Loading...
Customize this quiz to suit your class
Instantly translate to 100+ languages
Tag the questions with any skills you have. Your dashboard will track each student's mastery of each skill.
Give this quiz to my class
Gravity Test
The Skeletal System Vocabulary
Digital Tools MS-LS2-1
Revealing personal data can lead to threats like identity theft, fraud, bullying, and blackmail. 1.Identity Theft Definition: Identity theft occurs when someone steals your personal information and uses it without your permission. This can include your name, Social Security number, or bank details. Example: If someone gets your Social Security number, they could open a credit card in your name and run up bills that you would have to pay. 2.Fraud Definition: Fraud is when someone deceives another person to gain something of value, like money or personal information. This is often done through lies or tricks. Example: A person might call you pretending to be from your bank and tell you that you need to confirm your account details. If you give them your information, they may steal your money. 3. Bullying Definition: Bullying is when someone repeatedly hurts, threatens, or picks on another person. This can happen in person or online (cyberbullying). Example: If someone sends hurtful messages or spreads rumors about you on social media, that’s a form of bullying. 4. Blackmail Definition: Blackmail is when someone threatens to reveal harmful or embarrassing information about you unless you give them something they want, usually money or favors. Example: If someone takes a private photo of you and threatens to share it unless you pay them, that’s blackmail. Summary Identity Theft: Stealing personal information for illegal use. Fraud: Deceiving someone for personal gain. Bullying: Repeatedly hurting or threatening someone. Blackmail: Threatening to expose information unless demands are met. Understanding these terms helps you recognize and protect yourself from potential dangers in both real life and online. If you see any signs of these actions happening, it’s important to talk to a trusted adult or authority figure. There are several guidelines for you to be aware of to keep your personal data confidential: •Have strong passwords set on any account that holds personal data. Stronger passwords include characters, numbers and symbols and are not a recognisable word. •Encrypt (scramble text so that it cannot be read without a decryption key) any personal data that you store on your computer. •Have a firewall present, scanning incoming and outgoing data from your computer system. firewall : a security measure that can be implemented to monitor traffic into and out of a computer and prevent external users gaining unauthorised access to a computer system. A firewall is a security measure that helps protect a computer system by monitoring and controlling the traffic that comes into and goes out of the system. Think of it as a barrier between your computer and the outside world. It prevents unauthorized users from accessing your computer while allowing authorized traffic to pass through. •Regularly scan your computer with preventative software, such as an anti-virus package, that is used to identify a virus on a computer and remove it. Anti-virus: software that is used to identify a virus on a computer and remove it •Make use of any biometric devices (devices that measures a person's biological data, such as thumbprints), that are built into technology. biometric devices: Unique physical characteristic of a person that can be used by a computer for identification purposes. https://www.aratek.co/news/biometric-devices-definition-and-examples Biometric devices are tools that use unique physical characteristics of a person for identification purposes. This means they can recognize who you are based on features that are unique to you. Here are some examples of biometric characteristics: Fingerprint Recognition, Facial Recognition, Voice Recognition •Only visit and provide data to websites that are a trusted source. •Do not open any email attachments from a sender you do not recognise. •Check the URL attached to any link requesting data to see if it is genuine. •Be cautious about any pictures or opinions that you post or send to people. •Remove data about your location that is normally attached to your photos and videos that you may post, such as geotags. Geotag: an electronic tag that assigns a geographical location A geotag is an electronic tag that assigns a specific geographical location to a piece of information, like a photo or a video. Geotags can help people understand where a photo was taken or where an event occurred, making it easier to organize and find information based on location. •Do not become friends on social networking sites with people you do not know. •Set all the privacy controls to the most secure setting that are available on social media accounts. •Report and block any suspicious user. •Use a nickname or pseudonym when using the internet for entertainment, for example, playing games. •If it is possible, use a virtual private network (VPN), an encrypted connection that can be used to send data more securely across a network. Virtual private network (VPN) : an encrypted connection that can be used to send data more securely across a network A Virtual Private Network (VPN) is a special way to connect to the internet that keeps your information safe. Imagine you are sending a secret message to a friend. You want to make sure no one else can read it while it travels. A VPN helps you do just that! It creates an encrypted connection, which means it turns your message into a code that only your friend can understand Example: Public Wi-Fi Safety: When you use public Wi-Fi, like in a café, your data can be easily accessed by hackers. If you connect to a VPN while using that public Wi-Fi, your data is encrypted, making it much harder for anyone to steal your information.
