Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is NOT a common type of cybersecurity threat intelligence tool?

  1. Security information and event management (SIEM) systems

  2. Threat intelligence platforms (TIPs)

  3. Vulnerability scanners

  4. Network intrusion detection systems (NIDS)

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Vulnerability scanners are typically not considered a type of cybersecurity threat intelligence tool.

Multiple choice

What is the process of identifying and exploiting vulnerabilities in systems and networks known as?

  1. Penetration testing

  2. Vulnerability assessment

  3. Risk management

  4. Threat hunting

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Penetration testing involves simulating an attack on a system or network to identify vulnerabilities that can be exploited.

Multiple choice

Which of the following is NOT a common type of cybersecurity threat intelligence feed?

  1. Commercial threat intelligence feeds

  2. Open-source threat intelligence feeds

  3. Government threat intelligence feeds

  4. Internal threat intelligence feeds

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Internal threat intelligence feeds are typically not considered a type of cybersecurity threat intelligence feed.

Multiple choice

What is the process of continuously monitoring and analyzing security logs and events to detect potential threats known as?

  1. Security monitoring

  2. Threat hunting

  3. Vulnerability assessment

  4. Incident response

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Security monitoring involves continuously collecting and analyzing security logs and events to identify suspicious activities or potential threats.

Multiple choice

Which of the following is NOT a common type of cybersecurity threat intelligence analysis?

  1. Strategic analysis

  2. Tactical analysis

  3. Operational analysis

  4. Technical analysis

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Strategic analysis is typically not considered a type of cybersecurity threat intelligence analysis.

Multiple choice

Which of the following is NOT a common type of security breach in sports events?

  1. Unauthorized access to restricted areas

  2. Counterfeit tickets

  3. Crowd disturbances

  4. Doping violations

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Doping violations are not a type of security breach but rather a violation of sports rules and regulations involving the use of performance-enhancing substances.

Multiple choice

Which of the following is a common defense technique used against AI-powered cyber attacks?

  1. Adversarial Machine Learning

  2. Zero-Day Exploits

  3. DDoS Attacks

  4. Phishing Emails

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Adversarial Machine Learning involves creating inputs or examples that are designed to fool or mislead AI algorithms, making them less effective in carrying out attacks.

Multiple choice

Which of the following is NOT a common cause of mobile device security issues?

  1. Malware and viruses

  2. Weak passwords

  3. Unsecured Wi-Fi networks

  4. Physical theft of the device

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Physical theft of the device is not a common cause of mobile device security issues. Malware and viruses, weak passwords, and unsecured Wi-Fi networks are more common causes.

Multiple choice

What is the best way to protect a mobile device from malware and viruses?

  1. Install a mobile security app

  2. Keep the device's software up to date

  3. Avoid downloading apps from unknown sources

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the above are good ways to protect a mobile device from malware and viruses.

Multiple choice

What is the term for the unauthorized access, use, disclosure, disruption, modification, or destruction of IoT data?

  1. IoT data breach

  2. IoT data leakage

  3. IoT data theft

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the options are terms used to describe the unauthorized access, use, disclosure, disruption, modification, or destruction of IoT data.

Multiple choice

What is the term for the unauthorized access to IoT data?

  1. Data breach

  2. Data leakage

  3. Data theft

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

All of the options are terms used to describe the unauthorized access to IoT data.

Multiple choice

Which of the following is NOT a security concern associated with using mobile devices in education?

  1. The risk of mobile devices being lost or stolen

  2. The risk of mobile devices being hacked

  3. The risk of mobile devices being used to access inappropriate content

  4. The risk of mobile devices being used to spread viruses and malware

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Mobile devices are not typically used to spread viruses and malware.

Multiple choice

What is a Man-in-the-Middle (MitM) attack?

  1. An attack where an attacker intercepts and modifies data passing between two parties.

  2. An attack where an attacker impersonates a legitimate user to access sensitive information.

  3. An attack where an attacker gains unauthorized access to a network or system.

  4. An attack where an attacker disrupts the normal operation of a network or system.

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

In a MitM attack, the attacker positions themselves between two communicating parties and intercepts their data. They can then modify the data, eavesdrop on the communication, or impersonate one of the parties.

Multiple choice

What are some common techniques used in MitM attacks?

  1. ARP spoofing

  2. DNS spoofing

  3. SSL stripping

  4. Packet sniffing

Reveal answer Fill a bubble to check yourself
Correct answer
Explanation

ARP spoofing, DNS spoofing, SSL stripping, and packet sniffing are all common techniques used in MitM attacks. ARP spoofing allows an attacker to redirect traffic to their own computer, DNS spoofing allows them to redirect users to malicious websites, SSL stripping allows them to downgrade a secure connection to an insecure one, and packet sniffing allows them to capture data passing over a network.

Multiple choice

What are some signs that you may be the victim of a MitM attack?

  1. Your web browser displays a warning message about an invalid security certificate.

  2. You are unable to access certain websites or online services.

  3. Your internet connection is slow or unreliable.

  4. You see strange or unexpected messages or pop-ups on your computer.

Reveal answer Fill a bubble to check yourself
Correct answer
Explanation

If you see any of these signs, it is possible that you are the victim of a MitM attack. However, it is also possible that these signs are caused by other issues, such as a network problem or a malware infection. It is important to investigate further to determine the cause of the problem.