Practices Complete Exam Study Questions
with Verified Answers < Graded A+>
1. What does the CIA Triad stand for? - ANSWER Confidentiality, Integrity,
Availability
2. Which is something you are? - ANSWER Biometric scan
3. What does multi-factor authentication require? - ANSWER Two or more
verification methods
4. What does malware stand for? - ANSWER Malicious software
5. What does a virus require to spread? - ANSWER User interaction
6. How does a worm differ from a virus? - ANSWER Self-replicates without
user action
7. What is a Trojan horse? - ANSWER Malware disguised as legitimate
software
8. What does ransomware do? - ANSWER Encrypts files until payment is
made
9. What does spyware primarily do? - ANSWER Monitors user activity
,10.What does a keylogger record? - ANSWER Keystrokes
11.What is the purpose of a rootkit? - ANSWER Hide malicious processes
12.What are botnets? - ANSWER Networks of compromised computers
13.Which malware spreads automatically through networks? - ANSWER
Worm
14.How do phishing attacks usually occur? - ANSWER Emails
15.What is smishing? - ANSWER Phishing through SMS messages
16.What does DDoS stand for? - ANSWER Distributed Denial of Service
17.What does password spraying involve? - ANSWER Trying common
passwords on many accounts
18.What does credential stuffing use? - ANSWER Stolen usernames and
passwords
19.What are zero-day vulnerabilities? - ANSWER Newly discovered
vulnerabilities
20.What are exploits? - ANSWER Methods used to take advantage of
vulnerabilities
, 21.What does antivirus software detect? - ANSWER Malware
22.What does patch management involve? - ANSWER Updating software to
fix vulnerabilities
23.What does a security update fix? - ANSWER Software vulnerabilities
24.What does hardening a system mean? - ANSWER Reducing vulnerabilities
25.What does disabling unused services help with? - ANSWER Reduce attack
surface
26.What does encryption convert data into? - ANSWER Ciphertext
27.What does decryption convert? - ANSWER Ciphertext to plaintext
28.What is AES an example of? - ANSWER Symmetric encryption
29.What is RSA? - ANSWER Asymmetric encryption
30.What does business continuity planning ensure? - ANSWER Operations
continue after disruption
31.What does disaster recovery focus on? - ANSWER System restoration after
major failure