A BAD CASE OF THE STRIPES By David Shannon Parts(18): Camilla Narrator 1 Narrator 2 Narrator 3 Narrator 4 Mr. Harms Mother Father Dr. Bumble Old Woman Environmental Therapist Dr. Grop Dr. Gourd Dr. Sponge Mr. Mellon Dr. Cricket Dr. Young <><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><><> Narrator 1: A BAD CASE OF THE STRIPES By David Shannon Narrator 2: Camilla Cream loved lima beans. But she never ate them. Narrator 3: All of her friends hated lima beans, and she wanted to fit in. Camilla always worried about what other people thought of her. Narrator 4: Today she was fretting even more than usual. It was the very first day of school, and she couldn't decide what to wear. There were so many people to impress! Narrator 1: She tried on forty-two outfits, but none seemed quite right. She put on a pretty red dress and looked in the mirror. Then she screamed. Narrator 2: Her mother ran into the room, and she screamed, too. Mother: "Oh my heavens! You're completely covered with stripes!" Narrator 3: she cried. This was certainly true. Camilla was striped from head to toe. She looked like a rainbow. Narrator 4: Mrs. Cream felt Camilla's forehead. Mother: "Do you feel all right?" Narrator 1: she asked. Camilla: "I feel fine, but just look at me!" Narrator 2: Camilla answered. Mother: "You get back in bed this instant. You're not going to school today." Narrator 3: her mother ordered. Camilla was relieved. She didn't want to miss the first day of school, but she was afraid of what the other kids would say. And she had no idea what to wear with those crazy stripes. Narrator 4: That afternoon, Dr. Bumble came to examine Camilla. Dr. Bumble: "Most extraordinary! I've never seen anything like it! Are you having any coughing, sneezing, runny nose, aches, pains, chills, hot flashes, dizziness, drowsiness, shortness of breath, or uncontrollable twitching?" Narrator 1: he asked. Camilla: "No, I feel fine." Narrator 2: Camilla told him. Dr. Bumble: "Well then, I don't see any reason why she shouldn't go to school tomorrow. Here's some ointment that should help clear up those stripes in a few days. If it doesn't, you know where to reach me." Narrator 3: Dr. Bumble said, turning to Mrs. Cream. And off he went. Narrator 4: The next day was a disaster. Everyone at school laughed at Camilla. They called her "Camilla Crayon" and "Night of the Living Lollipop." Narrator 1: She tried her best to act as if everything were normal, but when the class said the Pledge of Allegiance, her stripes turned red, white, and blue, and she broke out in stars! Narrator 2: The other kids thought this was great. One yelled out, Narrator 3: "Let's see some purple polka dots!" Narrator 4: Sure enough, Camilla turned all purple polka-dotty. Someone else shouted, Narrator 1: "Checkerboard!" Narrator 4: and a pattern of squares covered her skin. Soon everyone was calling out different shapes and colors, and poor Camilla was changing faster than you can change channels on a T.V. Narrator 2: That night, Mr. Harms, the school principal, called. Mr. Harms: "I'm sorry, Mrs. Cream, I'm going to have to ask you to keep Camilla home from school. She's just too much of a distraction, and I've been getting phone calls from the other parents. They're afraid those stripes may be contagious." Narrator 3: he said. Camilla was so embarrassed. She couldn't believe that two days ago everyone liked her. Now, nobody wanted to be in the same room with her. Narrator 1: Her father tried to make her feel better. Father: "Is there anything I can get you, sweetheart?" Narrator 2: he asked. Camilla: "No, thank you," Narrator 3: sighed Camilla. What she really wanted was a nice plate of lima beans, but she had been laughed at enough for one day. Dr. Bumble: "Hmm, well, yes, I see. I think I'd better bring in the Specialists. We'll be right over.” Narrator 4: said Dr. Bumble to Mr. Cream on the phone. About an hour later, Dr. Bumble arrived with four people in long white coats. He introduced them to the Creams. Dr. Bumble: "This is Dr. Grop, Dr. Sponge, Dr. Cricket, and Dr. Young." Narrator 1: Then the Specialists went to work on Camilla. They squeezed and jabbed, tapped and