Twa kɔ nsɛm atitiriw so
Log in
Sign up for FREE
arrow_back
Laabri

AP Cybersecurity: Unit 03 - Test Review

star
star
star
star
star
Last updated about 3 hours ago
63 Nsɛmmisa
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
1
Asemmisa {{asɛmmisaAhyɛnsode}}
1.

An attacker secretly intercepts communication between a user and a banking website, altering messages before passing them along. What type of attack is this?

Asemmisa {{asɛmmisaAhyɛnsode}}
2.

A hacker sets up a Wi-Fi network called “CoffeeShop_FreeWiFi” that looks nearly identical to the real café network. Unsuspecting customers connect and the attacker collects their traffic. This is an example of:

Asemmisa {{asɛmmisaAhyɛnsode}}
3.

Which attack involves flooding the wireless frequency with strong EM signals to block legitimate traffic?

Asemmisa {{asɛmmisaAhyɛnsode}}
4.

In an ARP poisoning attack, what is the attacker attempting to alter?

Asemmisa {{asɛmmisaAhyɛnsode}}
5.

Faking a MAC address in an ARP poisoning attack is called:

Asemmisa {{asɛmmisaAhyɛnsode}}
6.

An attacker sends a switch thousands of Ethernet frames with different MAC addresses, forcing it into broadcast mode. What attack is this?

Asemmisa {{asɛmmisaAhyɛnsode}}
7.

A victim types in the URL of their bank, but is silently redirected to a fake site that steals credentials. What attack caused this?

Asemmisa {{asɛmmisaAhyɛnsode}}
8.

Hackers drive around neighborhoods with laptops and Wi-Fi antennas, mapping out wireless networks and their leakage outside buildings. This is:

Asemmisa {{asɛmmisaAhyɛnsode}}
9.

A company has no firewall in place. An attacker easily sends malicious traffic into the network, disrupting services. What vulnerability is being exploited?

Asemmisa {{asɛmmisaAhyɛnsode}}
10.

An adversary compromises one workstation and then uses it to move laterally to other devices in the LAN. This is an example of:

Asemmisa {{asɛmmisaAhyɛnsode}}
11.

If an attacker plugs into an unused switch port in a conference room, what security risk arises?

Asemmisa {{asɛmmisaAhyɛnsode}}
12.

A wireless signal can be detected outside of a company's walls, allowing an attacker to attempt eavesdropping. What type of vulnerability is this?

Asemmisa {{asɛmmisaAhyɛnsode}}
13.

A network without authentication allows anyone nearby to connect. Which risk does this create?

Asemmisa {{asɛmmisaAhyɛnsode}}
14.

An attacker plugs in their own wireless device to a free Ethernet port and creates an unauthorized Wi-Fi network inside the LAN. This is called:

Asemmisa {{asɛmmisaAhyɛnsode}}
15.

Attempting to break weak Wi-Fi encryption to steal data in transit is an example of:

Asemmisa {{asɛmmisaAhyɛnsode}}
16.

Which of the following best describes the potential impact of a network vulnerability?

Asemmisa {{asɛmmisaAhyɛnsode}}
17.

Why might some vulnerabilities be considered "low risk"?

Asemmisa {{asɛmmisaAhyɛnsode}}
18.

Which of the following is a moderate risk vulnerability?

Asemmisa {{asɛmmisaAhyɛnsode}}
19.

Which of the following is a high risk vulnerability?

Asemmisa {{asɛmmisaAhyɛnsode}}
20.

A router security policy should prohibit:

Asemmisa {{asɛmmisaAhyɛnsode}}
21.

A switch security policy should require which of the following?

Asemmisa {{asɛmmisaAhyɛnsode}}
22.

Which of the following is a common VPN security requirement?

Asemmisa {{asɛmmisaAhyɛnsode}}
23.

A wireless security policy should require:

Asemmisa {{asɛmmisaAhyɛnsode}}
24.

Why might organizations disable beacon frame broadcasting on WAPs?

Asemmisa {{asɛmmisaAhyɛnsode}}
25.

Adjusting wireless signal strength so it doesn’t leak outside a building is an example of:

Asemmisa {{asɛmmisaAhyɛnsode}}
26.

Which encryption standard is considered secure for wireless networks today?

