SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Information Security
Start Test
Study First
Subject
:
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. The protection of information from accidental or intentional misuse by persons inside or outside an organization
Information security
Logic Bomb
Access Control
Mandatory Access Control
2. Indicates when an account is no longer active.
Account expiration
Cognitive biometrics
Kerberos
Honeypot
3. If a password is communicated across a network to log on to a remote system - it is vulnerable to ______.
Electronic eavesdropping
TACACS
Trojan-horse virus
Password
4. Can also capture transmissions that contain passwords.
Mouse Trapping
Scatternet
Evil Twin
Protocol analyzer
5. A secret combination of letters - numbers - and/or characters that only the user should know.
DNS
Extreme Humidity
Stateless Firewall
Password
6. A password-protected and encrypted file that holds an individual's identification information - including a public key and a private key. The individual's public key is used to verify the sender's digital signature - and the private key allows the in
Digital Certificate
ICMP Flood
Orphaned
Open Port
7. A ____ is a set of software tools used by an attacker to hide the actions or presence of other types of malicious software - such as Trojans - viruses - or worms.
Router
Replay
Orphaned
Rootkit
8. To create a rainbow table - each ____ begins with an initial password that is encrypted.
Scatternet
Load balancing
Extreme temperatures
Chain
9. A hacker who exposes security flaws in applications and operating systems so manufacturers can fix them before they become widespread problems.
Stateless Firewall
Testing
White Hat
DLP
10. The time it takes for a key to be pressed and then released.
Honeynet
Dwell Time
Mandatory Access Control
Information security
11. An independently rotating large cups affixed to the top of a fence prevent the hands of intruders from gripping the top of a fence to climb over it.
Hardware Attack
Token
Firewalls
Roller barrier
12. ____ IP addresses are IP addresses that are not assigned to any specific user or organization.
Private
Sniffer
Cyberstalking/Harassment
OAuth
13. An authentication service commonly used on UNIX devices that communicates by forwarding user authentication information to a centralized server.
TACACS
Honeynet
Distributed storage
Whaling
14. How many past backups you keep - what you did on your machine etc.
History
Human memory
Wireless VLANs
Private
15. Users who access a Web server are usually restricted to the ____ directory.
Root
Role
Load balancing
Geometric variance
16. Hides inside other software - usually as an attachment or a downloadable file
Trojan-horse virus
Cyber Theft
Logic Bomb
Character
17. How often you perform your backups (cost-benefit analysis of backing up)
ACL
Rainbow Tables
Backup frequency
DNS Hijacking
18. A standard that provides a predefined framework for hardware and software developers who need to implement access control in their devices or applications.
Private
Cyber Theft
Access Control
Speech recognition
19. The signal from an ID badge is detected as the owner moves near a ____ - which receives the signal.
Firewall logs
Distributed
Proximity reader
Zone transfer
20. A person who uses his knowledge of operating systems and utilities to intentionally damage or destroy data or systems.
Cracker
DNS poisoning
LEAP
Flaming
21. The action that is taken by the subject over the object is called a ____.
Rainbow Tables
Fencing
Operation
Packet tampering
22. These attacks may allow an attacker to construct LDAP statements based on user input statements.
LDAP injection
Account expiration
Dwell Time
External Threat
23. Forging of the return address on an e-mail so that the e-mail message appears to come from someone other than the actual sender. This is not a virus but rather a way by which virus authors conceal their identities as they send out viruses.
Spoofing
Boot
Authentication request
Cyberbullying
24. Magnetic tape drives - hard drives - optical media (CD or DVD) - solid-state media (flash drives or SD)
IEEE 802.1x
Phishing
Offline cracking
Media for backups
25. A method for confirming users' identities
Authentication
Packet tampering
Two factor security
History
26. A user under Role Based Access Control can be assigned only one ____.
Role
Federated identity management
Two factor security
Physical security
27. An authentication protocol that operates over PPP and that requires the authenticator to take the first step by offering the other computer a challenge. The requestor responds by combining the challenge with its password - encrypting the new string o
Scatternet
Security
CHAP (Challenge Handshake Authentication Protocol)
Protocol analyzer
28. Set of rules that allow or deny traffic
Association request
Operation
Packet filtering
MPack
29. Attack computer systems by transmitting a virus hoax - with a real virus attached. By masking the attack in a seemingly legitimate message - unsuspecting users more readily distribute the message and send the attack on to their co-workers and friends
Hoaxes
Zone transfer
Evil Twin
UDP Flood
30. Using one's social skills to trick people into revealing access credentials or other information valuable to the attacker. <dumpster diving - or looking through people's trash - etc>
Cyber Theft
Social engineering
Man-in-the-Middle Attack
Physical security
31. A ____ encrypts all data that is transmitted between the remote device and the network.
Biometrics
VPN
Association request
Subject
32. In the context of SSL encryption - a message issued from the client to the server that contains information about what level of security the client's browser is capable of accepting and what type of encryption the client's browser can decipher (for e
DNS Log
Client_Hello
CHAP (Challenge Handshake Authentication Protocol)
GIF Layering
33. A form of filtering that blocks only sites specified as harmful.
White box
Tailgate sensors
Malicious Insiders
Blacklisting Software
34. A ____ can block malicious content in "real time" as it appears without first knowing the URL of a dangerous site.
Locking Cabinets
Evil Twin
Web security gateway
Cognitive biometrics
35. A ____ is a series of instructions that can be grouped together as a single command and are often used to automate a complex set of tasks or a repeated series of tasks.
Sniffer
Macro
Media for backups
Packet tampering
36. A variety of threats such as viruses - worms - and Trojan horses
OAuth
Malicious code
ACL
Federated identity management
37. Sending high volumes of UDP requests to a target.
DMS (Demilitarized Zone)
Digital Certificate
Scatternet
UDP Flood
38. ____ is an image spam that is divided into multiple images.
GIF Layering
Information security
Testing
DNS poisoning
39. The ____ attack will slightly alter dictionary words by adding numbers to the end of the password - spelling words backward - slightly misspelling words - or including special characters such as @ - $ - ! - or %.
Hybird
Cloud computing
Script Kiddie
Spyware
40. The set of letters - symbols - and characters that make up the password are known as a ____ set.
Character
War Driving
Rainbow Tables
Biometrics
41. Countless requests for a TCP connection sent to an FTP server - web server - or system attached to the internet.
Insiders
SYN Flood
Association request
70
42. ____ involves horizontally separating words - although it is still readable by the human eye.
Resident
Loop Protection
Word Splitting
Operation
43. ____ uses "speckling" and different colors so that no two spam e-mails appear to be the same.
Clickjacking
Scatternet
Geometric variance
Speech recognition
44. Can be used to determine whether new IP addresses are attempting to probe the network.
Firewall logs
Identification
Reverse proxy
Media for backups
45. Legitimate users who purposely or accidentally misuse their access to the environment and cause some kind of business-affecting incident <tell people passwords - etc>
Ciphertext
Insiders
Protocol analyzer
Cracker
46. A ____ is a computer program or a part of a program that lies dormant until it is triggered by a specific logical event.
Access Control
CHAP (Challenge Handshake Authentication Protocol)
Logic Bomb
Character
47. A system of security tools that is used to recognize and identify data that is critical to the organization and ensure that it is protected.
Encryption
Scatternet
DLP
Boot
48. Considered a more "real world" access control than the other models because the access is based on a user's job function within an organization.
Cyberstalking/Harassment
Physical security access control measures
Role Based Access Control
MPack
49. ____ is an attack in which an attacker attempts to impersonate the user by using his session token.
Malicious code
CCTV
Session hijacking
Boot
50. ____ can be prewired for electrical power as well as wired network connections.
Physical security
Boot
Locking Cabinets
Three-Way Handshake