tested. It was very uncomfortable. Dr. Grop: "Well, it's not the mumps." Dr. Sponge: "Or the measles." Dr. Cricket:"Definitely not chicken pox." Dr. Young: "Or sunburn." Narrator 2: replied the Specialists. Specialists:"Try these. Take one of each before bed." Narrator 4: said the specialists. They each handed her a bottle filled with different colored pills. Then they filed out the front door followed by Dr. Bumble. Narrator 1: That night, Camilla took her medicine. It was awful. Narrator 2: When she woke up the next morning, she did feel different, but when she got dressed, her clothes didn't fit right. She looked in the mirror, and there, staring back at her, was a giant, multi-colored pill with a face on it. Narrator 3: Dr. Bumble rushed over as soon as Mrs. Cream called. But this time, instead of the Specialists, he brought the Experts. Narrator 4: Dr. Gourd and Mr. Mellon were the finest scientific minds in the land. Once again, Camilla was poked and prodded, looked at and listened to. Narrator 1: The Experts wrote down lots of numbers. Then they huddled together and whispered. Dr. Gourd finally spoke. Dr. Gourd: "It might be a virus," Narrator 2: he announced with authority. Suddenly, fuzzy little virus balls appeared all over Camilla. Mr. Mellon: "Or possibly some form of bacteria," Narrator 3: said Mr. Mellon. Out popped squiggly little bacteria tails. Dr. Gourd: "Or it could be a fungus," Narrator 4: added Dr. Gourd. Instantly, Camilla was covered with different colored fungus blotches. The experts looked at Camilla, then each other. Experts: "We need to go over these numbers again back at the lab. We’ll call you when we know something," Narrator 1: said the Experts. But the Experts didn't have a clue, much less a cure. Narrator 2: By now, the T.V. news had found out about Camilla. Reporters from every channel were outside her house, telling the story of "The Bizarre Case of the Incredible Changing Kid." Narrator 3: Soon a huge crowd was camped out on the front lawn. Narrator 4: The Creams were swamped with all kinds of remedies from psychologists, allergists, herbalists, nutritionists, psychics, an old medicine man, a guru, and even a veterinarian. Narrator 1: Each so-called cure only added to poor Camilla's strange appearance until it was hard to even recognize her. She sprouted roots and berries and crystals and feathers and a long furry tail. But nothing worked. Narrator 2: One day, a woman who called herself an Environmental Therapist claimed she could cure Camilla. She said, Environmental Therapist: "Close your eyes, breathe deeply, and become one with your room." Camilla: "I wish you hadn't said that," Narrator 3: Camilla groaned. Slowly, she started to melt into the walls of her room. Her bed became her mouth, her nose was a dresser, and two paintings were her eyes. The therapist screamed and ran from the house. Mother: "What are we going to do? It just keeps getting worse and worse!" Narrator 4: cried Mrs. Cream. She began to sob. Narrator 1: At that moment, Mr. Cream heard a quiet little knock at the front door. He opened it, and there stood an old woman who was just as plump and sweet as a strawberry. Old Woman: "Excuse me, but I think I can help." Narrator 2: she said brightly. Narrator 3: She went into Camilla's room and looked around. Old Woman: "My goodness, what we have here is a bad case of the stripes. One of the worst I've ever seen!" Narrator 4: she said with a shake of her head. She pulled a container of small green beans from her bag. She said, Old Woman: "Here. These might do the trick." Mother: "Are those magic beans?" Narrator 1: asked Mrs. Cream. The old woman replied, Old Woman: "Oh my, no, there's no such thing. These are just plain old lima beans. I'll bet you'd like some, wouldn't you?" Narrator 2: she asked Camilla. Camilla wanted a big, heaping plateful of lima beans more than just about anything, but she was still afraid to admit it. She said, Camilla: "Yuck! No one likes lima beans, especially me!" Old Woman: "Oh, dear, I guess I was wrong about you." Narrator 3: said the old woman sadly. She put the beans back in her bag and started toward the door. Narrator 4: Camilla watched