WGU D337 - Internet Of Things and Infrastructure Exam Prep
WGU D337 - INTERNET OF THINGS AND INFRASTRUCTURE EXAM PREP
TEST BANK NEWEST 2026/2027 ACTUAL EXAM COMPLETE 400
QUESTIONS AND CORRECT DETAILED ANSWERS (VERIFIED ANSWERS)
|ALREADY GRADED A+||BRAND NEW VERSION!!
Which two stakeholder groups contribute to addressing the challenges of IoT
security?
Choose 2 answers.
1. Governments
2. Universities
3. Standards development bodies
4. Law enforcement organizations
A) 2, 3
B) 1, 2
C) 1, 3
D) 1, 4
C
Which two issues can result from global deployment of insecurely configured IoT
devices?
Choose 2 answers.
1. Devices are compromised to provide fake data
2. Device hardware is attacked until destroyed
3. Devices are compromised to form botnets
4. Device software is built into a sandbox environment
A) 2, 3
1|Page
, WGU D337 - Internet Of Things and Infrastructure Exam Prep
B) 1, 3
C) 3, 4
D) 2, 4
B
Which type of malware creates a network of remotely controlled IoT devices
unknown to the owners?
A) Macro
B) Cross-site scripting
C) Embedded software exploitation
D) Botnet
D
What enables IoT devices to be infected by the Mirai malware?
A) Default passwords
B) Plaintext communication
C) Stolen certificates
D) Cloud storage
A
A company develops a small tracker to be used in parcels to track progress via
Global Positioning System (GPS). Testing reveals that the tracker has a Joint Test
Action Group (JTAG) port on the circuit board that can be used to overwrite the
firmware on the tracker and provide false location data.
Which two Internet of Things Security Foundation (IoTSF) Best Practice Guidelines
(BPGs) should this company follow in its design process to ensure security from
these forms of attack?
Choose 2 answers.
2|Page
, WGU D337 - Internet Of Things and Infrastructure Exam Prep
1. Device secure boot
2. Credential management
3. Physical security
4. Application security
A) 1, 3
B) 1, 2
C) 2, 3
D) 3, 4
A
A company develops an IoT-based security system. The system uses proximity
sensors that communicate with a central gateway using a 433 MHZ radio signal.
Testing reveals that the traffic can be sniffed with a software-defined radio, and an
attacker could spoof the proximity sensor by copying the authentication details
from the radio traffic.
Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline
(BPG) should this company follow in its design process to ensure the security of
the radio data?
A) Device secure boot
B) Physical security
C) Network connections
D) Application security
C
A company hosts a database in a public cloud. Multiple IoT devices are
compromised and used to generate a high volume of requests targeting the
database to affect its availability.
Which type of attack is this?
3|Page
, WGU D337 - Internet Of Things and Infrastructure Exam Prep
A) Cross-site scripting
B) Distributed denial of service (DDoS)
C) Spear phishing
D) Structured Query Language (SQL) injection
B
A company developed an IoT smart photo frame that allows users to upload
photos to their device using a web browser. Testing revealed that users can upload
files onto the root filesystem.
Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline
(BPG) should this company follow in its design process to ensure filesystem
permissions are set correctly?
A) Device secure boot
B) Physical security
C) Secure operating system
D) Application security
C
A company uses IoT devices to capture data in the field and transmit it for central
processing. The company plans to follow the Internet of Things Security
Foundation's (IoTSF) Best Practice Guidelines (BPGs) to ensure that personal data
is protected.
Which IoTSF guideline should this company use?
A) Device secure boot
B) Physical security
C) Securing software updates
D) Application security
D
4|Page
WGU D337 - INTERNET OF THINGS AND INFRASTRUCTURE EXAM PREP
TEST BANK NEWEST 2026/2027 ACTUAL EXAM COMPLETE 400
QUESTIONS AND CORRECT DETAILED ANSWERS (VERIFIED ANSWERS)
|ALREADY GRADED A+||BRAND NEW VERSION!!
Which two stakeholder groups contribute to addressing the challenges of IoT
security?
Choose 2 answers.
1. Governments
2. Universities
3. Standards development bodies
4. Law enforcement organizations
A) 2, 3
B) 1, 2
C) 1, 3
D) 1, 4
C
Which two issues can result from global deployment of insecurely configured IoT
devices?
Choose 2 answers.
1. Devices are compromised to provide fake data
2. Device hardware is attacked until destroyed
3. Devices are compromised to form botnets
4. Device software is built into a sandbox environment
A) 2, 3
1|Page
, WGU D337 - Internet Of Things and Infrastructure Exam Prep
B) 1, 3
C) 3, 4
D) 2, 4
B
Which type of malware creates a network of remotely controlled IoT devices
unknown to the owners?
A) Macro
B) Cross-site scripting
C) Embedded software exploitation
D) Botnet
D
What enables IoT devices to be infected by the Mirai malware?
A) Default passwords
B) Plaintext communication
C) Stolen certificates
D) Cloud storage
A
A company develops a small tracker to be used in parcels to track progress via
Global Positioning System (GPS). Testing reveals that the tracker has a Joint Test
Action Group (JTAG) port on the circuit board that can be used to overwrite the
firmware on the tracker and provide false location data.
Which two Internet of Things Security Foundation (IoTSF) Best Practice Guidelines
(BPGs) should this company follow in its design process to ensure security from
these forms of attack?
Choose 2 answers.
2|Page
, WGU D337 - Internet Of Things and Infrastructure Exam Prep
1. Device secure boot
2. Credential management
3. Physical security
4. Application security
A) 1, 3
B) 1, 2
C) 2, 3
D) 3, 4
A
A company develops an IoT-based security system. The system uses proximity
sensors that communicate with a central gateway using a 433 MHZ radio signal.
Testing reveals that the traffic can be sniffed with a software-defined radio, and an
attacker could spoof the proximity sensor by copying the authentication details
from the radio traffic.
Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline
(BPG) should this company follow in its design process to ensure the security of
the radio data?
A) Device secure boot
B) Physical security
C) Network connections
D) Application security
C
A company hosts a database in a public cloud. Multiple IoT devices are
compromised and used to generate a high volume of requests targeting the
database to affect its availability.
Which type of attack is this?
3|Page
, WGU D337 - Internet Of Things and Infrastructure Exam Prep
A) Cross-site scripting
B) Distributed denial of service (DDoS)
C) Spear phishing
D) Structured Query Language (SQL) injection
B
A company developed an IoT smart photo frame that allows users to upload
photos to their device using a web browser. Testing revealed that users can upload
files onto the root filesystem.
Which Internet of Things Security Foundation (IoTSF) Best Practice Guideline
(BPG) should this company follow in its design process to ensure filesystem
permissions are set correctly?
A) Device secure boot
B) Physical security
C) Secure operating system
D) Application security
C
A company uses IoT devices to capture data in the field and transmit it for central
processing. The company plans to follow the Internet of Things Security
Foundation's (IoTSF) Best Practice Guidelines (BPGs) to ensure that personal data
is protected.
Which IoTSF guideline should this company use?
A) Device secure boot
B) Physical security
C) Securing software updates
D) Application security
D
4|Page