Because attackers break into systems for various reasons, it is important for information security professionals to understand how malicious hackers exploit systems and the probable reasons behind the attacks.
A True
...
Because attackers break into systems for various reasons, it is important for information security professionals to understand how malicious hackers exploit systems and the probable reasons behind the attacks.
A True
B False - ANSWER A
Information security refers to ________ or ________ information and information systems that use, store, and transmit information from unauthorized access, disclosure, alteration, and destruction.
A compiling / securing
B imaging / shielding
C duplicating / saving
D protecting / safeguarding - ANSWER D
Information is not the critical asset that organizations need to secure.
A False
B True - ANSWER A
________ is the part of a malware or an exploit that performs the intended malicious actions, which can include creating backdoor access to a victim's machine, damaging or deleting files, and data theft.
A Payload
B Vulnerability
C Exploit
D Hack value - ANSWER A
In a ________, the attacker exploits vulnerabilities in a computer application before the software developer can release a patch for them.
A payload
B zero-day attack
C hack value
D vulnerability - ANSWER B
Information security is defined as "a state of well-being of information and infrastructure in which the possibility of theft, tampering, and disruption of information and services is kept low and tolerable."
A False
B True - ANSWER B
Information security relies on four major elements: confidentiality, integrity, availability, and authenticity.
A True
B False - ANSWER B
________ is the assurance that the information is accessible only to those authorized to have access.
A Availability
B Confidentiality
C Authenticity
D Integrity - ANSWER B
Confidentiality controls include data classification, data encryption, and proper equipment disposal.
A False
B True - ANSWER B
________ is trustworthiness of data or resources in the prevention of improper and unauthorized changes—the assurance that information is sufficiently accurate for its purpose.
A Confidentiality
B Availability
C Authenticity
D Integrity - ANSWER D
Measures to maintain data integrity may include a checksum and access control.
A False
B True - ANSWER B
________ is the assurance that the systems responsible for delivering, storing, and processing information are accessible when required by authorized users.
A Integrity
B Confidentiality
C Availability
D Authenticity - ANSWER C
Measures to maintain data availability do not include redundant systems' disk array and clustered machines, antivirus software to stop worms from destroying networks, and distributed denial-of-service (DDoS) prevention systems.
A True
B False - ANSWER B
The major role of ________ is to confirm that a user is who he or she claims to be.
A availability
B integrity
C confidentiality
D authenticity - ANSWER D
Controls such as biometrics, smart cards, and digital certificates ensure the authenticity of data, transactions, communications, or documents.
A False
B True - ANSWER B
________ is a way to guarantee that the sender of a message cannot later deny having sent the message, and that the recipient cannot deny having received the message.
A Confidentiality
B Integrity
C Authenticity
D Non-repudiation - ANSWER D
Individuals and organizations use digital signatures to ensure non-repudiation.
A True
B False - ANSWER A
Hacking is defined as the exploitation of vulnerabilities of computer systems and networks.
A False
B True - ANSWER B
For attackers, motives are the same as:
A Ethics
B Ideas
C Values
D Goals - ANSWER D
The term information warfare or InfoWar refers to the use of information and communication technologies (ICT) for competitive advantages over an opponent.
A True
B False - ANSWER A
Information warfare is divided into ________ categories.
A five
B four
C six
D seven - ANSWER D
Each category of information warfare consists of both offensive and defensive strategies.
A True
B False - ANSWER A
Defensive Information Warfare refers to all strategies and actions to defend against attacks on ICT assets.
A True
B False - ANSWER A
Offensive Information Warfare refers to warfare against the assets of an opponent.
A True
B False - ANSWER A
________ techniques include creating viruses and worms, performing denial-of-service (DoS) attacks as well as establishing unauthorized remote access connections to a device using Trojans/backdoors, creating botnets, packet sniffing, phishing, and password cracking.
A Personal-hacking
B Network-hacking
C Server-hacking
D Intelligence-hacking - ANSWER B
Hackers are intelligent individuals with excellent computer skills—with the ability to create and explore the computer's software and hardware.
A False
B True - ANSWER B
All hacking is done with malicious intent.
A False
B True - ANSWER A
Which of the following is NOT a hacker category?
A Hacktivist
B Black Hats
C Green Hats
D White Hats - ANSWER C
________ are individuals who use their extraordinary computing skills for illegal or malicious purposes.
A Black Hats
B Gray Hats
C Hacktivists
D White Hats - ANSWER A
White Hats are also known as ________, who use their hacking for defensive purposes.
A Script Kiddies
B Criminals
C Hacktivists
D Penetration Testers - ANSWER D
________ are the individuals who work both offensively and defensively at various times.
A Hacktivists
B Gray Hats
C White Hats
D Script Kiddies - ANSWER B
Suicide hackers are similar to suicide bombers, who sacrifice their life for an attack and are thus not concerned with the consequences of their actions.
A True
B False - ANSWER A
Script Kiddies are skilled hackers who compromise systems by running scripts, tools, and software developed by real hackers.
A False
B True - ANSWER A
________ are individuals with a wide range of skills, motivated by religious or political beliefs to create fear of large-scale disruption of computer networks.
A Script Kiddies
B Black Hats
C Cyber Terrorists
D Hacktivists - ANSWER C
State-sponsored hackers are government agents who are tasked with trying to penetrate and gain top-secret information—and to damage information systems of other governments.
A True
B False - ANSWER A
Hacktivists use hacking to increase awareness of their social or political agendas, as well as themselves, in both the online and offline arenas.
A False
B True - ANSWER B
There are ________ phases of hacking.
A six
B four
C three
D five - ANSWER D
Which of the following is NOT a hacking phase?
A Gathering
B Gaining access
C Reconnaissance
D Scanning - ANSWER A
Ethical hackers perform hacking with the permission of the network or system owner and without the intention to cause harm.
A True
B False - ANSWER A
Ethical hacking is NOT necessary because organizations can counter attacks from malicious hackers through other means that assist in anticipating methods used by them to break into a system.
A False
B True - ANSWER A
Ethical hacking highlights the remedial actions and also reduces information and communications technology (ICT) costs by resolving those vulnerabilities.
A False
B True - ANSWER B
An ethical hacker does NOT need to know the penalties of unauthorized hacking activities associated with a network penetration test because the ethical hacker has permission to hack the network.
A False
B True - ANSWER A
Security experts categorize computer crimes into ________ categories.
A two
B three
C five
D four - ANSWER A
A ________ works together to perform a full-scale test covering all aspects of the network, as well as physical and system intrusion.
A tiger team
B recovery team
C red team
D blue team - ANSWER A
Information security controls prevent unwanted events from occurring and reduce risk to the organization's information assets.
A True
B False - ANSWER A
The basic security concepts critical to
[Show More]