SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Information Security
Start Test
Study First
Subject
:
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. A ____ is designed to separate a nonsecured area from a secured area.
Mantrap
DNS Hijacking
LEAP
Two factor security
2. The ____ attack will slightly alter dictionary words by adding numbers to the end of the password - spelling words backward - slightly misspelling words - or including special characters such as @ - $ - ! - or %.
NAT
Root
Hybird
Cyberbullying
3. A user or a process functioning on behalf of the user that attempts to access an object is known as the ____.
Identity management
Subject
Swiss Cheese
Symmetric encryption
4. The protection of information from accidental or intentional misuse by persons inside or outside an organization
Authentication request
Information security
Bluejacking
Chain
5. Attacker sets up a rogue DNS server that responds to legitimate requests with IP addresses for malicious or non-existent websites.
Buffer Overflow
Drive-by Download
Electronic eavesdropping
DNS Hijacking
6. Keeps a record of the state of a connection between an internal computer and an external device and then makes decisions based on the connection as well as the conditions.
LDAP injection
Sniffer
Stateful packet filtering
Standard biometrics
7. A list of statements used by a router to permit or deny the forwarding of traffic on a network based on one or more criteria.
ACL (Access Control List)
Character
UDP Flood
Password Crackers
8. A ____ encrypts all data that is transmitted between the remote device and the network.
OAuth
VPN
Router
Firewalls
9. A ____ is a computer program or a part of a program that lies dormant until it is triggered by a specific logical event.
VPN
Logic Bomb
IEEE 802.1x
Man-made Threat
10. Scrambles information into an alternative form that requires a key or password to decrypt the information
Reverse proxy
Challenge
Encryption
Extreme Humidity
11. A key encryption technique for wireless networks that uses keys both to authenticate network clients and to encrypt data in transit.
Environmental Threat
WEP (Wired Equivalent Privacy)
Malicious code
Standard biometrics
12. A ____ is a series of instructions that can be grouped together as a single command and are often used to automate a complex set of tasks or a repeated series of tasks.
DAP
Cognitive biometrics
Zone transfer
Macro
13. A framework for transporting authentication protocols instead of the authentication protocol itself.
EAP
Flashing
Backup frequency
Trojan-horse virus
14. ____ involves horizontally separating words - although it is still readable by the human eye.
Distributed
External Threat
Word Splitting
Eavesdropping Attack
15. Malicious or accidental threats by employees. (ex. door to secure building left propped open.)
Rainbow Tables
Internal Threat
Clickjacking
Authentication
16. A threat that originates from outside the company. (ex. power failure.)
Adware
Account expiration
Natural Threat
External Threat
17. A firewall capable of monitoring a data stream from end to end.
Cyberstalking/Harassment
Blacklisting Software
DNS Hijacking
Stateful Firewall
18. Forging of the return address on an e-mail so that the e-mail message appears to come from someone other than the actual sender. This is not a virus but rather a way by which virus authors conceal their identities as they send out viruses.
Spoofing
Hacker
SYN Flood
Symmetric encryption
19. A security attack in which an internet user sends commands to another internet user's machine that cause the screen to fill with garbage characters. A flashing attack causes the user to terminate her session.
Flashing
Floor Guard
Trojan-horse virus
DAP
20. If a password is communicated across a network to log on to a remote system - it is vulnerable to ______.
Backup frequency
Geometric variance
Bluejacking
Electronic eavesdropping
21. Mass mailings sent as Instant Messages to users. Often these can feature links to explicit porn sites.
Replay
Bluesnarfing
Smurf Attack
Spimming
22. The ____ model is the least restrictive.
Mantrap
DAC
Authentication request
DNS
23. A person who uses his knowledge of operating systems and utilities to intentionally damage or destroy data or systems.
Authorization
Cracker
Bluejacking
WEP (Wired Equivalent Privacy)
24. Countless requests for a TCP connection sent to an FTP server - web server - or system attached to the internet.
Fake Antivirus
SYN Flood
DNS Log
Backup frequency
25. If a user typically accesses his bank's Web site from his home computer on nights and weekends - then this information can be used to establish a ____ of typical access.
DNS Log
Dwell Time
computer footprint
Stateful packet filtering
26. An authentication system developed by the Massachusetts Institute of Technology (MIT) and used to verify the identity of networked users.
Protocol analyzer
Kerberos
Router
Environmental Threat
27. A database - organized as a hierarchy or tree - of the name of each site on the Internet and its corresponding IP number.
DNS
Zone transfer
Spyware
Hardware Attack
28. Although brute force and dictionary attacks were once the primary tools used by attackers to crack an encrypted password - today attackers usually prefer ____.
RADIUS
Bluejacking
Rainbow Tables
Digital Certificate
29. How many past backups you keep - what you did on your machine etc.
Spoofing
History
MPack
Phishing
30. An attack that intercepts legitimate communication between two victims and captures - analyzes and possibly alters the data packets before sending a fake reply.
Testing
Smurf Attack
Man-in-the-Middle Attack
Access Control
31. In the context of SSL encryption - a message issued from the client to the server that contains information about what level of security the client's browser is capable of accepting and what type of encryption the client's browser can decipher (for e
Biometrics
Client_Hello
Flashing
Extreme temperatures
32. An attack that sends unsolicited messages to Bluetooth-enabled devices.
Floor Guard
DNS poisoning
Man-made Threat
Bluejacking
33. Requires mutual authentication used for WLAN encryption using Cisco client software.
Rogue
Bluesnarfing
LEAP
WEP (Wired Equivalent Privacy)
34. An operating system that has been reengineered so that it is designed to be secure from the ground up is known as a ____.
Operation
Biometrics
Trusted OS
ACL
35. An AP that is set up by an attacker.
ACL (Access Control List)
Replay
Evil Twin
Black Hat
36. When a device receives a beacon frame from an AP - the device then sends a frame known as a ____ frame to the AP.
Chain
Shoulder Surfing
Association request
Wireless security
37. Sending high volumes of UDP requests to a target.
Man-in-the-Middle Attack
UDP Flood
Replay Attack
Port Scanner
38. A standard that provides a predefined framework for hardware and software developers who need to implement access control in their devices or applications.
Electronic Vandal
Boot
Access Control
Black Hat
39. Form of phishing that targets wealthy individuals.
Open Port
Floor Guard
CHAP (Challenge Handshake Authentication Protocol)
Whaling
40. An authentication protocol that operates over PPP and that requires the authenticator to take the first step by offering the other computer a challenge. The requestor responds by combining the challenge with its password - encrypting the new string o
Content filtering
CHAP (Challenge Handshake Authentication Protocol)
OAuth
Password
41. In a ____ infection - a virus injects itself into the program's executable code instead of at the end of the file.
Client_Hello
Smurf Attack
Bluejacking
Swiss Cheese
42. A random string of text issued from one computer to another in some forms of authentication. It is used - along with the password (or other credential) - in a response to verify the computer's credentials.
Geometric variance
TCP/IP
Shoulder Surfing
Challenge
43. Requires that if the fraudulent application of a process could potentially result in a breach of security - then the process should be divided between two or more individuals.
Separation of duties
Token
EAP
Natural Threat
44. A program or device that can monitor data traveling over a network. Sniffers can show - all the data being transmitted over a network - including passwords and sensitive information - tends to be a favorite weapon in the hacker's arsenal
Backup frequency
Flashing
Sniffer
Wireless VLANs
45. It accepts spoken words for input as if they had been typed on the keyboard.
Phishing
Fake Antivirus
Reverse proxy
Speech recognition
46. An independently rotating large cups affixed to the top of a fence prevent the hands of intruders from gripping the top of a fence to climb over it.
Rainbow Tables
Challenge
Chain
Roller barrier
47. Use multiple infrared beams that are aimed across a doorway and positioned so that as a person walks through the doorway some beams are activated.
Tailgate sensors
Dwell Time
Human memory
Wireless security
48. A technique for crashing by sending too much data to the buffer in a comuter's memory
Hacker
Hardware Attack
Trojan-horse virus
Buffer Overflow
49. Magnetic tape drives - hard drives - optical media (CD or DVD) - solid-state media (flash drives or SD)
Denial of service attack
EAP
Fake Antivirus
Media for backups
50. Hurricanes - tornadoes - flooding and earthquakes are all examples of this.
Natural Threat
Bluejacking
Backup scope
Cipher locks