the old woman walk away. Those beans would taste so good. And being laughed at for eating them was nothing, compared to what she'd been going through. She finally couldn't stand it. Camilla: "Wait! The truth is...I really love lima beans." Narrator 1: she cried. The old woman smiled, popping a handful of beans into Camilla's mouth, and said, Old Woman: "I thought so." Camilla: "Mmmmmmm," Narrator 2: said Camilla. Suddenly the branches, feathers, and squiggly tails began to disappear.Then the whole room swirled around. When it stopped, there stood Camilla, and everything was back to normal. Camilla: "I'm cured!" Narrator 3: she shouted. The old woman said, Old Woman: "Yes, I knew the real you was in there somewhere." Narrator 4: She patted Camilla on the head and went outside and vanished into the crowd. Narrator 1: Afterward, Camilla wasn't quite the same. Narrator 2: Some of the kids at school said she was weird, but she didn't care a bit. Narrator 3: She ate all the lima beans she wanted, and she never had even a touch of stripes again.
5.1 Personal data Personal data is any data that relates to you and your identity. This includes data such as: •Name •Address •Telephone number •Email address •Bank details •Medical records •Salary •Political opinions You should be very careful about revealing any of your personal data! By revealing personal data to another, especially online, you are exposing yourself to dangers such as identity theft, fraud, bullying and blackmail. These types of dangers can be issues that arise as a result of revealing more personal thoughts and feelings to those that can use them against you. It is a more sinister viewpoint to take, but the moment you reveal any personal data to another, you are providing them with the potential to harm you or your identity. This isn't to say you should never speak to another, especially those unknown online, just understand how to recognise a danger and how to keep your identity secure. To keep yourself safe in your daily life, you are likely to have been taught to take measures such as locking doors, not talking to strangers and not venturing into unsafe areas. However, when many people go online, they relax their safety measures, perhaps because they are in the comfort of their own home, so do not think anything negative will happen. Many people that use the internet are genuine, but knowing how to detect the few that aren't is important. There are several guidelines for you to be aware of to keep your personal data confidential: •Have strong passwords set on any account that holds personal data. Stronger passwords include characters, numbers and symbols and are not a recognisable word. •Encrypt (scramble text so that it cannot be read without a decryption key) any personal data that you store on your computer. •Have a firewall present, scanning incoming and outgoing data from your computer system. •Regularly scan your computer with preventative software, such as an anti-virus package, that is used to identify a virus on a computer and remove it. •Make use of any biometric devices (devices that measures a person's biological data, such as thumbprints), that are built into technology. •Only visit and provide data to websites that are a trusted source. •Do not open any email attachments from a sender you do not recognise. •Check the URL attached to any link requesting data to see if it is genuine. •Be cautious about any pictures or opinions that you post or send to people. •Remove data about your location that is normally attached to your photos and videos that you may post, such as geotags. •Do not become friends on social networking sites with people you do not know. •Set all the privacy controls to the most secure setting that are available on social media accounts. •Report and block any suspicious user. •Use a nickname or pseudonym when using the internet for entertainment, for example, playing games. •If it is possible, use a virtual private network (VPN), an encrypted connection that can be used to send data more securely across a network. The ways in which some of these guidelines can be used in more detail will be explored throughout this chapter.
