SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Information Security
Start Test
Study First
Subject
:
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. A method for confirming users' identities
Honeynet
Dumpster Diving
WEP (Wired Equivalent Privacy)
Authentication
2. A program or device that can monitor data traveling over a network. Sniffers can show - all the data being transmitted over a network - including passwords and sensitive information - tends to be a favorite weapon in the hacker's arsenal
LEAP
Cipher locks
Social engineering
Sniffer
3. Can be accidental or intentional - internal or external. (ex. back-hoe operator performing legitimate construction cuts cables leading into a facility.)
Spimming
Password Crackers
DNS Hijacking
Man-made Threat
4. Requires mutual authentication used for WLAN encryption using Cisco client software.
Fake Antivirus
Replay
LEAP
Vishing
5. Indicates when an account is no longer active.
Account expiration
Impersonation
Vishing
Zone transfer
6. An independently rotating large cups affixed to the top of a fence prevent the hands of intruders from gripping the top of a fence to climb over it.
DNS Hijacking
Roller barrier
Rootkit
Reverse proxy
7. The breadth of your back-up (what types of files you will back up-media - documents - OS - etc)
Backup scope
Tailgating
Word Splitting
Worm
8. Content filtering - encryption - firewalls
Prevention and detection
Reverse proxy
Physical security
Root
9. Mass mailings sent as Instant Messages to users. Often these can feature links to explicit porn sites.
Spimming
Clickjacking
Separation of duties
Information security
10. These accounts are user accounts that remain active after an employee has left an organization.
Port Scanner
ACL
Orphaned
Loop Protection
11. Although brute force and dictionary attacks were once the primary tools used by attackers to crack an encrypted password - today attackers usually prefer ____.
Sniffer
Rainbow Tables
LEAP
Loop Protection
12. A ____ does not serve clients - but instead routes incoming requests to the correct server.
Separation of duties
Mandatory Access Control
Reverse proxy
Identification
13. A type of virus that spreads itself - not only from file to file - but also from computer to computer - do not need to attach to anything to spread and can tunnel themselves into computers.
Flashing
Physical security access control measures
Worm
Trojan-horse virus
14. ____ is an attack in which an attacker attempts to impersonate the user by using his session token.
Session hijacking
Replay
Clickjacking
Wireless VLANs
15. To create a rainbow table - each ____ begins with an initial password that is encrypted.
Chain
DNS Log
Swiss Cheese
Dumpster Diving
16. Use multiple infrared beams that are aimed across a doorway and positioned so that as a person walks through the doorway some beams are activated.
Stateful packet filtering
Vishing
Cognitive biometrics
Tailgate sensors
17. ____ are combination locks that use buttons which must be pushed in the proper sequence to open the door.
TACACS
Cipher locks
Rootkit
Locking Cabinets
18. Peering over the shoulder of someone to see the contents on that person's computer or cell phone screen.
Hoaxes
DNS Log
Cyberstalking/Harassment
Shoulder Surfing
19. Due to the limitations of online guessing - most password attacks today use ____.
Offline cracking
Open Port
Hash encoding
Authentication
20. Forging of the return address on an e-mail so that the e-mail message appears to come from someone other than the actual sender. This is not a virus but rather a way by which virus authors conceal their identities as they send out viruses.
Speech recognition
Spoofing
Subject
Server-Side
21. There are almost ____ different Microsoft Windows file extensions that could contain a virus.
External Threat
Eavesdropping Attack
Boot
70
22. Fingerprints and patterns
BioMetric devices
Internal Threat
Packet tampering
Virus
23. A ____ is a computer program or a part of a program that lies dormant until it is triggered by a specific logical event.
Data
Two factor security
CCTV
Logic Bomb
24. A means of managing and presenting computer resources by function without regard to their physical layout or location.
Virtualization
War Driving
What is asymmetic encryption?
