100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

Computer Security Fundamentals (Latest Edition) – Chapter 4 Questions & Answers | William Easttom.

Rating
-
Sold
-
Pages
57
Grade
A+
Uploaded on
11-06-2025
Written in
2024/2025

Computer Security Fundamentals (Latest Edition) – Chapter 4 Questions & Answers | William Easttom.

Institution
Computer Security Fundamentals
Course
Computer Security Fundamentals











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Computer Security Fundamentals
Course
Computer Security Fundamentals

Document information

Uploaded on
June 11, 2025
Number of pages
57
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

kjhgfdsa


True / False

1. The Domain Name Service is what translates human-readable domain names into IP
addresses that computers and routers understand.
True

2. The type of hacking that involves breaking into telephone systems is called sneaking.
False—This type of hacking is called phreaking.

3. The technique for breaching a system’s security by exploiting human nature rather than
technology is war-driving.
False—This describes social engineering.

4. Malware is a generic term for software that has a malicious purpose.
True

5. Software that lays dormant until some specific condition is met is a Trojan horse.
False—This describes a logic bomb. Usually, the condition that is met is a
date and time.

6. Someone who breaks into a system legally to assess security deficiencies is a sneaker.
True—Companies may solicit the services of a sneaker to assess the company’s
vulnerabilities.

7. Auditing is the process to determine if a user’s credentials are authorized to access a
network resource.
False—This describes authentication. Auditing is the process to review logs,
records, and procedures.

8. Confidentiality, integrity, and availability are three pillars of the CIA triangle.
True

9. The Health Insurance Portability and Accountability Act of 1996 requires government
agencies to identify sensitive systems, conduct computer security training, and develop
computer security plans.
False—This describes the Computer Security Act of 1987.

10The SANS Institute website is a vast repository of security-related documentation.
True


Multiple Choice

1. In which type of hacking does the user block access from legitimate users without
actually accessing the attacked system?
a. Denial of service




oiuytrew
@Testbanksmafia

, kjhgfdsa


b. Web attack
c. Session hijacking
d. None of the above

Answer A. A denial-of-service attack is probably the most common attack on the web.

2. Your company is instituting a new security awareness program. You are responsible
for educating end users on a variety of threats, including social engineering. Which of the
following best defines social engineering?
a. Illegal copying of software
b. Gathering information from discarded manuals and printouts
c. Using people skills to obtain proprietary information
d. Destruction or alteration of data

Answer D. Social Engineering is basically using people skills to gather information

3. Which type of hacking occurs when the attacker monitors an authenticated session
between the client and the server and takes over that session?
a. Denial of service
b. Web attack
c. Session hijacking
d. None of the above

Answer C.

4. Someone who finds a flaw in a system and reports that flaw to the vendor of the
system is a .
a. White hat hacker
b. Black hat hacker
c. Gray hat hacker
d. Red hat hacker

Answer A. White hat hackers are often hired by companies to do penetration tests.

5. Someone who gains access to a system and causes harm is a ?
a. White hat hacker
b. Black hat hacker
c. Grey hat hacker
d. Red hat hacker
Answer B. A black hat hacker might steal data, erase files, or deface websites.

6. A black hat hacker is also called a
a. Thief
b. Cracker
c. Sneaker
d. None of the above




oiuytrew
@Testbanksmafia

, kjhgfdsa




Answer B.

7. Someone who calls himself a hacker but lacks the expertise is a .
a. Script kiddy
b. Sneaker
c. White hat hacker
d. Black hat hacker

Answer A. There are many Internet tools that can be used to perform hacking tasks, and
users of these tools who don’t understand the target system are script kiddies.

8. Someone who legally breaks into a system to assess security deficiencies is a
.
a. Script kiddy
b. Penetration tester
c. White hat hacker
d. Black hat hacker

Answer B. Anyone hired to assess the vulnerabilities of a system should be both
technically proficient and ethical.

9. A(n) is a basic security device that filters traffic and is a barrier between a
network and the outside world or between a system and other systems.
a. Firewall
b. Proxy server
c. Intrusion detection system
d. Network Monitor

Answer A. A firewall can be a server, a router, or software running on a machine.

10. A(n) hides the internal network’s IP address and presents a single IP address to the
outside world.
a. Firewall
b. Proxy server
c. Intrusion detection system
d. Network Monitor

Answer B.

11. Which one of these is NOT one the three pillars of security in the CIA triangle?
a. Confidentiality
b. Integrity
c. Availability
d. Authentication




oiuytrew
@Testbanksmafia

, kjhgfdsa


Answer D.

12. Which of these is the process to determine if the credentials given by a user or
another system are authorized to access the network resource in question?
a. Confidentiality
b. Integrity
c. Availability
d. Authentication

Answer D.

13. Which of these is a repository of security-related documentation and also sponsors a
number of security research projects?
a. Computer Emergency Response Team
b. F-Secure
c. SANS Institute
d. Microsoft Security Advisor

Answer C.

14. Which of these was the first computer incident-response team?
a. Computer Emergency Response Team
b. F-Secure
c. SANS Institute
d. Microsoft Security Advisor

Answer A.

15. Which of these is a repository for detailed information on virus outbreaks?
a. Computer Emergency Response Team
b. F-Secure
c. SANS Institute
d. Microsoft Security Advisor

Answer B. Information includes how a virus spreads, ways to recognize the virus, and,
frequently, specific tools for cleaning an infected system.




oiuytrew
@Testbanksmafia

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Testbanksmafia Michigan State University
View profile
Follow You need to be logged in order to follow users or courses
Sold
160
Member since
1 year
Number of followers
12
Documents
445
Last sold
8 hours ago
Test Banks, Solution Manuals, Case studies, Summaries, Essays, and Exclusive Package Deals, All Graded A+.

Welcome to my store! In need to elevate your academic grades? search no more. Here you'll find thousands of comprehensive 5-star rated resources designed to empower you on your academic journey. I'm dedicated to provide you with top-quality, accurate , reliable , verified and latest updated documents with 100% pass guarantee. Your success is our priority, Let's achieve those top grades together !!!

4.6

14 reviews

5
11
4
2
3
0
2
0
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions