Computer Knowledge ยท General Awareness
Information Security
4,143 Questions
Information security involves protecting computer systems and data from unauthorized access, cyber threats, and damage. It is a core part of the computer knowledge section in various banking and government exams. Practicing these concepts helps in understanding digital signatures, network security, and access control effectively.
Cybersecurity threatsAccess controlCryptography basicsSecurity risk managementDatabase protection
Information Security Questions
-
Burp intruder target tab's host field
-
Burp scanner
-
Proxy object
-
Burp repeater
-
Burp intruder
E
Correct answer
Explanation
This is a tool for automating customised attacks against web applications.
-
Proxy class
-
Transport layer security
-
Secure electronic transaction
-
Burp suit
-
Burp repeater
D
Correct answer
Explanation
This platform for security testing of web applications includes detailed analysis and rendering of requests and responses.
-
StockPresentation
-
Proxy instance
-
Burp intruder target tab
-
Burp passive scanning
-
Burp live scanning
E
Correct answer
Explanation
In this technique, you tell burp what your target scope is for active and passsive scanning.
-
Message integrity check
-
S/MIME
-
OWASP top ten
-
Burp repeater
-
Application proxy gateway
C
Correct answer
Explanation
It provides powerful awareness document for web application security.
-
Web application security testing
-
Application proxy gateway
-
Packet filtering gateway
-
Burp repeater
-
Non-repudiation
A
Correct answer
Explanation
This technique is an in-depth assessment of the application web pages to identify inherent and potential vulnerabilities.
-
is relevant to the user
-
is not relevant to the user
-
may be maliciously handled by the user
-
is confidential
C
Correct answer
Explanation
Information hiding is a design principle where internal implementation details are encapsulated. The goal is to prevent users from accessing or manipulating internal data structures that could lead to system instability or malicious interference.
-
Sender authentication
-
Lattice model of access security
-
Chinese wall security policy
-
Military security policy
-
Security policy
C
Correct answer
Explanation
This security policy is used to address specific requirements for access protection required by commercial establishments.
-
Non-repudiation
-
Replay
-
Masquerade
-
Modification of message
-
Vulnerability
B
Correct answer
Explanation
This category of active attacks involves the passive capture of a data unit.
-
Bell la padula confidentiality model
-
Lattice model of access security
-
Military security policy
-
Multilevel security model
-
Sender authenticity
A
Correct answer
Explanation
The objective of this security model is to recognise permissible information transmission.
-
Transport layer security
-
Secure socket layer
-
Message integrity check
-
Message confidentiality
-
Stateful inspection firewall
A
Correct answer
Explanation
This security mechanism does not support Fortezza type in both the key exchange and encryption/decryption algorithms.
-
Non-repudiation
-
Commercial security policy
-
Military security policy
-
Security policy
-
Multilevel security model
B
Correct answer
Explanation
In this security policy, corporations are often eager to protect information about the details of corporate finance.
-
Ease of use
-
Vulnerability
-
Denial of service
-
Modification of message
-
Masquerade
C
Correct answer
Explanation
In this category of active attacks, an entity may suppress all messages directed to a particular destination.
-
Secure socket layer
-
Message authentication code
-
Personal firewall
-
Stateful inspection firewall
-
Message confidentiality
C
Correct answer
Explanation
This security technique screens based on information in a single packet, using header or data.
-
Authentication of users
-
Worm
-
Logic bomb
-
Trojan horse
-
Threat
B
Correct answer
Explanation
This type of malicious code is a program that spreads copies of itself through a network.
-
Stateful inspection firewall
-
Key-Info
-
Transport layer security
-
Secure socket layer
-
Secure electronic transaction
E
Correct answer
Explanation
This security mechanism ensures that the contents of the message remain unchanged during transition between the cardholders and the merchants.