ALPHA
BRAVO
CHARLIE
DELTA
ECHO
FOXTROT
GOLF
HOTEL
INDIA
100

These advertising windows open in front of the current browser window

Popups

100

A new form of social engineering that uses Voice over IP (VoIP) is known as ______

Vishing/Phone Phishing

100

Malware is the short name for _____________. 

malicious software

100

Which wired network technology has an inner wire surrounded by a tubular insulating layer, that is then surrounded by a tubular conducting shield.

Coaxial Cable

100

What does DDoS stand for?

Distributed Denial of Service (DDoS)

100

What is applied to an OS or application to correct a known security vulnerability or add functionality?

Patches and Updates

100

True or False 

A home router typically only provides wired access to the network. You have to buy a separate device for wireless access.

False

Typically a home network uses an integrated router equipped with both wired and wireless capabilities. 

100

_______ is a form of social engineering where an invented scenario (the pretext) is used on a victim in order to get the victim to release information or perform an action.

Pretexting

100

It is important to change what on your Home Wireless network for security purposes?

Changing the default SSID and Username/Password

200

What is the most common wiring used in a LAN?

Category 5 Cable or CAT5 

200

This malware does not need to attach itself to an existing program. This malware uses the network to send copies of itself to any connected hosts. This malware can run independently and spread quickly. What is this malware?

Worm

200

In the context of computer and network security, ____________ refers to a collection of techniques used to deceive internal users into performing specific actions or revealing confidential information.  

social engineering

200

Wireless technology uses an access method called _____________.

Carrier Sense Multiple Access with Collision Avoidance (CSMA/CA)

200

These advertising windows open behind the current browser windows

Pop-unders

200

The use of a username and password is a most common form of_______.

authentication

200

_____ is usually installed unknowingly when downloading a file, installing another program, or clicking a popup. It can slow down a computer and make changes to internal settings which creates more vulnerabilities for other threats. 

Spyware

200

A threat actor uses a DoS attack to perform what functions?

  • Flood a network, host, or application with traffic to prevent legitimate network traffic from flowing.
  • Disrupt connections between a client and server to prevent access to a service.
200

What is Control Plane and Data Plane?

  • Control plane - This is typically regarded as the brains of a device. It is used to make forwarding decisions. The control plane contains Layer 2 and Layer 3 route forwarding mechanisms, such as the IPv4 and IPv6 routing tables, and the ARP table. Information sent to the control plane is processed by the CPU.
  • Data plane - Also called the forwarding plane, this plane is typically the switch fabric connecting the various network ports on a device. The data plane of each device is used to forward traffic flows. Routers and switches use information from the control plane to forward incoming traffic out the appropriate egress (outgoing) interface. Information in the data plane is typically processed by a special data plane processor without the CPU getting involved.
300

_______ is a form of social engineering where the phisher pretends to represent a legitimate person from another organization.

Phishing

300

We use the ________ to identify a specific wireless network.

SSID 

300

The wireless technologies most frequently used in home networks are in the unlicensed ____________ frequency ranges.

2.4 GHz and 5 GHz

300

What is the cloud represented as?

300

Security threats from network intruders can come from both ______ and _______ sources

External Threats

External threats arise from individuals working outside of an organization. They do not have authorized access to the computer systems or network. External attackers work their way into a network mainly from the internet through wireless links or dialup access servers.

Internal Threats

Internal threats occur when someone has authorized access to the network through a user account, or has physical access to the network equipment. Internal attackers know the internal politics and people. They often know what information is both valuable and vulnerable, and how to get to it.

300

This malware is a program that spreads by modifying other programs or files. This malware cannot start by itself; it needs to be activated. When activated, this malware may do nothing more than replicate itself and spread. What is this malware?

Virus

300

True or false

A botnet is an individual infected computer that can be controlled by a command and control server.

False

A botnet is a group of computers, not one computer. An individual infected computer controlled by a command and control server is called a zombie

300

Authentication methods on wireless routers require a password or passphrase to connect to the SSID. What is another set up security you can set for your wireless router?

MAC Address Filtering

300

One of the primary benefits of wireless networking is ease and convenience of connecting devices. Unfortunately, that ease of connectivity and the fact that the information is transmitted through the air also makes your network vulnerable to interception and attacks. What are those vulnerable attacks?

War-driving is the process of driving around an area searching for wireless LANs. When a wireless LAN is discovered, the location of the WLAN is logged and shared. The goal of war-driving may be to access the WLAN to steal information. In some cases, the goal is to bring attention to the fact that most wireless networks are insecure.

A similar process to war-driving is known war-walking where the person walks around an area to discover wireless access. When the WLAN is discovered, a chalk mark is placed in front of the location to indicate the status of the wireless connection.

400

Cloud services are available in a variety of options, tailored to meet customer requirements. The three main cloud computing services defined by the National Institute of Standards and Technology (NIST) are?

  • Software as a Service (SaaS) - The cloud provider is responsible for access to applications and services, such as email, communication, and Microsoft 365, that are delivered over the internet. The user does not manage any aspect of the cloud services except for limited user-specific application settings. The user only needs to provide data.
  • Platform as a Service (PaaS) - The cloud provider is responsible for providing users access to the development tools and services used to deliver the applications. These users are typically programmers and may have control over the configuration settings of the application hosting environment of the cloud provider.
  • Infrastructure as a Service (IaaS) - The cloud provider is responsible for giving IT managers access to the network equipment, virtualized network services, and supporting network infrastructure. Using this cloud service allows IT managers to deploy and run software code, which can include operating systems and applications.
  • IT as a Service (ITaaS) can extend the capability of the network without requiring investment in new infrastructure, training new personnel, or licensing new software. These services are available on demand and delivered economically to any device anywhere in the world without compromising security or function.
400

What are the two common DoS Attacks?

  • SYN (synchronous) flooding - This is when a flood of packets are sent to a server requesting a client connection. The packets contain invalid source IP addresses. The server becomes occupied trying to respond to these fake requests and therefore cannot respond to legitimate ones.
  • Ping of death - This is when a packet that is greater in size than the maximum allowed by IP (65,535 bytes) is sent to a device. This can cause the receiving system to crash.
400

Port triggering has been configured on a wireless router. Port 25 has been defined as the trigger port and port 113 as an open port. What effect does this have on network traffic?

1 Any traffic that comes into port 25 allows outgoing port 113 to be used.

2. All traffic that is sent into port 25 to the internal network will also be allowed to use port 113.

3. Any traffic that is using port 25 going out of the internal network will also be allowed to transmit out port 113.

4. All traffic that is sent out port 25 will open port 113 to allow inbound traffic into the internal network through port 113.

4. All traffic that is sent out port 25 will open port 113 to allow inbound traffic into the internal network through port 113.

400

This malware is a program that is written to appear like a legitimate program., when in fact it is an attack tool. It cannot replicate itself. This malware relies upon its legitimate appearance to deceive the victim into initiating the program. What is this malware called?

Trojan Horses

400

A _____  prevents undesirable traffic from entering protected areas of the network. A _____ is one of the most effective security tools available for protecting internal network users from external threats. 

**NOTE** Both blanks are the same answer

Firewall

400

When the threat actor gains access to the network, four types of threat may arise. What are those types of threats?

  • Information theft
  • Data loss and manipulation
  • Identity theft
  • Disruption of service
400

There are four primary cloud models, what are those models?

  • Public clouds - Cloud-based applications and services offered in a public cloud are made available to the general population. Services may be free or are offered on a pay-per-use model, such as paying for online storage. The public cloud uses the internet to provide services.
  • Private clouds - Cloud-based applications and services offered in a private cloud are intended for a specific organization or entity, such as the government. A private cloud can be set up using the private network of an organization, though this can be expensive to build and maintain. A private cloud can also be managed by an outside organization with strict access security.
  • Hybrid clouds - A hybrid cloud is made up of two or more clouds (example: part private, part public), where each part remains a separate object, but both are connected using a single architecture. Individuals on a hybrid cloud would be able to have degrees of access to various services based on user access rights.
  • Community clouds - A community cloud is created for exclusive use by a specific community. The differences between public clouds and community clouds are the functional needs that have been customized for the community. For example, healthcare organizations must remain compliant with policies and laws (e.g., HIPAA) that require special authentication and confidentiality.
400

What is this?

blue screen of death (BSoD)

400

______ are a form of spyware but are not always bad. They are used to record information about an internet user when the user visits websites.

Cookies

500

Most home network users do not connect to their service providers with fiber-optic cables. The five most common methods are?


500

This malware is a form of spyware that is used to collect information about a user based on websites the user visits. That information is then used to targeted advertising. What is this malware called?

Adware

500

In addition to safeguards and using spam blockers, what are other actions to prevent the spread of spam?

(List at least 3)

  • Apply OS and application updates when available.
  • Run an antivirus program regularly and keep it up to date.
  • Do not forward suspicious emails.
  • Do not open email attachments, especially from people you do not know.
  • Set up rules in your email to delete spam that bypass the antispam software.
  • Identify sources of spam and report it to a network administrator so it can be blocked.
  • Report incidents to the governmental agency that deals with abuse by spam.
500

With _________ attacks, a fast computer is used to try to guess passwords or to decipher an encryption code. This attack can cause a denial of service due to excessive traffic to a specific resource, or by locking out user accounts.

brute force

500

What are the benefits of wireless LAN technology?

Mobility - allows for easy connection of both stationary and mobile clients

Scalability - can be easily expanded to allow more users to connect and to increase the coverage area

Flexibility - provides anytime, anywhere, connectivity

Cost Savings - equipment costs continue to fall as the technology matures

Reduced installation time - installation of a single piece of equipment can provide connectivity for a large number of people

Reliability in harsh environments - easy to install in emergency and hostile environments

500

Name some of the features that can be included in antivirus programs?

  • Email checking - Scans incoming and outgoing emails, and identifies spam and suspicious attachments.
  • Resident dynamic scanning - Checks program files and documents when they are accessed.
  • Scheduled scans - Virus scans can be scheduled to run at regular intervals and check specific drives or the entire computer.
  • Automatic Updates - Checks for and downloads known virus characteristics and patterns. Can be scheduled to check for updates on a regular basis.
500

In computer networking, a ________ refers to an area of the network that is accessible and controlled for both internal and external users. It is more secure than the external network but not as secure as the internal network.

demilitarized zone (DMZ)

500

Malicious bot software infects a host, usually through an email or web page link, by downloading and installing a remote control function. When infected, the _______ computer contacts servers managed by the botnet creator. These servers act as a command and control (C&C) center for an entire network of compromised devices, which is called a ______.

- zombie

- botnet

500

_____ software can be used as both a preventive tool and as a reactive tool. It prevents infection and detects, and removes, viruses, worms and Trojan horses. This software should be installed on all computers connected to the network.

Antivirus