How is personal data collected? There are several ways that an unauthorised person can try and collect your data. These include: •phishing •smishing •vishing •pharming. Phishing Phishing is when a person sends a legitimate looking email to a user. The email contains a link to a website that also looks legitimate. The user is encouraged to click the link and to input personal data into a form on the website. The email could also simply ask the user to reply to the email with their personal data. The user is tricked into giving their personal data to a source that they believe is legitimate. However, both the email and the linked website are from a fake unauthorised source. The personal data that is input is then collected by an unauthorised person. This person can then use this data for criminal acts, for example, to commit fraud or steal the person's identity. Intimidation has become a common feature of phishing emails, threatening the user that they must click the link and rectify a situation immediately, or there will be a further issue. The aim of a phishing attack is to steal the user's personal data. Figure 5.1: Phishing. A real-life example of phishing PayPal have been the subject of several different phishing emails. Users receive an email that looks as though it has been sent from PayPal, as it has the PayPal branding. The email normally warns of an issue such as unexpected activity on their account, or that some kind of verification of their account is required. The user is then asked to click a link to log into their account and resolve the issue. The link takes them to a webpage that looks like the PayPal login page. If the user inputs their login details into this page, they will not be taken to their account. It is often at this stage that the user may realise that the email and webpage are fake. However, they have already given the unauthorised person their PayPal login details. Figure 5.2: An example of a phishing email claiming to be from PayPal. How to recognise phishing There are several guidelines to be aware of regarding emails to avoid being subjected to phishing. These include: •Don't even open an email that is not from a sender that you recognise or a trusted source. •Legitimate companies will never ask you for your personal data using email. Be immediately suspicious of any email that requests your personal data. •Legitimate companies will normally address you by your name. Be suspicious of any email that addresses you as ‘Dear Member' or ‘Dear Customer'. •Legitimate companies will send an email that uses their domain name. If you hover your mouse over the sender's name, it will show the email address that the email is sent from. If this does not look legitimate, for example, does not contain the correct domain name, then it is probably fake. For example, if the sender's email is user@paypal1.com rather than user@paypal.com, this is from an incorrect domain name. •Legitimate companies are protective of their professional reputation and thoroughly check any communications. They will make sure that all information given is grammatically and correctly spelt. Be suspicious of any email that contains bad grammar or spelling mistakes. •A link in an email from a legitimate company will also normally contain the domain name of the company. You can sometimes hover over the link, or right click and inspect the link, to see the address of the URL that is attached. If the URL does not contain the domain name, or also contains typical errors such as spelling mistakes, then be suspicious of this. PRACTICAL ACTIVITY 5.02 Ask a friend or a member of your family if they have ever received an email that they believed was a phishing email. Ask them how they identified it was phishing. Ask them if they know all of the given guidelines for identifying phishing emails. Smishing Smishing (or SMS phishing) is a variant of phishing that uses SMS text messages to lure the user into providing their personal details. The user is sent an SMS text message that either contains a link to a website, in the same way that phishing does, or it will ask the user to call a telephone number to resolve an urgent issue. The same advice can be followed for smishing as given for phishing. The user must question at all times any links that are sent from an unknown or suspicious user. It is advisable that if a user believes the message may be legitimate, to type in the domain name for the legitimate company website into their web browser, rather than following the link in the message. Users should block any numbers that they believe are suspicious to prevent any further risk of smishing from that number. Figure 5.3: Smishing. Vishing Vishing (or voice phishing) has the same aim as phishing, to obtain a user's personal details. The user receives a telephone call that could either be an