Information Security Fundamentals

A comprehensive quiz covering cryptography, network security, authentication protocols, and identity management concepts

20 Questions Published

Questions

Question 1 Multiple Choice (Single Answer)

The identity management component that acts as a repository for user ID and user profile information, that plays a key role in user authentication is

  1. Authentication services
  2. Authorization services
  3. Directory services
  4. Personalization services
Question 2 Multiple Choice (Single Answer)

A person has a total of 3 accounts - a LDAP based security system, Active Directory Server and a RADIUS server. An administrator will be responsible for adding the same user to multiple systems and maintaining those accounts. Identify the process that helps in automating the task of keeping the passwords same across various systems

  1. Password single sign on
  2. Password management
  3. Password self-help
  4. Password synchronization
Question 3 Multiple Choice (Single Answer)

In Security attacks how do you classify a SYN Flooding atack?

  1. DOS attacks
  2. Cryptanalysis
  3. Social Engineering
  4. repudiation attack
Question 4 Multiple Choice (Single Answer)

Which vulnerability is Exploited by TEAR DROP attack

  1. Microsoft IIS server vulnerability
  2. Vulnerability in the Google seach Engine
  3. Vulnerability in the reassembly mechanism of IP datagrams.
  4. Vulnerabilty in NETSCAPE
Question 5 Multiple Choice (Single Answer)

What is the Requirement for Kerberos to Work

  1. the clocks between the parties in communication must be in sync
  2. you need to have a system with linux installed
  3. you have to use RSA for encryption
  4. key length should be 128 bit or more
Question 6 Multiple Choice (Single Answer)

CHAP stands for

  1. Carrier Handshake Availability Protocol
  2. ChallengeHandover Authentication Protocol
  3. canonical Handshake Availability Protocol
  4. Challnge Handshake Authentication Protocol
Question 7 Multiple Choice (Single Answer)

The Science associated with Breaking A CIPHER is called as

  1. Cryptanalysis
  2. crptology
  3. cryptogram
  4. steganography
Question 8 Multiple Choice (Single Answer)

SYN FLOODING attack exploits a vulnerability in

  1. hole in IIS
  2. vulnerability in NETSCAPE
  3. TCP/IP three way Handshake
  4. SCTP fourway Handshake
Question 9 Multiple Choice (Single Answer)

CIA of security stand for

  1. Confidentiality,Integrity and Availability
  2. Confidentiality,Integrity and accessibility
  3. confidentiality Informativity Authentication
  4. Confidentiality Integrity Access Control
Question 10 Multiple Choice (Single Answer)

What is the best way they can do this?

  1. SYMMETRIC CRYPTOSYSTEM
  2. ASYMETTRIC CRYPTOSYSTEM
  3. HYBRID CRYPTOSYSTEM
  4. NONE
Question 11 Multiple Choice (Single Answer)

Passwords are usually stored in the systems

  1. Hashed form
  2. Encrypted Form
  3. Plain text form
  4. none
Question 12 Multiple Choice (Single Answer)

The Science associated with hiding text within text is known as (information can be hidden digitally also)

  1. Steganography
  2. Cryptography
  3. Cryptology
  4. none
Question 13 Multiple Choice (Single Answer)

Buffer overflows are most dangerous when they occur in programs

  1. Run by the administrator
  2. Run by normal user
  3. Run by the attacker
  4. Run by the remote user
Question 14 True/False

DES IS STILL SECURE

  1. True
  2. False
Question 15 True/False

Digital Signature does not provide protection from tampering.

  1. True
  2. False
Question 16 True/False

signing the document is same as Signing the hash wrt to providing same level of data integrity

  1. True
  2. False
Question 17 Multiple Choice (Single Answer)

Given the necessary Time and necessary resources Which one of the following systems is 100% secure?

  1. DES
  2. TRIPLE DES
  3. ONE TIME PADS
  4. BLOW FISH
Question 18 Multiple Choice (Single Answer)

BLOWFISH is Designed BY

  1. WHITFIELD DIFFE
  2. LEONARD ADLEMAN
  3. RON RIVEST
  4. BRUCE SCHIENER
Question 19 Multiple Choice (Single Answer)

Which mobile storage devices can potentially store confidential information and should be protected at all times?

  1. Remote Access Memory (RAM)
  2. A mobile messaging device (i.e. Blackberry or Treo)
  3. Virtual Private Networks (VPNs)
  4. Digital Camera
Question 20 Multiple Choice (Single Answer)

Which of the following wireless technologies provides the most security?

  1. Bluetooth
  2. Wireless Encryption Protocol (WEP)
  3. Wi-Fi Protected Access (WPA)
  4. Microwave communications