Version | 2024/2025 | Rated A+
Which of the following best describes a Denial-of-Service (DoS) attack?
A) Exploiting a weakness in an application
B) Disabling systems or networks by overwhelming them with traffic
C) Extracting sensitive information from a database
D) Redirecting user traffic to a fake website
✔✔ B) Disabling systems or networks by overwhelming them with traffic
What is the main function of a SIEM (Security Information and Event Management) system?
A) Encrypting sensitive information
B) Aggregating and analyzing security alerts
C) Monitoring network bandwidth
D) Conducting social engineering tests
✔✔ B) Aggregating and analyzing security alerts
Which of the following is a legal document that specifies the boundaries of ethical hacking?
A) Non-Disclosure Agreement
1
,B) Firewall rule set
C) Penetration Testing Agreement
D) Service Level Agreement
✔✔ C) Penetration Testing Agreement
Which of the following is a preventive control for SQL injection attacks?
A) Encrypting data in transit
B) Using parameterized queries
C) Conducting social engineering tests
D) Disabling unused ports
✔✔ B) Using parameterized queries
What is the purpose of network segmentation in cybersecurity?
A) To monitor traffic across all network devices
B) To isolate critical systems and limit access
C) To increase internet speed for users
D) To perform regular data backups
✔✔ B) To isolate critical systems and limit access
2
,What does a vulnerability assessment aim to identify?
A) Physical weaknesses in infrastructure
B) Potential weaknesses in a system that could be exploited
C) Only malware infections
D) Company policies on security
✔✔ B) Potential weaknesses in a system that could be exploited
Which of the following is a method for protecting against man-in-the-middle attacks?
A) Using multi-factor authentication
B) Enabling a firewall
C) Encrypting communication channels
D) Installing antivirus software
✔✔ C) Encrypting communication channels
What is an example of a common hashing algorithm?
A) RSA
B) AES
3
, C) MD5
D) DES
✔✔ C) MD5
Which of the following tools is primarily used for vulnerability scanning?
A) Wireshark
B) Metasploit
C) Nessus
D) Burp Suite
✔✔ C) Nessus
What type of malware can self-replicate and spread across networks?
A) Worm
B) Virus
C) Trojan
D) Rootkit
✔✔ A) Worm
4