Tag the questions with any skills you have. Your dashboard will track each student's mastery of each skill.
Give this quiz to my class
Q 1/79
Score 0
Which of the following is not a commonly used security framework?
30
ISO 27001
COBIT
CIS Controls
NIST Cybersecurity Framework
Q 2/79
Score 0
What does the CIA triad stand for in information security?
30
Confidentiality, Integrity, Availability
Compliance, Integrity, Authentication
Confidentiality, Integrity, Accountability
Confidentiality, Identity, Accessibility
79 questions
Q.
Which of the following is not a commonly used security framework?
1
30 sec
Q.
What does the CIA triad stand for in information security?
2
30 sec
Q.
Which type of malware is specifically designed to replicate itself and spread to other devices?
3
30 sec
Q.
What is the primary purpose of a firewall in network security?
4
30 sec
Q.
Which of the following describes a Denial of Service (DoS) attack?
5
30 sec
Q.
What is the role of an Intrusion Detection System (IDS) in cybersecurity?
6
30 sec
Q.
What is the main purpose of implementing multi-factor authentication (MFA)?
7
30 sec
Q.
Which of the following best describes 'phishing' in the context of cybersecurity?
8
30 sec
Q.
What is the primary function of a Digital Certificate in cybersecurity?
9
30 sec
Q.
Which protocol is commonly used to secure communications over the internet?
10
30 sec
Q.
Which of the following is a primary goal of information security?
11
30 sec
Q.
What does the acronym 'VPN' stand for in the context of security?
12
30 sec
Q.
Which of the following is an example of a phishing attack?
13
30 sec
Q.
What is the purpose of a firewall in network security?
14
30 sec
Q.
What is the main purpose of antivirus software?
15
30 sec
Q.
What is multi-factor authentication (MFA)?
16
30 sec
Q.
What does the principle of least privilege entail?
17
30 sec
Q.
What is the primary function of an intrusion detection system (IDS)?
18
30 sec
Q.
What is a common method used to secure wireless networks?
19
30 sec
Q.
Which of the following is a common form of malware that encrypts files and demands a ransom for the decryption key?
20
30 sec
Q.
What is the primary purpose of Nmap?
21
30 sec
Q.
Which Nmap option is used to perform a TCP connect scan?
22
30 sec
Q.
What does the Nmap option '-p' specify?
23
30 sec
Q.
What type of scanning does the '-sS' option in Nmap perform?
24
30 sec
Q.
Which command in Nmap can be used for OS detection?
25
30 sec
Q.
What does the Nmap option '-A' accomplish?
26
30 sec
Q.
In Nmap, what is the purpose of the '-T' option?
27
30 sec
Q.
What is the function of the Nmap script engine?
28
30 sec
Q.
What does the Nmap option '-sP' (now known as '-sn') do?
29
30 sec
Q.
What output format does the '-oN' option in Nmap provide?
30
30 sec
Q.
What is the primary purpose of the Setoolkit tool?
31
30 sec
Q.
Which command is often used to start the Setoolkit tool?
32
30 sec
Q.
In which of the following scenarios would Setoolkit NOT be appropriately used?
33
30 sec
Q.
Which of the following is NOT a feature of Setoolkit?
34
30 sec
Q.
Which type of attack simulates the act of someone impersonating a legitimate service provider to gather sensitive information using Setoolkit?
35
30 sec
Q.
What type of social engineering attack can be tested with Setoolkit's 'Web Jacking' feature?
36
30 sec
Q.
What is the primary goal of a phishing attack?
37
30 sec
Q.
Which method is commonly used in phishing attacks to lure victims?
38
30 sec
Q.
What is a common sign that an email might be a phishing attempt?
39
30 sec
Q.
What is a common tactic used in phishing scams to create urgency?
40
30 sec
Q.
What type of phishing involves fake websites designed to look like legitimate ones?
41
30 sec
Q.
What is spear phishing?
42
30 sec
Q.
Which of the following is a common characteristic of phishing websites?
43
30 sec
Q.
What role does social engineering play in phishing?
44
30 sec
Q.
What is the primary purpose of the NIST Cybersecurity Framework (CSF)?
45
30 sec
Q.
What does the 'Identify' function of the NIST Cybersecurity Framework focus on?
46
30 sec
Q.
What is the significance of the 'Recover' function in the NIST Cybersecurity Framework?
47
30 sec
Q.
How often should organizations review and update their implementation of the NIST Cybersecurity Framework?
48
30 sec
Q.
What is the main goal of using the 'Protect' function in the NIST Cybersecurity Framework?
49
30 sec
Q.
Which of the following best describes a 'Risk Assessment' in the NIST Cybersecurity Framework?
50
30 sec
Q.
What is emphasized in the 'Detect' function of the NIST Cybersecurity Framework?
51
30 sec
Q.
What is one of the primary benefits of adopting the NIST Cybersecurity Framework for organizations?
52
30 sec
Q.
What does OSINT stand for in the context of intelligence gathering?
53
30 sec
Q.
Which of the following sources is typically NOT considered an OSINT source?
54
30 sec
Q.
Which of the following best describes the primary purpose of OSINT?
55
30 sec
Q.
What is a common challenge faced when conducting OSINT?
56
30 sec
Q.
Which of the following techniques is often employed in OSINT to extract information from websites?
57
30 sec
Q.
Which of the following is a well-known OSINT tool for domain analysis?
58
30 sec
Q.
Which of the following skills is essential for effectively conducting OSINT investigations?
59
30 sec
Q.
Which of the following is considered a preventive security control?
60
30 sec
Q.
What is the main purpose of implementing security policies in an organization?
61
30 sec
Q.
What type of control is a security awareness training program?
62
30 sec
Q.
Which of the following is a characteristic of a detective control?
63
30 sec
Q.
Which of the following is an example of a technical security control?
64
30 sec
Q.
What type of security control is a multi-factor authentication (MFA)?
65
30 sec
Q.
Which security control focuses on identifying and responding to security incidents?
66
30 sec
Q.
Which of the following is an example of a corrective security control?
67
30 sec
Q.
What is an example of a physical security control?
68
30 sec
Q.
What does the principle of least privilege entail?
69
30 sec
Q.
You are working remotely and receive an email with an attachment labeled 'Important_Update.zip'. What is the most appropriate action to take?
70
30 sec
Q.
You receive a message from a colleague asking you to log into a website to update your password immediately due to a security breach. What should you do?
71
30 sec
Q.
Your computer starts running very slowly and you notice unexpected pop-ups appearing on your screen. What should you do first?
72
30 sec
Q.
After downloading a software update, you notice that your antivirus program has been disabled without your knowledge. What is your best course of action?
73
30 sec
Q.
You click on a link in a phishing email, and it takes you to a website that looks identical to your bank's login page. What should you do?
74
30 sec
Q.
You suspect that your computer has been infected with a virus after downloading a free software tool. What is the first step you should take?
75
30 sec
Q.
You receive a message claiming to be from your internet service provider, informing you of unusual activity on your account and asking you to click a link to confirm your information. What is the best action to take?
76
30 sec
Q.
While browsing the internet, you notice a warning message from your antivirus software stating that a virus has been detected and you need to take action immediately. What should you do?
77
30 sec
Q.
You notice that your web browser's homepage has changed unexpectedly and is displaying ads you didn't set. What is the first step you should take?
78
30 sec
Q.
You find a USB drive on the ground and decide to plug it into your computer to see what files are on it. What is the safest course of action?