DAC
25. Often used for managing user access to one or more systems.
Malicious code
Router
Rule Based Access Control
Stateful Firewall
26. If a user typically accesses his bank's Web site from his home computer on nights and weekends - then this information can be used to establish a ____ of typical access.
Eavesdropping Attack
BioMetric devices
Authentication
computer footprint
27. A user or a process functioning on behalf of the user that attempts to access an object is known as the ____.
Boot
Content-Filtering Firewall
Spyware
Subject
28. Web application attacks are considered ____ attacks.
Bluejacking
Server-Side
LDAP injection
ICMP Flood
29. ____ IP addresses are IP addresses that are not assigned to any specific user or organization.
Testing
Private
Packet tampering
Tailgating
30. A ____ virus is loaded into random access memory (RAM) each time the computer is turned on and infects files that are opened by the user or the operating system.
ACL (Access Control List)
Resident
Cyberstalking/Harassment
Cybercriminals
31. Could become a key element in authentication in the future.
Worm
70
Honeypot
Cognitive biometrics
32. The perimeter of a protected - internal network where users - both authorized and unauthorized - from external networks can attempt to access it. Firewalls and IDS/IPS systems are typically placed in the DMZ.
DMS (Demilitarized Zone)
Trojan-horse virus
Session hijacking
Challenge
33. The time it takes for a key to be pressed and then released.
SYN Flood
CHAP (Challenge Handshake Authentication Protocol)
Drive-by Download
Dwell Time
34. Forwards packets across computer networks.
Role
Roller barrier
Router
Black Hat
35. The most popular attack toolkit - which has almost half of the attacker toolkit market is ____.
MPack
Hash encoding
Extreme temperatures
DNS Hijacking
36. Motivated by a desire to cause social change - trying to get media attention by disrupting services - or promoting a message by changing information on public websites.
Buffer Overflow
Password Crackers
Phishing
Electronic Activist (hacktivist)
37. Pretending to be another person.
Malicious Insiders
Scatternet
Token
Impersonation
38. A feature that controls a device's tolerance for unanswered service requests and helps to prevent a DoS attack.
ARP Poisoning
Floor Guard
Drive-by Download
Protocol analyzer
39. An attack that targets a computer's physical components and peripherals. (ie. hard disk - motherboard - cabling - etc.)
Natural Threat
Federated identity management
Trojan-horse virus
Hardware Attack
40. Can use fingerprints or other unique characteristics of a person's face - hands - or eyes (irises and retinas) to authenticate a user.
Spimming
Biometrics
Malicious code
Standard biometrics
41. A variety of threats such as viruses - worms - and Trojan horses
Media for backups
Malicious code
GIF Layering
Cracker
42. An attack that intercepts legitimate communication between two victims and captures - analyzes and possibly alters the data packets before sending a fake reply.
Content-Filtering Firewall
Man-in-the-Middle Attack
NAT
Honeypot
43. A private key and public key
Root
What is asymmetic encryption?
Honeynet
Tailgate sensors
44. An attack that accesses unauthorized information from a wireless device through a Bluetooth connection - often between cell phones and laptop computers.
Bluejacking
Bluesnarfing
Identity Theft
Ciphertext
45. A technology that can help to evenly distribute work across a network.
Man-made Threat
Authorization
Load balancing
LEAP
46. Using video cameras to transmit a signal to a specific and limited set of receivers is called ____.
Resident
CCTV
Man-made Threat
Packet tampering
47. An attacker slips through a secure area following a legitimate employee.
Macro
Mantrap
Tailgating
Zone transfer
48. A form of filtering that blocks only sites specified as harmful.
Blacklisting Software
Wireless security
Macro
SSO
49. The process of giving someone permission to do or have something
Chain
Flashing
Authorization
Stateful packet filtering
50. A standard that provides a predefined framework for hardware and software developers who need to implement access control in their devices or applications.
Electronic eavesdropping
SYN Flood
Packet tampering
Access Control