automated system or could be a real person. An automated voice could speak to the user and advise them that an issue has occurred, such as there has been suspicious activity regarding their bank account. The user may then be asked to call another number, or just to simply press a digit and be directed to another automated system. This system will ask them to provide their bank account details to resolve the issue. The bank account details have then been obtained by the unauthorised user and can be used to commit a crime against the user. The automated system could be replaced by a real person who will try to do the same thing. They will try to convince the user that there has been an issue with an account they have and to provide the log-in details or PIN for the account to verify who they are so the issue can be resolved. The precaution to take for vishing is that no company will ever call you and ask you to provide any log-in details or PIN details over the telephone. They may ask you to provide other personal information, and if you are in doubt that the person on the other end of the phone is legitimate, it is always advisable to put the phone down and call the company back on a legitimate number that you may already know or can obtain. Figure 5.4: Vishing. Pharming Pharming is when an unauthorised user installs malicious code on a person's hard drive or server. The malicious code is designed to redirect a user to a fake website when they type in the address of a legitimate one. The fake website is designed to look like the legitimate one, to trick the user and make sure they are not aware that their request has been redirected. The user will then enter their personal details into the fake website, believing it is the legitimate one, and the unauthorised person will now have their personal data. A common technique used in pharming is called domain name server (DNS) cache poisoning. This technique exploits vulnerabilities in the DNS and diverts the internet traffic intended for a legitimate server toward a fake one instead. The unauthorised user needs to find a way to install the malicious code on the computer. They often hide the malicious code in an email attachment or link. When the user opens the email attachment or clicks the link, the malicious code is downloaded also. Figure 5.5: Pharming. The aim of a pharming attack is also to steal a user's personal data. A real-life example of pharming In 2007 50 different companies all over the world were subject to a pharming attack, these included PayPal, eBay, Barclays bank and American Express. Over a three-day period, hackers managed to infect over 1000 PCs a day with a malicious pharming code. When users who had been infected visited the websites of the different companies, they were redirected to a legitimate-looking version of the site that was designed to steal their personal data. The original email, containing the malicious code, was set up to look like a shocking news story. Users were encouraged to click a link in the email to find out more information. The code was downloaded when the user clicked the link. This was quite a sophisticated attack that required legitimate looking websites to be set up for a large number of companies. It is not known how much money the hackers were able to retrieve as a result. How to prevent pharming All of the guidelines to avoid being subjected to phishing are also relevant for recognising pharming. There are also several other precautions that can be taken to check for pharming attacks. These include: •Have a firewall installed and operational. A firewall monitors incoming and outgoing traffic from your computer. It checks this traffic against set criteria and will flag and stop any traffic that does not meet the criteria. A firewall could detect and block suspicious traffic, such as a malicious code trying to enter your system. •Have an anti-virus program installed that is designed to detect malicious pharming code. You need to scan your computer on a regular basis to check for any malicious code. It is advisable to set up an automatic scan on a daily basis at a time when your computer will normally be switched on. •Be aware when using public Wi-Fi connections. A hacker could look to directly access your computer and install the malicious code if you are connected to a public Wi-Fi connection. It is often advisable to use a VPN when using public Wi-Fi. This will help shield your internet activity and personal details from a hacker, making it more difficult for them to access your computer. Smishing can also be used as a form of pharming. A user is sent a link, that when they click is designed to download malware onto their mobile device. Therefore, it is advisable to have security software installed on your mobile and also scan it regularly to detect any presence of malware.
