WGU D431 DIGITAL FORENSICS IN
CYBERSECURITY
Which guideline emphasizes the importance of documenting every aspect of a
forensic investigation?
A) Don't Touch the Suspect Drive
B) Secure the Evidence
C) Document Trail
D) Chain of Custody
C) Document Trail
What is the primary purpose of the Daubert standard?
A) To ensure secure handling of digital evidence
B) To determine the validity of expert testimony
C) To establish guidelines for chain of custody
D) To evaluate network traffic
B) To determine the validity of expert testimony
What principle advises minimizing direct interaction with the original evidence
during investigation?
A) Secure the Evidence
B) Document Trail
C) Chain of Custody
,D) Don't Touch the Suspect Drive
D) Don't Touch the Suspect Drive
Which type of forensics involves examining physical storage media?
A) Network forensics
B) Email forensics
C) Disk forensics
D) Internet forensics
C) Disk forensics
What is the process of examining network traffic called?
A) Disk forensics
B) Email forensics
C) Network forensics
D) Internet forensics
C) Network forensics
What is disk forensics?
A) Analyzing network traffic
B) Examining email content
C) Acquiring and analyzing information stored on physical storage media
D) Piecing together a user's internet browsing history
,C) Acquiring and analyzing information stored on physical storage media
What does email forensics involve?
A) Analyzing network traffic
B) Piecing together a user's internet browsing history
C) Studying the source and content of email as evidence
D) Examining malicious computer code
C) Studying the source and content of email as evidence
What is the primary focus of network forensics?
A) Analyzing physical storage media
B) Studying the source and content of email as evidence
C) Examining network traffic
D) Searching memory in real time
C) Examining network traffic
When would internet forensics be useful?
A) To identify the sender and recipient of an email
B) To examine hidden and deleted information on physical storage media
C) To determine a user's internet browsing activities
D) To analyze malicious computer code
C) To determine a user's internet browsing activities
, What is software forensics also known as?
A) Email forensics
B) Disk forensics
C) Network forensics
D) Malware forensics
D) Malware forensics
What is cell-phone forensics?
A) Analyzing network traffic on smartphones
B) Examining transaction logs in real time
C) Piecing together a user's internet browsing history
D) Searching the contents of cell phones for evidence
D) Searching the contents of cell phones for evidence
Which of the following laws may overlap with phone forensics in the United
States?
A) Gramm-Leach-Bliley Act (GLBA)
B) Family Educational Rights and Privacy Act (FERPA)
C) Health Insurance Portability and Accountability Act (HIPAA)
D) Foreign Intelligence Surveillance Act of 1978 (FISA)
D) Foreign Intelligence Surveillance Act of 1978 (FISA)
CYBERSECURITY
Which guideline emphasizes the importance of documenting every aspect of a
forensic investigation?
A) Don't Touch the Suspect Drive
B) Secure the Evidence
C) Document Trail
D) Chain of Custody
C) Document Trail
What is the primary purpose of the Daubert standard?
A) To ensure secure handling of digital evidence
B) To determine the validity of expert testimony
C) To establish guidelines for chain of custody
D) To evaluate network traffic
B) To determine the validity of expert testimony
What principle advises minimizing direct interaction with the original evidence
during investigation?
A) Secure the Evidence
B) Document Trail
C) Chain of Custody
,D) Don't Touch the Suspect Drive
D) Don't Touch the Suspect Drive
Which type of forensics involves examining physical storage media?
A) Network forensics
B) Email forensics
C) Disk forensics
D) Internet forensics
C) Disk forensics
What is the process of examining network traffic called?
A) Disk forensics
B) Email forensics
C) Network forensics
D) Internet forensics
C) Network forensics
What is disk forensics?
A) Analyzing network traffic
B) Examining email content
C) Acquiring and analyzing information stored on physical storage media
D) Piecing together a user's internet browsing history
,C) Acquiring and analyzing information stored on physical storage media
What does email forensics involve?
A) Analyzing network traffic
B) Piecing together a user's internet browsing history
C) Studying the source and content of email as evidence
D) Examining malicious computer code
C) Studying the source and content of email as evidence
What is the primary focus of network forensics?
A) Analyzing physical storage media
B) Studying the source and content of email as evidence
C) Examining network traffic
D) Searching memory in real time
C) Examining network traffic
When would internet forensics be useful?
A) To identify the sender and recipient of an email
B) To examine hidden and deleted information on physical storage media
C) To determine a user's internet browsing activities
D) To analyze malicious computer code
C) To determine a user's internet browsing activities
, What is software forensics also known as?
A) Email forensics
B) Disk forensics
C) Network forensics
D) Malware forensics
D) Malware forensics
What is cell-phone forensics?
A) Analyzing network traffic on smartphones
B) Examining transaction logs in real time
C) Piecing together a user's internet browsing history
D) Searching the contents of cell phones for evidence
D) Searching the contents of cell phones for evidence
Which of the following laws may overlap with phone forensics in the United
States?
A) Gramm-Leach-Bliley Act (GLBA)
B) Family Educational Rights and Privacy Act (FERPA)
C) Health Insurance Portability and Accountability Act (HIPAA)
D) Foreign Intelligence Surveillance Act of 1978 (FISA)
D) Foreign Intelligence Surveillance Act of 1978 (FISA)