Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 126 pages
Exam (elaborations)

WGU D337 Objective Assessment | Internet of Things (IoT) and Infrastructure Question Bank | Questions and Verified Answers | 100% Correct | Updated 2026/2027.

Document preview thumbnail
Preview 4 out of 126 pages

WGU D337 Objective Assessment | Internet of Things (IoT) and Infrastructure Question Bank | Questions and Verified Answers | 100% Correct | Updated 2026/2027. Which type of malware creates a network of remotely controlled IoT de- vices unknown to the owners? A) Macro B) Cross-site scripting C) Embedded software exploitation D) Botnet Answer: D QUESTION What enables IoT devices to be infected by the Mirai malware? A) Default passwords B) Plaintext communication C) Stolen certificates D) Cloud storage Answer: A QUESTION A company develops a small tracker to be used in parcels to track progress via Global Positioning System (GPS). Testing reveals that the tracker has a Joint Test Action Group (JTAG) port on the circuit board that can be used to overwrite the firmware on the tracker and provide false location data. Which two Internet of Things Security Foundation (IoTSF) Best Practice Guide- lines (BPGs) should this company follow in its design process to ensure security from these forms of attack? Choose 2 answers. 1. Device secure boot 2. Credential management 3. Physical security 4. Application security A) 1, 3 B) 1, 2 C) 2, 3 D) 3, 4 Answer: A QUESTION A company hosts a database in a public cloud. Multiple IoT devices are compromised and used to generate a high volume of requests targeting the database to affect its availability. Which type of attack is this? A) Cross-site scripting B) Distributed denial of service (DDoS) C) Spear phishing D) Structured Query Language (SQL) injection Answer: B QUESTION A company developed an IoT smart photo frame that allows users to upload photos to their device using a web browser. Testing revealed that users can upload files onto the root filesystem. Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline (BPG) should this company follow in its design process to ensure filesystem permissions are set correctly? A) Device secure boot B) Physical security C) Secure operating system D) Application security Answer: C QUESTION A company uses IoT devices to capture data in the field and transmit it for central processing. The company plans to follow the Internet of Things Security Foundation's (IoTSF) Best Practice Guidelines (BPGs) to ensure that personal data is protected. Which IoTSF guideline should this company use? A) Device secure boot B) Physical security C) Securing software updates D) Application security Answer: D QUESTION A company develops an IoT-based security system. The system uses prox- imity sensors that communicate with a central gateway using a 433 MHZ radio signal. Testing reveals that the traffic can be sniffed with a software-defined radio, and an attacker could spoof the proximity sensor by copying the au- thentication details from the radio traffic. Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline (BPG) should this company follow in its design process to ensure the security of the radio data? A) Device secure boot B) Physical security C) Network connections D) Application security Answer: C QUESTION A company is developing a smart speaker. The company wants to review industry standards on device boot and operating system security to improve security in its devices. Which two resources should this company evaluate? Choose 2 answers. 1. Code of Practice 2. Best Practice Guidelines 3. Human-in-the-loop 4. Internet of Bodies A) 1, 2 B) 1, 3 C) 3, 4 D) 2, 4 Answer: A

Content preview

WGU D337 Objective Assessment | Internet of
Things (IoT) and Infrastructure Question Bank |
Questions and Verified Answers | 100% Correct |
Updated 2026/2027.

QUESTION
Which type of malware creates a network of remotely controlled IoT de- vices unknown to the
owners? A) Macro
B) Cross-site scripting
C) Embedded software exploitation
D) Botnet

Answer:
D



QUESTION
What enables IoT devices to be infected by the Mirai malware?
A) Default passwords
B) Plaintext communication
C) Stolen certificates
D) Cloud storage

Answer:
A



QUESTION
A company develops a small tracker to be used in parcels to track progress via Global
Positioning System (GPS). Testing reveals that the tracker has a Joint Test Action Group (JTAG)
port on the circuit board that can be used to overwrite the firmware on the tracker and provide
false location data.

,Which two Internet of Things Security Foundation (IoTSF) Best Practice Guide- lines (BPGs)
should this company follow in its design process to ensure security from these forms of attack?
Choose 2 answers.
1. Device secure boot
2. Credential management
3. Physical security
4. Application security
A) 1, 3
B) 1, 2
C) 2, 3
D) 3, 4

Answer:
A



QUESTION
A company hosts a database in a public cloud. Multiple IoT devices are compromised and used
to generate a high volume of requests targeting the database to affect its availability.
Which type of attack is this? A) Cross-site scripting
B) Distributed denial of service (DDoS)
C) Spear phishing
D) Structured Query Language (SQL) injection

Answer:
B




QUESTION
A company developed an IoT smart photo frame that allows users to upload photos to their
device using a web browser. Testing revealed that users can upload files onto the root filesystem.
Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline (BPG) should
this company follow in its design process to ensure filesystem permissions are set correctly?
A) Device secure boot
B) Physical security
C) Secure operating system
D) Application security

,Answer:
C



QUESTION
A company uses IoT devices to capture data in the field and transmit it for central processing.
The company plans to follow the Internet of Things Security Foundation's (IoTSF) Best Practice
Guidelines (BPGs) to ensure that personal data is protected.
Which IoTSF guideline should this company use? A) Device secure boot
B) Physical security
C) Securing software updates
D) Application security

Answer:
D


QUESTION
A company develops an IoT-based security system. The system uses prox- imity sensors that
communicate with a central gateway using a 433 MHZ radio signal. Testing reveals that the
traffic can be sniffed with a software-defined radio, and an attacker could spoof the proximity
sensor by copying the au- thentication details from the radio traffic.
Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline (BPG) should
this company follow in its design process to ensure the security of the radio data?
A) Device secure boot
B) Physical security
C) Network connections
D) Application security

Answer:
C




QUESTION
A company is developing a smart speaker. The company wants to review industry standards on
device boot and operating system security to improve security in its devices.
Which two resources should this company evaluate? Choose 2 answers.

, 1. Code of Practice
2. Best Practice Guidelines
3. Human-in-the-loop
4. Internet of Bodies
A) 1, 2
B) 1, 3

C) 3, 4
D) 2, 4

Answer:
A



QUESTION
Malware has infected several IoT devices in a company. These devices were using default
configurations.
What should the company do to prevent the malware from being installed?
A) Alter the port the devices use to communicate
B) Scan for unusual packets being sent to the devices
C) Change the devices' usernames and passwords
D) Install a firewall limiting communication to the devices

Answer:
C




QUESTION
Which blockchain feature in an IoT application ensures that a transaction is tamperproof once it
is validated? A) Decentralization
B) Immutability C) Auditability D) Resilience

Answer:
B

Document information

Uploaded on
January 1, 2026
Number of pages
126
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$16.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
ExcelAcademia2026
3.7
(385)
Sold
2282
Followers
1650
Items
9034
Last sold
1 day ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions