AMU
1. Which of the following best defines cybercrime?
A) A crime that can only be prosecuted in international courts
B) Criminal activity in which a computer, network, or digital device serves as the target, the
tool, or an incidental component
C) Any act of vandalism against physical property
D) Any crime committed by a government against another nation
Correct Answer: B) Criminal activity in which a computer, network, or digital device serves
as the target, the tool, or an incidental component
Rationale: Cybercrime is broadly defined as criminal activity in which a computer, network,
or digital device serves as the target, the tool, or an incidental component. This definition
encompasses a wide range of offenses, from hacking and malware deployment to crimes
where digital devices are merely used to store records.
2. A criminal uses a computer merely to store records of an unrelated drug trafficking
operation. In this scenario, the computer is best classified as which type of cybercrime
component?
A) The target
B) The tool
C) An incidental device
D) The weapon
Correct Answer: C) An incidental device
Rationale: When a computer simply stores evidence or records but is not directly used to
commit the crime, it is considered incidental to the offense. This differs from cases where the
computer is the direct target or tool of attack.
,3. Which type of cybercriminal typically has limited technical skill and relies on pre-written
tools created by others?
A) Nation-state actor
B) Script kiddie
C) Insider threat
D) Organized crime leader
Correct Answer: B) Script kiddie
Rationale: Script kiddies are characterized by low technical skill and dependence on existing
scripts or tools developed by more advanced hackers. Nation-state actors and organized crime
leaders typically possess greater resources and sophistication.
4. An employee with legitimate system access misuses that access to steal company data. This
individual is best classified as which type of threat actor?
A) Hacktivist
B) Insider threat
C) Cyberterrorist
D) Script kiddie
Correct Answer: B) Insider threat
Rationale: An insider threat involves a person with authorized access who exploits that
access for malicious purposes. Hacktivists and cyberterrorists are typically external actors
motivated by ideology rather than access misuse.
5. Which term best describes a crime that can only be committed using a computer or
network, such as launching a distributed denial-of-service attack?
A) Cyber-enabled crime
B) Cyber-dependent crime
, C) Traditional crime
D) Incidental cybercrime
Correct Answer: B) Cyber-dependent crime
Rationale: Cyber-dependent crimes require digital technology to exist at all, such as hacking
or malware deployment. Cyber-enabled crimes are traditional crimes that are facilitated or
increased in scale by the use of computers.
6. Which of the following is an example of a cyber-enabled crime?
A) Installing ransomware on a victim's computer
B) Using a computer to store records of a drug trafficking operation
C) Using the internet to facilitate identity theft
D) Launching a denial-of-service attack against a website
Correct Answer: C) Using the internet to facilitate identity theft
Rationale: Cyber-enabled crimes are traditional crimes that are facilitated or increased in
scale by the use of computers. Identity theft is a traditional crime that can be carried out more
efficiently and at greater scale using the internet.
7. What is the primary purpose of the Budapest Convention?
A) To establish a global framework for combating cybercrime through international
cooperation
B) To regulate the use of encryption technology
C) To create a single global cybersecurity standard
D) To prohibit the use of the internet for commercial purposes
Correct Answer: A) To establish a global framework for combating cybercrime through
international cooperation