Multiple Choice Questions A6. You’ve hired a third-party to gather information about your company’s servers and data. The third-party will not have direct access to your internal network but can gather information from any other source. Which of the following would BEST describe this approach? ❍ A. Backdoor testing ❍ B. Passive footprinting ❍ C. OS fingerprinting ❍ D. Partially known environment A7. Which of these protocols use TLS to provide secure communication? (Select TWO) ❍ A. HTTPS ❍ B. SSH ❍ C. FTPS ❍ D. SNMPv2 ❍ E. DNSSEC ❍ F. SRTP A8. Which of these threat actors would be MOST likely to attack systems for direct financial gain? ❍ A. Organized crime ❍ B. Hacktivist ❍ C. Nation state ❍ D. Competitor A9. A security incident has occurred on a file server. Which of the following data sources should be gathered to address file storage volatility? (Select TWO) ❍ A. Partition data ❍ B. Kernel statistics ❍ C. ROM data ❍ D. Temporary file systems ❍ E. Process table Quick Answer: 33 The Details: 43 Quick Answer: 33 The Details: 44 Quick Answer: 33 The Details: 45 Quick Answer: 33 The Details: 46 6 Practice Exam A - Questions A10. An IPS at your company has found a sharp increase in traffic from all-in-one printers. After researching, your security team has found a vulnerability associated with these devices that allows the device to be remotely controlled by a third-party. Which category would BEST describe these devices? ❍ A. IoT ❍ B. RTOS ❍ C. MFD ❍ D. SoC A11. Which of the following standards provides information on privacy and managing PII? ❍ A. ISO 31000 ❍ B. ISO 27002 ❍ C. ISO 27701 ❍ D. ISO 27001 A12. Elizabeth, a security administrator, is concerned about the potential for data exfiltration using external storage drives. Which of the following would be the BEST way to prevent this method of data exfiltration? ❍ A. Create an operating system security policy to prevent the use of removable media ❍ B. Monitor removable media usage in host-based firewall logs ❍ C. Only allow applications that do not use removable media ❍ D. Define a removable media block rule in the UTM Quick Answer: 33 The Details: 47 Quick Answer: 33 The Details: 48 Quick Answer: 33 The Details: 49 Practice Exam A - Questions 7 A13. A CISO (Chief Information Security Officer) would like to decrease the response time when addressing security incidents. Unfortunately, the company does not have the budget to hire additional security engineers. Which of the following would assist the CISO with this requirement? ❍ A. ISO 27701 ❍ B. PKI ❍ C. IaaS ❍ D. SOAR A14. An insurance company has created a set of policies to handle data breaches. The security team has been given this set of requirements based on these policies: • Access records from all devices must be saved and archived • Any data access outside of normal working hours must be immediately reported • Data access must only occur inside of the country • Access logs and audit reports must be created from a single database Which of the following should be implemented by the security team to meet these requirements? (Select THREE) ❍ A. Restrict login access by IP address and GPS location ❍ B. Require government-issued identification during the onboarding process ❍ C. Add additional password complexity for accounts that access data ❍ D. Conduct monthly permission auditing ❍ E. Consolidate all logs on a SIEM ❍ F. Archive the encryption keys of all disabled accounts ❍ G. Enable time-of-day restrictions on the authentication server Quick Answer: 33 The Details: 50 Quick Answer: 33 The Details: 51 8 Practice Exam A - Questions A15. Rodney, a security engineer, is viewing this record from the firewall logs: UTC 04/05/2018 03:09:15809 AV Gateway Alert 136.127.92.171 80 -> 10.16.10.14 60818 Gateway Anti-Virus Alert: XPACK.A_7854 (Trojan) blocked. Which of the following can be observed from this log information? ❍ A. The victim's IP address is 136.127.92.171 ❍ B. A download was blocked from a web server ❍ C. A botnet DDoS attack was blocked ❍ D. The Trojan was blocked, but the file was not A16. A user connects to a third-party website and receives this message: Your connection is not private. NET::ERR_CERT_INVALID Which of the following attacks would be the MOST likely reason for this message? ❍ A. Brute force ❍ B. DoS ❍ C. On-path ❍ D. Disassociation A17. Which of the following would be the BEST way to provide a website login using existing credentials from a third-party