Net Attacks DoS
Spoofing & Sniffing
Wireless, Mobile, & VPNs
Pentesting & Exploits
100

This is what DoS stands for in terms of cybersecurity attacks?

What is Denial of Service?

100

This type of attack involves sending malicious packets to a default gateway on a LAN in order to change the pairings in its IP to MAC address table.

What is ARP Poisoning?

100

This threat related to Bluetooth attempts to send unsolicited messages to a victim's Bluetooth-enabled device.

What is bluejacking?

100

The primary responsibility of this job is to design and plan simulations and security assessments designed to probe existing cybersecurity measures for potential weaknesses, as well document those weaknesses to clients.

What is a penetration tester (pentester)?

200

The main difference between a DoS and a DDoS attack is this?

What is the use of a botnet?

200

This is an attack that uses the creation of packets with a false source  to impersonate another computer.

What is IP Spoofing?

200

This is a wireless access point that has been installed on a network's wired infrastructure without the consent of the network admnistrator.

What is a rogue access point?

200

This is a cybersecurity hacker who exploits vulnerabilities for their own amusement and do not have permission from an organization to do so, but do not do anything illegal with their attacks.

What are gray hats?

300

This type of attack attempts to exploit the three-way handshake of a TCP connection by never responding to a client's ACK signal.

What is a SYN Flood attacks?

300

This is an attack involving manipulating domain name records to redirect users toward a fraudulent, malicious destination instead of its intended destination.

What is DNS Spoofing?

300

This is a mechanism for creating a secure connection between a computing device and a computer network, or between two networks, using an insecure communication medium such as the public Internet.

What is a Virtual Private Network (VPN)?

300

This framework in the Linux environment allows pentesters to quickly consult, deploy, and analyze known exploits and their effects on a system or network.

What is the Metasploit Framework?

400

These are infected computers of a botnet that may not be aware of the participation in the botnet during a DDoS attack?

What is a zombie?

400

This is a generic term for attacks in which the signal is intercepted, modified, and/or deleted between a source and destination?

What is an Adversary-in-the-Middle Attack?

400

When dealing with data transmitted over wireless networks, this helps ensure confidentiality of the data transmitted by?

What is encryption?

400

These are the steps needed to launch a possibly successful attack on a system or network?

What are reconnaissance, scanning, gaining access, maintaining access, and covering tracks?

500

Of the four listed, this is NOT a method to secure against DoS attacks.

- Implementing strong firewalls
- Using intrusion detection systems
- Conducting regular security audits
- Allowing unrestricted access to network resources

What is Allowing unrestricted access to network resources?

500

Of the following: this is a key method for securing against spoofing attacks.

- Implementing strong encryption
- Using multi-factor authentication
- Regularly updating network protocols
- Allowing unrestricted access to network resources 

What is Regularly updating network protocols?

500

This is when a wireless signal is physically blocked or taken down to limit or restrict access to a network.

What is jamming?

500

This distinguishes the various colors or types of hacking in cybersecurity.

What are the hackers intentions and permissions?