memory or on a permanent storage device such as a hard drive, solid-state drive or USB drive (data at rest). Transmission refers to data traveling between information systems (data in transit). -
Question 33 of 77
33. Question
1 points‘Internet-based cameras and gaming gear are not subject to security breaches.’ Is this statement true or false?Correct
Incorrect
Hint
Internet-based cameras and gaming gear are highly susceptible to security breaches. For example, in 2017, the Persirai botnet hijacked over 122,000 IP cameras from various manufacturers to perform distributed denial-of-service (DDoS) attacks. Similarly, the elite gaming brand Razer experienced a data breach in 2020 that exposed the personal information of roughly 100,000 customers. These IoT devices often pose a greater risk than traditional computing devices because they frequently run original, unpatched software that contains vulnerabilities. -
Question 34 of 77
34. Question
1 pointsWhat vulnerability occurs when data is written beyond the memory areas allocated to an application?Correct
Incorrect
Hint
A buffer overflow occurs when data is written beyond the limits of a buffer, which is a memory area specifically allocated to an application. This vulnerability allows an application to access or overwrite memory reserved for other processes, potentially leading to system crashes, data compromise, or unauthorized escalation of privileges. -
Question 35 of 77
35. Question
1 pointsAn organization’s IT department reports that their web server is receiving an abnormally high number of web page requests from different locations simultaneously. What type of security attack is occurring?Correct
Incorrect
Hint
A Distributed Denial-of-Service (DDoS) attack occurs when multiple, coordinated sources simultaneously flood the resources of a targeted system, such as a web server. By sending an overwhelming quantity of traffic that the server cannot handle, the attacker causes a slowdown or a complete crash of the service. -
Question 36 of 77
36. Question
1 pointsWhich of the following are commonly used port scanning applications? (Select two correct answers)Correct
Incorrect
Hint
Two popular network discovery and port scanning applications are Network Mapper (Nmap) and Zenmap. -
Question 37 of 77
37. Question
1 pointsWhat action will an IDS take upon detection of malicious traffic?Correct
Incorrect
Hint
An IDS, or intrusion detection system, is a device that can scan packets and compare them to a set of rules or attack signatures. If the packets match attack signatures, then the IDS can create an alert and log the detection. -
Question 38 of 77
38. Question
1 pointsWhich of the following statements best describes cybersecurity?Correct
Incorrect
Hint
Cybersecurity is defined as the ongoing effort to protect individuals, organizations, and governments from digital attacks by safeguarding networked (Internet-connected) systems and data from unauthorized use or harm. It is a continuous process rather than a single application or fixed framework. -
Question 39 of 77
39. Question
1 points‘After a data breach, it’s important to educate employees, partners and customers on how to prevent future breaches.’ Is this statement true or false?Correct
Incorrect
Hint
One of the key actions an organization should take after identifying a security breach is to raise awareness, train, and educate employees, partners, and clients on how to prevent future breaches. This step is part of a comprehensive impact reduction strategy to ensure that lessons learned from the incident are applied to improve the organization’s future security posture. -
Question 40 of 77
40. Question
1 pointsAn employee points out a design flaw in a new product to the department manager. Is this employee’s behavior ethical or unethical?Correct
Incorrect
Hint
This behavior is ethical because at an organizational level, it is everyone’s responsibility to protect the organization’s reputation, data and customers. Pointing out a design flaw is a proactive action that allows the organization to address potential vulnerabilities before they can be exploited, thereby preserving the organization’s systems and data. -
Question 41 of 77
41. Question
1 points‘Data coming into a program should be sanitized, as it could have malicious content, designed to force the program to behave in an unintended way.’ This statement describes what security vulnerability?Correct
Incorrect
Hint
Non-validated input is a software vulnerability that occurs when data entering a program is not properly sanitized, allowing it to contain malicious content designed to force the program to behave in an unintended way. An example of this exploit is a user providing a file with invalid dimensions to force a program to allocate buffers of incorrect and unexpected sizes. -
Question 42 of 77
42. Question
1 pointsWhich of the following are examples of on-path attacks? (Choose two correct answers)Correct
Incorrect
Hint
An on-path attack is a method of infiltration where an attacker intercepts or modifies communications between two devices to collect sensitive information or impersonate one of the devices. The sources explicitly state that this type of attack is also referred to as a Man-in-the-Middle (MitM) or a Man-in-the-Mobile (MitMo) attack. -
Question 43 of 77
43. Question