site? ❍ A. Federation ❍ B. 802.1X ❍ C. PEAP ❍ D. EAP-FAST Quick Answer: 33 The Details: 53 Quick Answer: 33 The Details: 54 Quick Answer: 33 The Details: 55 Practice Exam A - Questions 9 A18. A system administrator, Daniel, is working on a contract that will specify a minimum required uptime for a set of Internet-facing firewalls. Daniel needs to know how often the firewall hardware is expected to fail between repairs. Which of the following would BEST describe this information? ❍ A. MTBF ❍ B. RTO ❍ C. MTTR ❍ D. MTTF A19. An attacker calls into a company’s help desk and pretends to be the director of the company’s manufacturing department. The attacker states that they have forgotten their password and they need to have the password reset quickly for an important meeting. What kind of attack would BEST describe this phone call? ❍ A. Social engineering ❍ B. Tailgating ❍ C. Watering hole ❍ D. On-path A20. A security administrator has been using EAP-FAST wireless authentication since the migration from WEP to WPA2. The company’s network team now needs to support additional authentication protocols inside of an encrypted tunnel. Which of the following would meet the network team’s requirements? ❍ A. EAP-TLS ❍ B. PEAP ❍ C. EAP-TTLS ❍ D. EAP-MSCHAPv2 Quick Answer: 33 The Details: 56 Quick Answer: 33 The Details: 57 Quick Answer: 33 The Details: 58 10 Practice Exam A - Questions A21. Which of the following would be commonly provided by a CASB? (Select TWO) ❍ A. List of all internal Windows devices that have not installed the latest security patches ❍ B. List of applications in use ❍ C. Centralized log storage facility ❍ D. List of network outages for the previous month ❍ E. Verification of encrypted data transfers ❍ F. VPN connectivity for remote users A22. The embedded OS in a company’s time clock appliance is configured to reset the file system and reboot when a file system error occurs. On one of the time clocks, this file system error occurs during the startup process and causes the system to constantly reboot. Which of the following BEST describes this issue? ❍ A. DLL injection ❍ B. Resource exhaustion ❍ C. Race condition ❍ D. Weak configuration A23. A recent audit has found that existing password policies do not include any restrictions on password attempts, and users are not required to periodically change their passwords. Which of the following would correct these policy issues? (Select TWO) ❍ A. Password complexity ❍ B. Password expiration ❍ C. Password history ❍ D. Password lockout ❍ E. Password recovery Quick Answer: 33 The Details: 59 Quick Answer: 33 The Details: 60 Quick Answer: 33 The Details: 61 Practice Exam A - Questions 11 A24. What kind of security control is associated with a login banner? ❍ A. Preventive ❍ B. Deterrent ❍ C. Corrective ❍ D. Detective ❍ E. Compensating ❍ F. Physical A25. A security team has been provided with a noncredentialed vulnerability scan report created by a thirdparty. Which of the following would they expect to see on this report? ❍ A. A summary of all files with invalid group assignments ❍ B. A list of all unpatched operating system files ❍ C. The version of web server software in use ❍ D. A list of local user accounts A26. A business manager is documenting a set of steps for processing orders if the primary Internet connection fails. Which of these would BEST describe these steps? ❍ A. Communication plan ❍ B. Continuity of operations ❍ C. Stakeholder management ❍ D. Tabletop exercise A27. A security administrator is concerned about data exfiltration resulting from the use of malicious phone charging stations. Which of the following would be the BEST way to protect against this threat? ❍ A. USB data blocker ❍ B. Personal firewall ❍ C. MFA ❍ D. FDE Quick Answer: 33 The Details: 62 Quick Answer: 33 The Details: 63 Quick Answer: 33 The Details: 64 Quick Answer: 33 The Details: 65 12 Practice Exam A - Questions A28. A company would like to protect the data stored on laptops used in the field. Which of the following would be the BEST choice for this requirement? ❍ A. MAC ❍ B. SED ❍ C. CASB ❍ D. SOAR A29. A file server has a full backup performed each Monday at 1 AM. Incremental backups are performed at 1 AM on Tuesday, Wednesday, Thursday, and Friday. The system administrator needs to perform a full recovery of the file server on Thursday afternoon. How many backup sets would be required to complete the recovery? ❍ A. 2 ❍ B. 3 ❍ C. 4 ❍ D. 1