Computer Knowledge · General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice
  1. to facilitate access to external networks

  2. to stop the target server from being able to handle requests

  3. to scan the data on the target server

  4. to obtain all addresses in the address book in the server

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

A Denial of Service (DoS) attack aims to disrupt or completely shut down a network, service, or server, making it unavailable to its intended users. This is typically achieved by overwhelming the target with a flood of superfluous requests.

Multiple choice
  1. establishing personal firewalls on each computer

  2. encrypting all sensitive data that is stored on the servers

  3. employees must use a card key when entering a secure area

  4. ensuring that all os and antivirus software is up to date

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Physical security involves measures designed to safeguard personnel, hardware, programs, networks, and data from physical circumstances and events. Requiring a card key to enter a secure area directly controls physical access to the facility, unlike firewalls, encryption, and software updates, which are logical or digital security measures.

Multiple choice
  1. Unseat and reconnect the hard drive connectors on the host.

  2. Disconnect the host from the network

  3. Check the host hard drive for errors and file system issues.

  4. Examine the Device Manager on the host for device conflicts.

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Disconnecting the host from the network is an immediate way to isolate the device and observe if the network traffic flood stops. If the network performance improves immediately after disconnection, it confirms that the specific host was the source of the traffic.

Multiple choice
  1. An attack that uses TCP/IP messages to flood ports

  2. An attack where computers use false IP and MAC addresses

  3. A malicious software to

  4. The use of personal information to trick users

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Spoofing is a technique where an attacker masquerades as another device or user on a network by falsifying data, such as IP or MAC addresses, to bypass access controls. This allows the attacker to intercept traffic or gain unauthorized access to systems.

Multiple choice
  1. phising

  2. pharming

  3. hoax

  4. vishing

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

A hoax is a false warning designed to trick users into taking actions that compromise security, like changing settings or revealing credentials. Phishing steals data directly, pharming redirects to fake sites, and vishing uses phone calls - but hoaxes rely on false warnings.

Multiple choice
  1. Enable System Restore and create a restore point

  2. Educate the user about how to avoid malware

  3. Update the antivirus software and run a full system scan

  4. Move the infected system to a lab with no network connectivity

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

When malware is identified, the first priority is containing the threat by isolating the system from the network to prevent spread or data exfiltration. Moving to a lab with no network connectivity is the immediate containment step. Updates, scans, and user education come after containment.

Multiple choice
  1. Phising

  2. Spear Phising

  3. Spoofing

  4. Impersonation

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

Spear phishing uses personalized information about specific targets to make attacks more convincing. Unlike generic phishing which casts a wide net, spear phishing tailors messages using the victim's name, role, or other personal details. Spoofing fakes identities, and impersonation pretends to be someone else - but spear phishing is defined by its personalized approach.

Multiple choice
  1. Dumpster diving

  2. Phising

  3. Spear phising

  4. Impersonation

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Dumpster diving involves searching through trash or recycling bins to find sensitive information like passwords, account numbers, or corporate documents. This physical social engineering attack exploits improper disposal practices. Phishing and spear phishing use electronic messages, while impersonation involves pretending to be someone else.

Multiple choice
  1. Give your information out

  2. Put your password in your pocket

  3. Share your password

  4. Keep your Password as a secrect

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Keeping your password strictly confidential is fundamental to preventing unauthorized access and interception. Sharing your password or giving out personal information directly compromises your security.

Multiple choice
  1. Fake Messages

  2. phishing

  3. Fraudulent E-mails

  4. fishing

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Phishing refers to the practice of sending fraudulent emails that mimic legitimate organizations to trick recipients into revealing sensitive information like passwords or credit card numbers. While it can involve other communication channels, fraudulent emails are the most common form.

Multiple choice
  1. Wall on fire in your house

  2. To protect Your network from hackers

  3. Burning wall

  4. To protect your wall from fire

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

A firewall is a security system designed to prevent unauthorized access to or from a private network. It acts as a barrier, filtering incoming and outgoing traffic based on established security rules to block potential threats.