Test your basic knowledge |

Information Security

Subject : it-skills
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Provides a greater degree of security by implementing port-based authentication.






2. An attack that uses multiple computers on disparate networks to launch an attack from multiple hosts simultaneously.






3. Can use fingerprints or other unique characteristics of a person's face - hands - or eyes (irises and retinas) to authenticate a user.






4. Sending extremely critcal - derogatory - and oftern vulgar email messages or newsgroup postings to other user on the internet or online services






5. A threat that originates from outside the company. (ex. power failure.)






6. There are almost ____ different Microsoft Windows file extensions that could contain a virus.






7. How often you perform your backups (cost-benefit analysis of backing up)






8. Can be accidental or intentional - internal or external. (ex. back-hoe operator performing legitimate construction cuts cables leading into a facility.)






9. How many past backups you keep - what you did on your machine etc.






10. Small electronic devices that change user passwords automatically






11. An attacker redirects an IP address to the MAC address of a computer that is not the intended recipient.






12. A ____ is a computer typically located in an area with limited security and loaded with software and data files that appear to be authentic - yet they are actually imitations of real data files.






13. Legitimate users who purposely or accidentally misuse their access to the environment and cause some kind of business-affecting incident <tell people passwords - etc>






14. A program or device that can monitor data traveling over a network. Sniffers can show - all the data being transmitted over a network - including passwords and sensitive information - tends to be a favorite weapon in the hacker's arsenal






15. Software written with malicious intent to cause annoyance or damage - need to attach to something (such as an executable file)






16. ____ involves horizontally separating words - although it is still readable by the human eye.






17. Pretending to be another person.






18. If a user typically accesses his bank's Web site from his home computer on nights and weekends - then this information can be used to establish a ____ of typical access.






19. ____ IP addresses are IP addresses that are not assigned to any specific user or organization.






20. An attacker slips through a secure area following a legitimate employee.






21. An AP that is set up by an attacker.






22. A private key and public key






23. Indicates when an account is no longer active.






24. A means of managing and presenting computer resources by function without regard to their physical layout or location.






25. Lock - conduit - card key - video equipment - secured guard






26. An attempt to discover an encryption key or password by trying numerous possible character combinations. usually - a brute force attack is performed rapidly by a program designed for that purpose.






27. Although brute force and dictionary attacks were once the primary tools used by attackers to crack an encrypted password - today attackers usually prefer ____.






28. A system of security tools that is used to recognize and identify data that is critical to the organization and ensure that it is protected.






29. The X.500 standard defines a protocol for a client application to access an X.500 directory called ____.






30. Peering over the shoulder of someone to see the contents on that person's computer or cell phone screen.






31. The most restrictive access control model is ____.






32. Typically used on home routers that allow multiple users to share one IP address received from an Internet service provider (ISP).






33. The protection of information from accidental or intentional misuse by persons inside or outside an organization






34. An attack that intercepts legitimate communication between two victims and captures - analyzes and possibly alters the data packets before sending a fake reply.






35. Sifting through a company's garbage to find information to help break into their computers






36. A ____ is a series of instructions that can be grouped together as a single command and are often used to automate a complex set of tasks or a repeated series of tasks.






37. These attacks may allow an attacker to construct LDAP statements based on user input statements.






38. Attacker sets up a rogue DNS server that responds to legitimate requests with IP addresses for malicious or non-existent websites.






39. Hurricanes - tornadoes - flooding and earthquakes are all examples of this.






40. A secret combination of letters - numbers - and/or characters that only the user should know.






41. A random string of text issued from one computer to another in some forms of authentication. It is used - along with the password (or other credential) - in a response to verify the computer's credentials.






42. During RADIUS authentication the AP - serving as the authenticator that will accept or reject the wireless device - creates a data packet from this information called the ____.






43. A technique for crashing by sending too much data to the buffer in a comuter's memory






44. Countless requests for a TCP connection sent to an FTP server - web server - or system attached to the internet.






45. An authentication system developed by the Massachusetts Institute of Technology (MIT) and used to verify the identity of networked users.






46. A commonly used technique by pornography sites where a user gets "locked" in a web site.






47. Hides inside other software - usually as an attachment or a downloadable file






48. The most popular attack toolkit - which has almost half of the attacker toolkit market is ____.






49. The Chinese government uses _____ to prevent Internet content that it considers unfavorable from reaching its citizenry.






50. Scrambles information into an alternative form that requires a key or password to decrypt the information