CYBR 7300 Midterm Spring 2026 Questions
with Correct Answers
accountability
the access control mechanism that ensures all actions on a system - authorized or
unauthorized - can be attributed to an authenticated identity. Also known as auditability
advanced persistent threat (APT)
a collection of processes, usually directed by a human agent, that targets a specific
organization or individual.
advanced-fee fraud (AFF)
a form of social engineering, typically conducted via e-mail, in which an organization or
some third party indicates that the recipient is due an exorbitant amount of money and needs
only a small advance fee or personal banking information to facilitate the transfer. This may
also involve prepayment for services with a payment lager than required; the overpayment is
returned and then the initial payment is repudiated
asset
an organizational resource that is being protected. It can be logical, such as a Web site,
software information, or data; or it can be physical, such as a person, computer system,
hardware, or other tangible object. Dealing particularly with information, they are the focus
of what security efforts attempt to protect
attack/threat event
an intentional or unintentional act that can damage or otherwise compromise information and
the systems that support it
,authentication
the access control mechanism that requires the validation and verification of an entity's
purported identity
authorization
the access control mechanism that represents the matching of an authenticated entity to a list
of information assets and corresponding access levels
availability
an attribute of information that describes how data is accessible and correctly formatted for
use without interference or obstruction
availability disruption
an interruption in service, usually from a service provider, which causes an adverse event
within an organization
Back door/ trap door/maintenance hook
a malware payload that provides access to a system by bypassing normal access controls. It is
also an intentional access control bypass left by a system designer to facilitate development
blackout
a long-term interruption (outage) in electrical power availability
boot virus
also known as a boot-sector virus, a type of virus that targets the boot sector or Master Boot
Record (MBR) of a computer system's hard drive or removable storage media
brownout
, a long-term decrease in the quality of electrical power availability
brute force password attack
an attempt to guess a password by attempting every possible combination of characters and
numbers in it
clickbait
content such as e-mail attachments or embedded links crafted to convince unsuspecting users
into clicking them, which results in more Web traffic for the content provider or the
installation of unwanted software or malware
communications security
The protection of all communications media, technology, and content
Cyber/computer security
the protection of computerized information processing systems and the data they contain and
process
confidentiality
an attribute of information that describes how data is protected from disclosure or exposure to
unauthorized individuals or systems
controlling
the process of monitoring progress and making necessary adjustments to achieve desired
goals or objectives
cracker
with Correct Answers
accountability
the access control mechanism that ensures all actions on a system - authorized or
unauthorized - can be attributed to an authenticated identity. Also known as auditability
advanced persistent threat (APT)
a collection of processes, usually directed by a human agent, that targets a specific
organization or individual.
advanced-fee fraud (AFF)
a form of social engineering, typically conducted via e-mail, in which an organization or
some third party indicates that the recipient is due an exorbitant amount of money and needs
only a small advance fee or personal banking information to facilitate the transfer. This may
also involve prepayment for services with a payment lager than required; the overpayment is
returned and then the initial payment is repudiated
asset
an organizational resource that is being protected. It can be logical, such as a Web site,
software information, or data; or it can be physical, such as a person, computer system,
hardware, or other tangible object. Dealing particularly with information, they are the focus
of what security efforts attempt to protect
attack/threat event
an intentional or unintentional act that can damage or otherwise compromise information and
the systems that support it
,authentication
the access control mechanism that requires the validation and verification of an entity's
purported identity
authorization
the access control mechanism that represents the matching of an authenticated entity to a list
of information assets and corresponding access levels
availability
an attribute of information that describes how data is accessible and correctly formatted for
use without interference or obstruction
availability disruption
an interruption in service, usually from a service provider, which causes an adverse event
within an organization
Back door/ trap door/maintenance hook
a malware payload that provides access to a system by bypassing normal access controls. It is
also an intentional access control bypass left by a system designer to facilitate development
blackout
a long-term interruption (outage) in electrical power availability
boot virus
also known as a boot-sector virus, a type of virus that targets the boot sector or Master Boot
Record (MBR) of a computer system's hard drive or removable storage media
brownout
, a long-term decrease in the quality of electrical power availability
brute force password attack
an attempt to guess a password by attempting every possible combination of characters and
numbers in it
clickbait
content such as e-mail attachments or embedded links crafted to convince unsuspecting users
into clicking them, which results in more Web traffic for the content provider or the
installation of unwanted software or malware
communications security
The protection of all communications media, technology, and content
Cyber/computer security
the protection of computerized information processing systems and the data they contain and
process
confidentiality
an attribute of information that describes how data is protected from disclosure or exposure to
unauthorized individuals or systems
controlling
the process of monitoring progress and making necessary adjustments to achieve desired
goals or objectives
cracker