Asemmisa {{asɛmmisaAhyɛnsode}}
27.

What is the primary role of a firewall?

Asemmisa {{asɛmmisaAhyɛnsode}}
28.

A firewall that filters traffic only using packet headers is:

Asemmisa {{asɛmmisaAhyɛnsode}}
29.

Which firewall can track connection state in addition to headers?

Asemmisa {{asɛmmisaAhyɛnsode}}
30.

Which firewall type includes intrusion prevention and application filtering?

Asemmisa {{asɛmmisaAhyɛnsode}}
31.

Firewalls use a set of rules called:

Asemmisa {{asɛmmisaAhyɛnsode}}
32.

In an ACL, which rule is executed?

Asemmisa {{asɛmmisaAhyɛnsode}}
33.

What does a typical ACL specify?

Asemmisa {{asɛmmisaAhyɛnsode}}
34.

Which factor impacts firewall placement?

Asemmisa {{asɛmmisaAhyɛnsode}}
35.

Why should each network segment have its own firewall?

Asemmisa {{asɛmmisaAhyɛnsode}}
36.

Where should firewalls always be placed?

Asemmisa {{asɛmmisaAhyɛnsode}}
37.

Allowing inbound SSH traffic requires what firewall rule?

Asemmisa {{asɛmmisaAhyɛnsode}}
38.

If firewall rules are applied in the wrong order:

Asemmisa {{asɛmmisaAhyɛnsode}}
39.

Dividing a network into smaller isolated segments is called:

Asemmisa {{asɛmmisaAhyɛnsode}}
40.

Why is network segmentation useful for security?

Asemmisa {{asɛmmisaAhyɛnsode}}
41.

A demilitarized zone (DMZ) is used for:

Asemmisa {{asɛmmisaAhyɛnsode}}
42.

VLANs are useful because they:

Asemmisa {{asɛmmisaAhyɛnsode}}
43.

Limiting the number of MAC addresses per switch port is called:

Asemmisa {{asɛmmisaAhyɛnsode}}
44.

Subnetting improves security by:

Asemmisa {{asɛmmisaAhyɛnsode}}
45.

A network intrusion detection system (NIDS):

Asemmisa {{asɛmmisaAhyɛnsode}}
46.

Which tool can block IPs or ports in response to detected attacks?

Asemmisa {{asɛmmisaAhyɛnsode}}
47.

A SIEM system is unique because it:

Asemmisa {{asɛmmisaAhyɛnsode}}
48.

Which detection method compares activity to a database of known IoCs?

Asemmisa {{asɛmmisaAhyɛnsode}}
49.

Which detection method can identify novel, never-seen attacks?

Asemmisa {{asɛmmisaAhyɛnsode}}
50.

What is the biggest drawback of signature-based detection?

Asemmisa {{asɛmmisaAhyɛnsode}}
51.

What is the main drawback of anomaly-based detection?

Asemmisa {{asɛmmisaAhyɛnsode}}
52.

Hybrid detection combines:

Asemmisa {{asɛmmisaAhyɛnsode}}
53.

Security teams that see too many false alerts may suffer from:

Asemmisa {{asɛmmisaAhyɛnsode}}
54.

Which attack can be detected by scanning for duplicate ARP packets?

Asemmisa {{asɛmmisaAhyɛnsode}}
55.

A sudden surge of Ethernet frames with many unique MAC addresses may indicate:

Asemmisa {{asɛmmisaAhyɛnsode}}
56.

A sudden unexplained drop in website traffic may indicate:

Asemmisa {{asɛmmisaAhyɛnsode}}
57.

Which log source might contain millions of entries per day, too much for humans to analyze alone?

Asemmisa {{asɛmmisaAhyɛnsode}}
58.

AI models in threat detection output:

Asemmisa {{asɛmmisaAhyɛnsode}}
59.

If an AI detection threshold is set too high:

Asemmisa {{asɛmmisaAhyɛnsode}}
60.

If the threshold is set too low:

Asemmisa {{asɛmmisaAhyɛnsode}}
61.

Evil-twin networks can be found by:

Asemmisa {{asɛmmisaAhyɛnsode}}
62.

Jamming attacks are detected by:

Asemmisa {{asɛmmisaAhyɛnsode}}
63.

Network-based indicators of compromise (IoCs) include: