HOME ROUTER SECURITY
SEGREGATION OF DUTIES (SOD)
QUISHING
DIGITAL SPRING CLEANING
TELEPHONE ORIENTED ATTACK DELIVERY (TOAD)
200

What does an SSID represent?

A. Wi-Fi network name
B. Router password
C. Router serial number
D. Encryption key

A. Wi-Fi network name

200

What is the main purpose of Segregation of Duties (SoD)? 

A. Prevent errors and fraud
B. Reduce paperwork
C. Improve productivity
D. Increase automation

A. Prevent errors and fraud

200

What is "quishing"? 

A. A computer virus
B. Phishing that uses QR codes to direct users to malicious sites
C. A password manager
D. A type of encryption

B. Phishing that uses QR codes to direct users to malicious sites

200

Why should you regularly update software? 

A. To change the device color
B. To improve battery packaging
C. To receive security fixes and improvements
D. To increase screen size

C. To receive security fixes and improvements

200

Which communication channel is commonly used to direct victims to a Telephone-Oriented Attack Delivery (TOAD) attack? 

A. Email containing a support phone number
B. Printed company handbook
C. Office bulletin board
D. Computer operating system

A. Email containing a support phone number

400

What is a likely sign of router compromise? 

A. Unrecognized configuration changes
B. Scheduled firmware updates
C. Stronger signal
D. New ISP notifications

A. Unrecognized configuration changes

400

Which scenario best demonstrates Segregation of Duties? 

A. One employee creates and approves vendors
B. No approval process exists
C. Vendor approves itself
D. Different employees create and approve vendors

D. Different employees create and approve vendors

400

What makes quishing difficult to detect? 

A. QR codes often conceal the actual destination URL
B. QR codes are encrypted
C. QR codes cannot be tracked
D. QR codes work only offline

A. QR codes often conceal the actual destination URL

400

What is the purpose of backing up important data? 

A. To create duplicate passwords
B. To recover information if data is lost or corrupted
C. To reduce storage needs
D. To avoid software updates

B. To recover information if data is lost or corrupted

400

You receive a text message stating that unusual activity has been detected on your corporate account and instructing you to call a phone number. What should you do first?

A. Call the number immediately
B. Verify the alert through approved company channels
C. Forward the message to friends for advice
D. Provide your username via text

B. Verify the alert through approved company channels

600

Why should router admin credentials differ from Wi-Fi credentials? 

A. Easier troubleshooting
B. Speeds up login
C. Improves signal strength
D. Reduces risk if one credential is compromised

D. Reduces risk if one credential is compromised

600

A manager asks you to approve your own request. What should you do? 

A. Approve it
B. Ask a colleague
C. Follow the designated approval process
D. Ignore the request

C. Follow the designated approval process

600

Why might attackers prefer QR codes over standard links in emails? 

A. QR codes require special computers
B. Security tools may have more difficulty inspecting embedded destinations
C. QR codes cannot be blocked
D. QR codes are anonymous

B. Security tools may have more difficulty inspecting embedded destinations

600

What should employees do with old sensitive documents no longer required for business?

A. Follow approved retention and disposal procedures
B. Keep them forever
C. Email them externally
D. Upload them to public websites

A. Follow approved retention and disposal procedures

600

Why might attackers prefer TOAD attacks over traditional phishing links?

A. Phone conversations allow real-time manipulation of victims
B. Phone calls automatically bypass security controls
C. Victims are required by law to answer support calls
D. Phone calls cannot be investigated Correct

A. Phone conversations allow real-time manipulation of victims

800

How can attackers abuse DNS settings on a router? 

A. Redirect users to malicious websites
B. Improve performance
C. Disable wireless access
D. Increase latency

A. Redirect users to malicious websites

800

Which control best detects SoD conflicts? 

A. Visitor logs
B. Access reviews and audits
C. Screen savers
D. Seating charts

B. Access reviews and audits

800

Which indicator is most reliable when verifying a QR code destination? 

A. Website color scheme
B. Presence of animations
C. Full destination URL and domain ownership
D. Number of images

C. Full destination URL and domain ownership

800

Which action best protects data when employees leave the organization?

A. Creating duplicate accounts
B. Sharing passwords temporarily
C. Disabling logging
D. Reviewing and removing unnecessary access promptly

D. Reviewing and removing unnecessary access promptly

800

Which TOAD scenario presents the greatest risk? 

A. A voicemail promoting a public webinar 

B. A message encouraging employees to review company news 

C. An email directing employees to call a "help desk" that requests MFA approval during the call

D. A survey invitation from Human Resources

C. An email directing employees to call a "help desk" that requests MFA approval during the call

1000

Router firewalls primarily help by: 

A. Increasing signal range
B. Managing ISP bandwidth
C. Blocking unauthorized traffic
D. Updating firmware

C. Blocking unauthorized traffic

1000

A team is short-staffed and one employee performs multiple approval functions. What should management do? 

A. Implement compensating controls
B. Remove approvals
C. Ignore the risk
D. Share credentials

A. Implement compensating controls

1000

What is the primary security principle employees should follow when dealing with unexpected QR codes? 

A. Trust but verify later
B. Scan first and inspect later
C. Verify before interacting
D. Share with colleagues

C. Verify before interacting

1000

Why is inventorying company devices important?

A. It helps identify unmanaged or unsupported devices
B. It changes passwords automatically
C. It increases monitor size
D. It removes phishing emails

A. It helps identify unmanaged or unsupported devices

1000

A user receives an email claiming their Microsoft 365 account has been compromised. The email instructs them to call a security hotline. During the call, the agent asks them to log in and read the MFA code displayed on their device. Which stage of the attack is occurring? 

A. Initial reconnaissance
B. Privilege review
C. Credential and authentication compromise
D. Data backup

C. Credential and authentication compromise