t1. MarkgisgauthorizedgtogaccessgthegcompanygdatagcentergandgcanggetgingbygusingghisgRFIDgbadge.gRandygfro
mgfacilities,gwhogisn’tgauthorizedgtogaccessgthegdatagcenter,gjustgfollowedgMarkgintogthegdatagcentergwith
outgMark’sgknowledge.gWhatgisgRandygguiltygof?
a) Tailgating
b) Phishing
c) Vishing
d) Identitygfraud
AnsgA
g
2. Yougaregagsecurityganalystgforgyourgorganization.gAgusergtellsgyougthatgsomeonegfromgthegFBIgcalledghergan
dgaskedgforghergusernamegandgpassword.g Whatgprinciplegofginfluenceg(reasongforgeffectiveness)ghasgbeen
employedgagainstgthegusergtoggainghergcredentials?
g
a. Scarcity
b. Authority
c. Familiarity/liking
d. Urgency
AnsgB
g
• Jobgtitles,guniforms,gsymbols,gbadges,gandgevengspecificgexpertisegaregallgelementsgwegoftengequategwi
thgauthority.gThegperpetratorgingthisgexamplegusedgauthorityg(thegFBI)gtoginfluencegthegusergintoggivinggu
pghergcredentials.
• Scarcitygisgcommonlygusedgasgagmarketinggployg(sometimesgmoregeffectivelygthangatgothergtimes),gsuchg
asgtogsaygthatgspecialgpricinggisgavailablegtogonlygthegfirstg50gcallers.
• Weg tendgtogwantgorgvaluegsomethinggmoregifgwegbelievegitgisglessgavailable.gWegareglikelygtogbegmoregi
mpulsivegifgwegbelievegsomethinggisgtheglastgone.
3. AgusergmisspellsgthegURLgforgagtravelgwebsitegandgisgtakengtogagcompetinggwebsite.gWhatghasgoccurredghere
?
a. Hoax
b. Influencegcampaign
c. Typogsquatting
d. Wateringgholegattac
kgAnsgC
4. Trentgasksgyougwhatgisgthegdifferencegbetweengagwormgandgvirus.gHowgwouldgyougbestgexplaingthegdifferen
Pgagggeg 1g|g230
,Pearsong4gPracticegTes
t cegtoghim?
Pgagggeg 2g|g230
,Pearsong4gPracticegTes
t a. Agstealthgwormgisgmemorygresidentgandgusesgtechniquesgtogavoidgdetection.
b. AgwormgisgalsogknowngasgagremotegaccessgTrojang(RAT).
c. Wormsgaregprogramsgdisguisedgasgusefulgapplications.
d. Wormsgself-
replicategwithoutgaghostgfile.gAnsgd
• Wormsgaregsimilargingfunctiongandgbehaviorgtogviruses,gwithgonegexception:gWormsgaregself-
replicatinggandgdognotgneedgaghostgfile.
• Agwormgisgbuiltgtogtakegadvantagegofgagsecuritygholegingangexistinggapplicationgorgoperatinggsystem,gandgth
engitgfindsgothergsystemsgrunninggthegsamegsoftwaregandgautomaticallygreplicatesgitselfgtogthegnewghost.
5. Carolgisgreadinggaboutgagnewergattackgtypegthatgresidesgingmemorygandgusesgthegsystem’sgowngvulnerable
servicesgandgprogramsgsuchgasgWindowsgPowerShellgorgWMIgtogallowgthegattackergtoginfiltrategthegsyste
g
m.gWhatgtypegofgmalwaregisgshegreadinggabout?
a. Logicgbomb
b. Worm
c. Trojan
d. Filelessgmalware
AnsgD
g
• Agmoregrecentgvirusgtypegknowngasgfilelessgmalwaregisgmuchglikegagmemory-
residentgvirusgbutgmoreginsidious.gWhilegtheglattergstillgrequiresgsomegcomponentsgofgthegvirusgtogbegwritt
engtogdisk,gagfilelessgvirusgdoesgnot.
• Suchgagvirusg“livesgoffgthegland”gandgusesglegitimategtoolsgthatgaregusuallygpartgofgthegoperatinggsystemgor
developmentgpackagesgtogdogtheirgwork,gsuchgasgWindowsgPowerShell,gWindowsgManagementgInstrume
g
ntationg(WMI),gandgmacros.
• Trojangisgincorrect.gTrojansgaregprogramsgdisguisedgasgusefulgapplications.gTrojansgdognotgreplicategthemselv
esgasgvirusesgdo,gbutgtheygcangbegjustgasgdestructive.
• Wormgisgincorrect.gAgwormgisgsimilargingfunctiongandgbehaviorgtogagvirus,gwithgonegexception:gWormsgaregse
lf-greplicatinggandgdognotgneedgaghostgfile.
• logicgbombgisgagvirusgorgTrojanghorsegdesignedgtogexecutegmaliciousgactionsgwhengagcertaingeventgoccursg
orgaftergagcertaingperiodgofgtime.
6. Thegfollowinggmessagegappearsgongyourgdisplay.gWhatgisgthisgangexamplegof?
Pgagggeg 3g|g230
, Pearsong4gPracticegTes
t
a. Ransomware
b. Artificialgintelligence
c. Machineglearning
d. Crypto-
malwaregSelectg2gansw
ers
AndgA,gd
• Crypto-
malwaregisgspecificallygdesignedgtogfindgpotentiallygvaluablegdatagongagsystemgandgusesgcryptographygtogen
cryptgthegdatagtogpreventgaccess.gThegdecryptiongkeygisgthengrequiredgtogaccessgthegdata.gCrypto-
malwaregisgoftengassociatedgwithgransomware.
g
• Ransomwaregisgagformgofgmalwaregthatgattemptsgtogholdgagusergransom,goftengforgmonetaryggain.gIngthisgca
se,gthegattackergwillgprovidegthegdecryptiongkeygonlygaftergpaymentghasgbeengmade.gThegattackergtypicall
yghasgalreadygcompromisedgagsystemgandgdemandsgpaymentgtogpreventgnegativegconsequencesgsuchgasg
deletinggfiles.gPaymentgisgtypicallygdemandedgingcryptocurrencygsuchgasgBitcoin.
7. Maliciousg codeg isg insertedg intog ag runningg process,g takingg advantageg ofg instructionsg thatg callg upong oth
ergprogramsgdesignedgforgthegrunninggapplicationgtogloadgatgruntime.gWhatgattackgisgoccurringghere?
a. LDAPginjection
b. SQLginjection
c. XMLginjection
d. DLLginjection
Pgagggeg 4g|g230