1 pointsWhich of the following firewalls filters traffic based on application, program or service?Correct
Incorrect
Hint
An Application layer firewall filters network communications based on the specific application, program, or service attempting to transmit data. While other firewalls might look at IP addresses or data ports, this type focuses on the actual software or service level to determine if traffic should be allowed. -
Question 44 of 77
44. Question
1 pointsA port scan returns a ‘closed’ response. What does this mean?Correct
Incorrect
Hint
A ‘closed’ response (which the sources also group with ‘denied’ or ‘not listening’) indicates that the specific port or service is not running on the target computer. Because the service is not active, any attempt to connect to that port is rejected, and the port cannot be exploited by an attacker. -
Question 45 of 77
45. Question
1 points‘Cryptocurrency transactions are digital.’ Is this statement true or false?Correct
Incorrect
Hint
Cryptocurrency is defined as digital money used to buy goods and services through secured online transactions. These transactions occur between digital wallets and are recorded in a decentralized electronic ledger known as a blockchain, which is updated and disseminated electronically worldwide. -
Question 46 of 77
46. Question
1 pointsWhat do you call a digital asset designed to work as a medium of exchange that uses strong encryption to secure a financial transaction?Correct
Incorrect
Hint
Cryptocurrency is defined as digital money designed to act as a medium of exchange for goods and services. It utilizes strong encryption techniques to secure financial transactions, which are recorded in a decentralized electronic ledger known as a blockchain. -
Question 47 of 77
47. Question
1 pointsWhich of the following tools used for incident detection can be used to detect anomalous behavior, command and control traffic, and detect infected hosts? (Choose two correct answers)Correct
Incorrect
Hint
Although each of these tools is useful for securing networks and detecting vulnerabilities, only an IDS and NetFlow logging can be used to detect anomalous behavior, command and control traffic, and infected hosts. -
Question 48 of 77
48. Question
1 pointsWhat name is given to a group of bots, connected through the Internet, with the ability to be controlled by a malicious individual or group?Correct
Incorrect
Hint
A botnet is a group of bots (infected computers) connected via the Internet that are controlled by a malicious individual or group, typically through a command and control server. While individual infected hosts are called zombies, the entire group functioning together is known as a botnet. -
Question 49 of 77
49. Question
1 pointsWhat is the best approach for preventing a compromised IoT device from maliciously accessing data and devices on a local network?Correct
Incorrect
Hint
The best approach to protect a data network from a possibly compromised IoT device is to place all IoT devices on an isolated network that only has access to the Internet. -
Question 50 of 77
50. Question
1 pointsWhat name is given to the emerging threat that hides on a computer or mobile device and uses that machine’s resources to mine cryptocurrencies?Correct
Incorrect
Hint
Cryptojacking is defined as an emerging threat that hides on various devices—including computers, mobile phones, and servers—and uses that machine’s resources to ‘mine’ cryptocurrencies without the user’s consent or knowledge. This type of attack is on the rise because it allows cybercriminals to profit from hijacked hardware while often remaining undetected by the victim. -
Question 51 of 77
51. Question
1 pointsA port scan returns an ‘open’ response. What does this mean?Correct
Incorrect
Hint
An ‘open’ or ‘accepted’ response from a port scan indicates that a port or service is running on the computer and can be accessed by other network devices. This confirms that a specific service is actively listening on that port for incoming communications. -
Question 52 of 77
52. Question
1 pointsAn employee is at a restaurant with friends and tells them about an exciting new video game that is under development at the organization they work for. Is this employee’s behavior ethical or unethical?Correct
Incorrect
Hint
Sharing information about a product under development with unauthorized individuals is unethical because it risks disclosing intellectual property and trade secrets, which are essential for an organization to maintain its economic advantage. Every employee has a fundamental responsibility to protect the organization’s data, reputation, and product plans from unauthorized disclosure. -
Question 53 of 77
53. Question
1 points‘An advanced persistent threat (APT) is usually well funded.’ Is this statement true or false?Correct
Incorrect
Hint
An Advanced Persistent Threat (APT) is described as a multi-phase, long-term, and stealthy operation against a specific target. Due to the high level of complexity and specialized skill required to remain undetected on a target’s systems for long periods, an APT is usually well-funded and typically targets organizations or nations for business or political reasons. -
Question 54 of 77
54. Question
1 pointsIn networking, what name is given to the identifier at both ends of a transmission to ensure that the right data is passed to the correct application?Correct
