This WGU Course C840 (Digital Forensics in Cybersecurity) set created by Brian
MacFarlane is a highly regarded study resource widely used by students to pass the Objective
Assessment. The original comprehensive Questions set can be accessed directly To Study Guide set
Core Concepts Covered in the Exam
To efficiently navigate this 272-question material, focus on these critical areas that frequently stump
test-takers:
1. Federal Laws and Regulations
• Privacy Protection Act (PPA): Protects journalists from turning over their work or
sources to law enforcement prior to public sharing.
• Communications Assistance to Law Enforcement Act (CALEA): A federal wiretap
law expanded to include wireless, VoIP, and data traffic.
• Sarbanes-Oxley Act (SOX): Dictates record-keeping and electronic record destruction
for publicly held companies.
• 18 U.S.C. 2252B: Criminalizes using misleading domain names to deceive minors into
viewing harmful material.
2. Evidence Collection Protocol
• First Action at Scene: Photograph all evidence in its original place before
touching, unplugging, or moving items.
• Bit-by-Bit Copying: Ensuring proper collection using cryptographic hashing to maintain
data integrity rather than standard file transfers.
• Device States: NIST SP 800-72 guidelines outline the four states a mobile device can be
in during data extraction.
3. General Forensics Facts
1
, • Malware Forensics: It is distinctly different from Internet forensics; the assertion that
they are the same is false.
• Core Steps: The foundational lifecycle follows a strict sequence: Collection,
Examination, Analysis, and Reporting.
Quiz_________________?
A-
ANSWER✅
_________ is the method used by password crackers who work with pre-calculated hashes
of all passwords possible within a certain character space.
A
Rainbow table
B
SQL injection
C
Phishing
D
Denial of service (DoS) attack
Quiz_________________?
A-
ANSWER✅
__________ involves making an e-mail message appear to come from someone or
someplace other than the real sender or location.
A
Spoofing
2
, B
Remailing
C
Anonymous remailing
D
Transference
Quiz_________________?
A-
ANSWER✅
__________ is a free utility that comes as a graphical user interface for use with Windows
operating systems. When you first launch the utility, it presents you with a cluster-by-cluster
view of your hard drive in hexadecimal form.
A
Disk Investigator
B
BackTrack
C
AnaDisk Disk Analysis Tool
D
The Sleuth Kit
Quiz_________________?
A-
ANSWER✅
3
, __________ is a Linux Live CD that you use to boot a system and then use the tools. It is
a free Linux distribution, making it extremely attractive to schools teaching forensics or
laboratories on a strict budget.
A BackTrack
B The Sleuth Kit
C Disk Investigator
D Helix
Quiz_________________?
A-
ANSWER✅
__________ is a live-system forensic technique in which you collect a memory dump and
perform analysis in an isolated environment.
A
Volatile memory analysis
B
Forensic investigation
C
Power-on self test
D
Master boot record
Quiz_________________?
A-
ANSWER✅
__________ is a term that refers to hiding messages in sound files.
4