1. True or False:You should always test your tools and techniques in your labenvironment
before running them against a customer network
Answer: True
2. A person who acts as an attacker and evaluates the security postu
...
1. True or False:You should always test your tools and techniques in your labenvironment
before running them against a customer network
Answer: True
2. A person who acts as an attacker and evaluates the security posture of acomputer network
for the purpose of minimizing risk.
Answer: Ethical Hacker
3. unauthorized user who attempts to or gains access to an information system.
Answer: Hacker
4. A weakness in an information system or in system security procedures, internal controls, or
implementation that could be exploited or triggered by athreat source.
Answer: Vulnerability
5. A person who hacks into a computer network with malicious intent or togain unauthorized
access.
Answer: Unethical Hacker
6. analyze the security posture of a network's or system's infrastructure in an effort to identify
and possibly exploit any security weaknesses found and then determine if a compromise is
possible.
Answer: Ethical Hacker's Goal
7. Security testing in which evaluators mimic real-world attacks in an attemptto identify ways
to circumvent the security features of an application, a system, or a network
Answer: Penetration Testing
8. An attack that exploits a previously unknown hardware, firmware, or soft-ware
vulnerability.
Answer: Zero-day Attack
9. Any circumstance or event that has the potential to adversely impact organizational
operations (including mission, functions, image, or reputation),organizational assets, or
individualsthrough an information system via unauthorized access, destruction, disclosure,
modification of information, and/ordenial of service.
Answer: Threat
10. A type of malicioussoftware that either encrypts orstealsthe target's dataand holds it for
ransom until the threat actor is paid.
Answer: Ransomwar
[Show More]