πŸ“Š Information Security
Q. An IDS follows a two-step process consisting of a passive component and an active component. Which of the following is part of the active component?
  • (A) Inspection of password files to detect inadvisable passwords
  • (B) Mechanisms put in place to reenact known methods of attack and record system responses
  • (C) Inspection of system to detect policy violations
  • (D) Inspection of configuration files to detect inadvisable settings
πŸ’¬ Discuss
βœ… Correct Answer: (B) Mechanisms put in place to reenact known methods of attack and record system responses
πŸ“Š Information Security
Q. This is is the hiding of a secret message within an ordinary message and the extraction of it at its destination.
  • (A) Secret key algorithm
  • (B) Message queuing
  • (C) Spyware
  • (D) Steganography
πŸ’¬ Discuss
βœ… Correct Answer: (D) Steganography
πŸ“Š Information Security
Q. What is the purpose of a shadow honeypot?
  • (A) To flag attacks against known vulnerabilities
  • (B) To help reduce false positives in a signature-based IDS.
  • (C) To randomly check suspicious traffic identified by an anomaly detection system.
  • (D) To enhance the accuracy of a traditional honeypot.
πŸ’¬ Discuss
βœ… Correct Answer: (C) To randomly check suspicious traffic identified by an anomaly detection system.
πŸ“Š Information Security
Q. This is an encryption/decryption key known only to the party or parties that exchange secret messages.
  • (A) E-signature
  • (B) Digital certificate
  • (C) Private key
  • (D) Security token
πŸ’¬ Discuss
βœ… Correct Answer: (C) Private key
πŸ“Š Information Security
Q. A false positive can be defined as…
  • (A) An alert that indicates nefarious activity on a system that, upon further inspection, turns out to represent legitimate network traffic or behavior.
  • (B) An alert that indicates nefarious activity on a system that is not running on the network.
  • (C) The lack of an alert for nefarious activity.
  • (D) Both a. and b.
πŸ’¬ Discuss
βœ… Correct Answer: (D) Both a. and b.
πŸ“Š Information Security
Q. Which of the following is an advantage of anomaly detection?
  • (A) Rules are easy to define.
  • (B) Custom protocols can be easily analyzed.
  • (C) The engine can scale as the rule set grows.
  • (D) Malicious activity that falls within normal usage patterns is detected.
πŸ’¬ Discuss
βœ… Correct Answer: (C) The engine can scale as the rule set grows.
πŸ“Š Information Security
Q. This is an assault on the integrity of a security system in which the attacker substitutes a section of cipher text (encrypted text) with a different section that looks like (but is not the same as) the one removed.
  • (A) Trojan horse
  • (B) Hashing
  • (C) Switching fabric
  • (D) Cut and paste attack
πŸ’¬ Discuss
βœ… Correct Answer: (D) Cut and paste attack
πŸ“Š Information Security
Q. This enables users of a basically unsecure public network such as the Internet to securely and privately exchange data and money through the use of a public and a private cryptographic key pair that is obtained and shared through a trusted authority.
  • (A) Security Identifier (SID)
  • (B) Public key infrastructure (PKI)
  • (C) Internet Assigned Numbers Authority (IANA)
  • (D) Private Branch Exchange (PBX)
πŸ’¬ Discuss
βœ… Correct Answer: (B) Public key infrastructure (PKI)
πŸ“Š Information Security
Q. ___________is a form of eavesdropping used to pick up telecommunication signals by monitoring the electromagnetic fields produced by the signals.
  • (A) Reverse engineering
  • (B) Magneto resistive head technology
  • (C) Van Eck phreaking
  • (D) Electronic data processing (EDP)
πŸ’¬ Discuss
βœ… Correct Answer: (C) Van Eck phreaking
πŸ“Š Information Security
Q. This is a Peripheral Component Interconnect (PCI) card that offloads SSL processing to speed up secure transactions on e-commerce Web sites.
  • (A) PCMCIA card
  • (B) Smart card
  • (C) Server accelerator card
  • (D) Network interface card
πŸ’¬ Discuss
βœ… Correct Answer: (C) Server accelerator card