Incorrect
Hint
In networking, every application running on a device is assigned a specific port number. This identifier is used at both ends of a transmission to ensure that data is passed to the intended application rather than another process on the same device. -
Question 55 of 77
55. Question
1 points‘An employee does something as an organization representative with the knowledge of that organization and this action is deemed illegal. The organization is legally responsible for this action.’ Is this statement true or false?Correct
Incorrect
Hint
Organizations are required to abide by cybersecurity laws in the countries where they operate. If an employee breaks these laws while performing their duties as a representative of the organization, the company can be held legally responsible and may be punished. -
Question 56 of 77
56. Question
1 pointsWhat tool is used to lure an attacker so that an administrator can capture, log and analyze the behavior of the attack?Correct
Incorrect
Hint
Administrators can use a tool called a honeypot to lure an attacker so that their behavior can be analyzed. -
Question 57 of 77
57. Question
1 points‘A data breach does not impact the reputation of an organization.’ Is this statement true or false?Correct
Incorrect
Hint
A data breach can have a severe and negative long-term impact on an organization’s reputation that took years to build. Such incidents often lead to a loss of trust from customers, who may seek compensation or switch to more secure competitors, and can even cause employees to leave the organization. -
Question 58 of 77
58. Question
1 pointsWhich of the following certifications is aimed at high school and early college students, as well as anyone interested in a career change?Correct
Incorrect
Hint
The sources explicitly state that the Cisco Certified Support Technician (CCST) Cybersecurity certification is an entry-level credential aimed at high school and early college students, as well as anyone interested in a career change. Although this specific certification was not included in your list, it is the one that matches your description according to the provided material. -
Question 59 of 77
59. Question
1 pointsWhich of the following firewalls filters traffic based on source and destination data ports and filtering based on connection states?Correct
Incorrect
Hint
A Transport layer firewall is specifically designed to filter communications based on source and destination data ports, as well as the connection states of the network traffic. Other firewalls, like the Network layer firewall, focus instead on source and destination IP addresses. -
Question 60 of 77
60. Question
1 pointsWhich of the following are categories of security measures or controls? (Choose three correct answers)Correct
Incorrect
Hint
According to the McCumber Cube model, there are three primary categories of security measures used to protect data: Awareness, training and education (ensuring users can recognize and respond to threats), Technology (software and hardware solutions like firewalls), and Policy and procedure (administrative controls and established guidelines). While firewalls are a security measure, they are classified under the broader category of Technology. -
Question 61 of 77
61. Question
1 points‘A botnet can have tens of thousands of bots, or even hundreds of thousands.’ Is this statement true or false?Correct
Incorrect
Hint
A botnet consists of a group of internet-connected “bots” controlled by a malicious individual or group. These networks are highly scalable and can indeed contain tens of thousands, or even hundreds of thousands, of infected hosts. A real-world example is the Persirai botnet, which hijacked over 122,000 IP cameras to carry out large-scale attacks. -
Question 62 of 77
62. Question
1 pointsFor what purpose would a network administrator use the Nmap tool?Correct
Incorrect
Hint
Nmap allows an administrator to perform port scanning to probe computers and the network for open ports. This helps the administrator verify that network security policies are in place. -
Question 63 of 77
63. Question
1 pointsWhich of the following certifications does not expire or require periodic recertification and is geared towards post-secondary graduates and those interested in a career change?Correct
Incorrect
Hint
The Cisco Certified Support Technician (CCST) Cybersecurity is the entry-level certification that does not expire or require periodic recertification. It is specifically geared towards newcomers, including high school students, early college students, and those interested in a career change. While other certifications like CompTIA Security+ or EC Council CEH are mentioned, the sources do not attribute these specific non-expiring characteristics to them. -
Question 64 of 77
64. Question
1 pointsWhat type of attack uses zombies?Correct
Incorrect
Hint
A Distributed DoS (DDoS) attack is similar to a DoS attack but originates from multiple, coordinated sources. For example:- An attacker builds a network (botnet) of infected hosts called zombies, which are controlled by handler systems.
- The zombie computers will constantly scan and infect more hosts, creating more and more zombies.
- When ready, the hacker will instruct the handler systems to make the botnet of zombies carry out a DDoS attack.
