All Correct Answers New Update
What is a challenge-response system's major function?
Select one:
a. To identify users and/or systems
b. To authenticate users and/or systems
c. To audit users and/or systems
d. None of the above - Answers -✔✔ b
What is a reflection attack?
Select one:
a. A form of DoS attack in which the attacker hacks into the victim and crashes their
system Incorrect
b. A form of DoS attack in which the attacker sends a carefully crafted IP packet which
crashes the victim
c. A form of DDoS attack in which multiple attackers flood the victim with phony TCP
connection attempts
d. A form of DDoS attack in which a single attacker causes other systems to
unknowingly flood the victim with false TCP connection acknowledgments - Answers -
✔✔
What is a virtual private network?
Select one:
a. A network of links and nodes arranged so that messages may be passed from one
part of the network to another over multiple links and through various nodes
b. A network of interconnected computer networks that transmit data by packet
switching using the standard IP
c. A private communications network used to communicate confidentially, implemented
on top of a public network
d. All of the above - Answers -✔✔ c
The benefits of using VPNs include:
Select one:
a. Sharing intranet resources over the internet
b. Communicating confidentially over an otherwise insecure network
,c. Enabling physically separate locations to share servers and internet connection(s) in
a secure manner
d. All of the above - Answers -✔✔ d
Why would an attacker want to hijack DNS service?
Select one:
a. Ego, bragging rights
b. Hijacking DNS allows attackers to control servers that users connect to
c. Hijacking DNS allows an attacker to protect themselves against DoS attacks
d. None of the above Incorrect - Answers -✔✔
On a computer network, which of the following is an example of an authentication
system?
Select one:
a. A server that allows those on the local network access
b. A server that takes credentials provided by some host and verifies those credentials
c. A server that is passed information from a previous server and accepts the
credentials
d. None of the above - Answers -✔✔ b
What is a "bot"?
Select one:
a. A computer system that has been infected by a virus or trojan and now accepts
commands from remote users
b. A computer system that gives orders to other computer systems
c. A computer system that has artificial intelligence and can operate on its own
d. A program that is designed to infect computer systems so that they can be controlled
remotely - Answers -✔✔ a
How does a Distributed Denial of Service attack commonly differ from other types of
Denial of Service attacks?
Select one:
a. Distributed Denial of Service attacks are often done by just one infected computer
b. Distributed Denial of Service attacks are often executed through the use of a botnet
that attacks a victim selected by a malicious user
c. Distributed Denial of Service attacks target more than one computer at a time
Incorrect
d. All of the above - Answers -✔✔
The 'hosts' file found on many common operating systems contains what information?
Select one:
, a. Information on what type of TCP/IP stack the DNS server (the host) is using and how
it should interact with operating systems
b. Information on what type of TCP/IP stack the operating system (the host) is using and
how it should interact with DNS servers
c. Information that instructs the system on how to contact the local DNS servers to
resolve domain names Incorrect
d. Information to map hostnames (domain names) to IP addresses - Answers -✔✔
How does a signature-based IDS work?
Select one:
a. It scans all incoming traffic to see if any of the TCP segments are the start of a new
connection. If so, the segments are dropped
b. It uses artificial intelligence to attempt to reason about the current state of the
network and determine if an attack is occurring
c. It uses predefined policies or characteristics that it watches for to determine if an
attack is occurring
d. None of the above - Answers -✔✔ c
MAC address filtering is not vulnerable to spoofing attacks.
Select one:
True
False - Answers -✔✔ False
What is WEP?
Select one:
a. An encryption scheme used to secure wireless networks
b. An addressing scheme designed to prevent unauthorized users from accessing
wireless networks
c. A technology that allows wireless networks to communicate with wired networks
d. None of the above - Answers -✔✔ a
What is an intrusion detection system?
Select one:
a. A system that is used to detect malicious network traffic and/or computer usage
b. A system that is composed of several components, such as Sensors (that generate
security events), a console (to monitor events and alerts—and control the sensors), and
an engine that logs events in a database and uses rules to generate the alerts Incorrect
c. A computer security device that administers access control to protect computers from
being exploited
d. All of the above - Answers -✔✔
From the following examples, select all that would not be considered a botnet.