Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 3 out of 20 pages
Exam (elaborations)

ITS Cybersecurity Practice UPDATED ACTUAL Questions and CORRECT Answers

Document preview thumbnail
Preview 3 out of 20 pages

ITS Cybersecurity Practice UPDATED ACTUAL Questions and CORRECT Answers A self-propagating malicious code that can propagate to other systems on the network and consume resources that could lead to a denial-of-service attack is called a _____. - CORRECT ANSWER- worm A computer malware code that replicates itself on the target computer and spreads through the network causing damage and distributing additional harmful payloads is called a _____. - CORRECT ANSWER- virus

Content preview

ITS Cybersecurity Practice UPDATED
ACTUAL Questions and CORRECT
Answers
A self-propagating malicious code that can propagate to other systems on the network and
consume resources that could lead to a denial-of-service attack is called a _____. -
CORRECT ANSWER✔✔- worm


A computer malware code that replicates itself on the target computer and spreads through
the network causing damage and distributing additional harmful payloads is called a _____. -
CORRECT ANSWER✔✔- virus


A program that appears to be useful or harmless but contains hidden code that can
compromise the target system on which it runs is called a _____. - CORRECT
ANSWER✔✔- Trojan horse



What are the two classes of encryption algorithms? (Choose 2.) - CORRECT ANSWER✔✔-
Asymmetric
Symmetric


Which algorithm is a one-way mathematical function that is used to provide data integrity? -
CORRECT ANSWER✔✔- SHA-2


Why is it important to block incoming IP broadcast addresses and reserved private IP
addresses from entering your network? - CORRECT ANSWER✔✔- These types of
addresses are easier to use for IP spoofing attacks.


You are a junior cybersecurity analyst. An employee reports to you that her laptop was stolen.
For which three reasons should you escalate this event to the Computer Security Incident
Response Team (CSIRT)? (Choose 3.) - CORRECT ANSWER✔✔- Potential network
disruption or denial of service
Exposure of sensitive or confidential information
Unauthorized use of resources

,Which classification of alert should be escalated to security investigators? - CORRECT
ANSWER✔✔- True positive


Which term refers to the combined sum of all potential threat vectors in defense-in-depth
security? - CORRECT ANSWER✔✔- Attack surface


You receive an email from your teacher that has a link to a class poll for a pizza party. You
click the link which takes you to the school portal to log in. Later, you discover this was a
phishing email and your credentials were stolen. Which part of the CIA Triad was
compromised in this attack? - CORRECT ANSWER✔✔- Confidentiality


A major power surge occurs in the middle of making authorized changes to the company
payroll server which results in equipment failure. The equipment is replaced and the data is
restored from a previous, good backup. Which part of the CIA Triad was preserved? -
CORRECT ANSWER✔✔- Availability


Which two states of data domains would require encryption and hashing to secure the data?
(Choose 2.) - CORRECT ANSWER✔✔- Data at rest
Data in transit


In which order should you collect digital evidence from a computer system? - CORRECT
ANSWER✔✔- Contents of RAM, Contents of Fixed Disk, Archived Backup


Which type of attack substitutes a source IP address to impersonate a legitimate computer
system? - CORRECT ANSWER✔✔- IP Spoofing


In a DHCP __ attack, threat actors configure a fake DHCP server on the network to issue
DHCP addresses to clients. - CORRECT ANSWER✔✔- spoofing


In a DHCP __ attack, threat actors flood the DHCP server with DHCP requests to use up all
the available IP addresses that the legitimate DHCP server can issue. - CORRECT
ANSWER✔✔- starvation


In a DNS __ attack, threat actors use publicly accessible open DNS servers to flood a target
with DNS response traffic. - CORRECT ANSWER✔✔- amplification

, In a DNS __ attack, threat actors change the A record for your domain's IP address to point to
a predetermined address of their choice. - CORRECT ANSWER✔✔- hijacking


An attacker on the local network is forwarding packets that associate the MAC address of the
attacker's computer with the IP address of a legitimate server. Which type of attack is taking
place? - CORRECT ANSWER✔✔- ARP Spoofing


An attacker has connected a laptop to a wireless network and attempts to lease all available IP
addresses from the DHCP server. Which type of attack is occurring? - CORRECT
ANSWER✔✔- DHCP Starvation


An attacker has overwhelmed a server by sending more GET requests than the server can
process. This results in a successful DoS attack. Which type of attack has occurred? -
CORRECT ANSWER✔✔- HTTP flooding



_____ is used to find vulnerabilities within a computer system. - CORRECT ANSWER✔✔-
Penetration testing


Establish the incident response team.
Determine if an incident has occurred.
Validate the IP address of the attacking host.

Hold a lessons learned meeting. - CORRECT ANSWER✔✔- Preparation Phase
Detection & Analysis Phase
Containment, Eradication, and Recovery Phase
Post-Incident Activity Phase


In which phase of the NIST Incident Response Life Cycle do you investigate network
intrusion detection sensor alerts? - CORRECT ANSWER✔✔- Detection & Analysis Phase


Which compliance act must a hospital located in the U.S. adhere to when investigating
security incidents involving patients' personal medical information? - CORRECT
ANSWER✔✔- HIPAA

Document information

Uploaded on
October 11, 2024
Number of pages
20
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$10.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
MGRADES
4.0
(230)
Sold
1501
Followers
106
Items
107189
Last sold
7 hours ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions