Computer Knowledge ยท General Awareness

Information Security

4,143 Questions

Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.

Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection

Information Security Questions

Multiple choice

Which of the following is an example of a stream cipher?

  1. AES

  2. RSA

  3. ECC

  4. RC4

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

RC4 (Rivest Cipher 4) is an example of a stream cipher.

Multiple choice

Which of the following is an example of a public-key cryptosystem?

  1. AES

  2. RSA

  3. ECC

  4. SHA-256

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

RSA (Rivest-Shamir-Adleman) is an example of a public-key cryptosystem.

Multiple choice

Which of the following is an example of a private-key cryptosystem?

  1. AES

  2. RSA

  3. ECC

  4. SHA-256

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

AES (Advanced Encryption Standard) is an example of a private-key cryptosystem.

Multiple choice

What are the three main types of security threats?

  1. Natural disasters, human error, and cyberattacks

  2. Malware, phishing, and social engineering

  3. Hackers, crackers, and script kiddies

  4. DDoS attacks, zero-day exploits, and advanced persistent threats

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

The three main types of security threats are malware, phishing, and social engineering. Malware is malicious software that can damage or disable computer systems, phishing is a type of online fraud that attempts to trick users into revealing personal information, and social engineering is a type of attack that relies on human error to trick users into compromising security.

Multiple choice

What is the best way to protect against phishing attacks?

  1. Use strong passwords and change them regularly

  2. Be suspicious of unsolicited emails and links

  3. Never enter personal information on a website that you don't trust

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The best way to protect against phishing attacks is to use strong passwords and change them regularly, be suspicious of unsolicited emails and links, and never enter personal information on a website that you don't trust.

Multiple choice

What is the most common type of malware?

  1. Viruses

  2. Worms

  3. Trojan horses

  4. Ransomware

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Viruses are the most common type of malware. They are self-replicating programs that can attach themselves to other files and spread from one computer to another.

Multiple choice

What is the best way to protect against ransomware attacks?

  1. Back up your data regularly

  2. Use strong passwords and change them regularly

  3. Be suspicious of unsolicited emails and links

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The best way to protect against ransomware attacks is to back up your data regularly, use strong passwords and change them regularly, and be suspicious of unsolicited emails and links.

Multiple choice

What is the difference between a denial-of-service (DoS) attack and a distributed denial-of-service (DDoS) attack?

  1. A DoS attack is launched from a single computer, while a DDoS attack is launched from multiple computers

  2. A DoS attack targets a single server, while a DDoS attack targets multiple servers

  3. A DoS attack is more difficult to defend against than a DDoS attack

  4. All of the above

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

A DoS attack is launched from a single computer, while a DDoS attack is launched from multiple computers. A DoS attack targets a single server, while a DDoS attack targets multiple servers. A DDoS attack is more difficult to defend against than a DoS attack.

Multiple choice

What is the best way to protect against social engineering attacks?

  1. Be aware of the different types of social engineering attacks

  2. Be suspicious of unsolicited emails and links

  3. Never give out personal information over the phone or online unless you are sure who you are dealing with

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The best way to protect against social engineering attacks is to be aware of the different types of social engineering attacks, be suspicious of unsolicited emails and links, and never give out personal information over the phone or online unless you are sure who you are dealing with.

Multiple choice

What is the best way to protect against zero-day exploits?

  1. Keep software up to date with the latest security patches

  2. Use a firewall and intrusion detection system (IDS)

  3. Educate employees about security risks and best practices

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The best way to protect against zero-day exploits is to keep software up to date with the latest security patches, use a firewall and intrusion detection system (IDS), and educate employees about security risks and best practices.

Multiple choice

What is the best way to protect against advanced persistent threats (APTs)?

  1. Use a multi-layered security approach

  2. Educate employees about security risks and best practices

  3. Monitor network traffic for suspicious activity

  4. All of the above

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

The best way to protect against advanced persistent threats (APTs) is to use a multi-layered security approach, educate employees about security risks and best practices, and monitor network traffic for suspicious activity.

Multiple choice

Which of the following is NOT a common security threat in computer engineering?

  1. Malware

  2. Phishing

  3. Spam

  4. Hardware failure

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Hardware failure is not a common security threat in computer engineering. Common security threats include malware, phishing, and spam.

Multiple choice

What is the term used to describe the illegal practice of using a computer or electronic device to access or manipulate data without authorization?

  1. Cybercrime

  2. Hacking

  3. Phishing

  4. Malware

Reveal answer Fill a bubble to check yourself
A Correct answer
Explanation

Cybercrime refers to illegal activities committed using computers or electronic devices, including hacking, phishing, and malware attacks.

Multiple choice

Which of the following is NOT a common type of data privacy and security risk in educational research?

  1. Unauthorized access to research data

  2. Accidental data loss or destruction

  3. Malware attacks

  4. Human error

Reveal answer Fill a bubble to check yourself
C Correct answer
Explanation

Malware attacks are not typically a common type of data privacy and security risk in educational research. However, unauthorized access to research data, accidental data loss or destruction, and human error are all common risks.

Multiple choice

Which of the following is NOT a common method for authenticating digital evidence?

  1. Hash value verification

  2. Metadata analysis

  3. Chain of custody documentation

  4. Witness testimony

Reveal answer Fill a bubble to check yourself
D Correct answer
Explanation

Witness testimony is not typically used to authenticate digital evidence. Instead, methods such as hash value verification, metadata analysis, and chain of custody documentation are commonly employed.