-
Question 65 of 77
65. Question
1 pointsWhat is the purpose of a backdoor?Correct
Incorrect
Hint
A backdoor is a type of malware designed to bypass a system’s standard security measures. Its primary purpose is to allow hackers to gain unauthorized remote access to resources and issue system commands while working undetected in the background. -
Question 66 of 77
66. Question
1 pointsWhich of the following firewalls filters ports and system service calls on a single computer operating system?Correct
Incorrect
Hint
A host-based firewall is specifically designed to run on a single computer with the purpose of protecting that one device by filtering ports and system service calls on its operating system. Other firewall types, such as network layer or transport layer firewalls, typically focus on filtering external network traffic based on IP addresses or connection states. -
Question 67 of 77
67. Question
1 pointsWhat type of attack disrupts services by overwhelming network devices with bogus traffic?Correct
Incorrect
Hint
DDoS, or distributed denial of service, attacks are used to disrupt service by overwhelming network devices with bogus traffic. -
Question 68 of 77
68. Question
1 points‘Cryptocurrencies are handled on a centralized exchange.’ Is this statement true or false?Correct
Incorrect
Hint
Cryptocurrency transactions are recorded in a decentralized electronic ledger known as a blockchain. This system is self-managed and operates with no interference from third parties such as central banks or government entities, meaning it does not rely on a centralized exchange. -
Question 69 of 77
69. Question
1 pointsSeveral @Apollo employees have reported that the network access is slow. After investigation, the network administrator has learned that one employee downloaded a third-party scanning program for the printer. What type of malware might have been introduced that is causing slow performance of the network?Correct
Incorrect
Hint
Worms are malicious code that replicates by independently exploiting vulnerabilities in networks. Worms usually slow down networks. Whereas a virus requires a host program to run, worms can run by themselves. Other than the initial infection, worms no longer require user participation. After a worm affects a host, it is able to spread very quickly over the network. Worms share similar patterns. They all have an enabling vulnerability, a way to propagate themselves, and they all contain a payload. -
Question 70 of 77
70. Question
1 pointsWhat is an example of cyber kill chain?Correct
Incorrect
Hint
A cyber kill chain identifies the various stages of a cyber attack. According to the sources, an Advanced Persistent Threat (APT) is a prime example of this planned process, as it is a multi-phase, long-term, and stealthy operation directed at a specific target. These highly organized attacks move through specific steps to deploy customized malware and remain undetected on a system for business or political gain. -
Question 71 of 77
71. Question
1 pointsAn organization’s process of identifying and assessing risk with the goal of reducing these threats to an acceptable level is known as what?Correct
Incorrect
Hint
Risk management is the formal and continuous process of identifying and assessing risks to an organization. Its primary goal is to reduce the impact of threats and vulnerabilities to an acceptable level by weighing the impact of a threat against the cost of implementing security controls. -
Question 72 of 77
72. Question
1 pointsAn employee is laid off after fifteen years with the same organization. The employee is then hired by another organization within a week. In the new organization, the employee shares documents and ideas for products that the employee proposed at the original organization. Is the employee’s behavior ethical or unethical?Correct
Incorrect
Hint
Sharing documents and product ideas from a previous employer is unethical because it violates the protection of intellectual property and trade secrets, which are critical for an organization’s economic advantage. Professional ethics require employees to safeguard an organization’s data and reputation even after leaving, and using proprietary information to benefit a competitor is a breach of that responsibility. -
Question 73 of 77
73. Question
1 pointsWhich stage of the kill chain used by attackers focuses on the identification and selection of targets?Correct
Incorrect
Hint
It is the first stage, reconnaissance, of the the kill chain that focuses on the identification and selection of targets. -
Question 74 of 77
74. Question
1 pointsAn employee does something as a company representative with the knowledge of that company and this action is deemed illegal. The company would be legally responsible for this action. Is this statement true or false?Correct
Incorrect
Hint
According to the source material, organizations must abide by the cybersecurity laws of the countries where they operate. If an employee breaks these laws while performing their job as a representative of the organization, the company itself can be held legally responsible and may face punishment. Although you indicated the answer should be False, the provided text explicitly states that the organization may be punished for illegal actions taken by an employee during their work. -
Question 75 of 77
75. Question
1 pointsWhich term describes the private browser mode for Google Chrome?Correct
Incorrect
Hint
Each major web browser has a specific name for its private browsing mode. According to the sources, Google Chrome uses the term Incognito. When this mode is enabled, the browser disables cookies and deletes your browsing history and temporary internet files once the window or program is closed. -
Question 76 of 77
76. Question
1 pointsWhat type of infiltration method allows attackers to quietly capture two-step verification SMS messages sent to users in a Man-in-the-Mobile (MITMO) attack?Correct
Incorrect
Hint
A Man-in-the-Mobile (MITMO) attack is a specific variation of an On-Path attack. This infiltration method allows attackers to compromise a user’s mobile device to intercept and exfiltrate sensitive data, including two-step verification SMS messages. -
Question 77 of 77
77. Question
1 pointsA web server administrator is configuring access settings to require users to authenticate first before accessing certain web pages. Which requirement of information security is addressed through the configuration?Correct
Incorrect
Hint
Confidentiality ensures that data is accessed only by authorized individuals. Authentication will help verify the identity of the individuals.
