Quiz Module 03 Threats and Attacks on Endpoints

Ace your homework & exams now with Quizwiz!

What is the difference between a Trojan and a RAT? a. A RAT gives the attacker unauthorized remote access to the victim's computer. b. A Trojan can carry malware while a RAT cannot. c. A RAT can infect only a smartphone and not a computer. d. There is no difference.

A RAT gives the attacker unauthorized remote access to the victim's computer.

Which of the following is technology that imitates human abilities? a. AI b. RC c. ML d. XLS

AI

Gabriel's sister called him about a message that suddenly appeared on her screen that says her software license has expired and she must immediately pay $500 to have it renewed before control of the computer will be returned to her. What type of malware has infected her computer? a. Persistent lockware b. Blocking ransomware c. Impede-ware d. Cryptomalware

Blocking ransomware

Which type of memory vulnerability attack manipulates the "return address" of the memory location of a software program? a. Factor overflow attack b. Integer overflow attack c. Shim overflow attack d. Buffer overflow attack

Buffer overflow attack

Which of the following attacks is based on the principle that when a user is currently authenticated on a website and then loads another webpage, the new page inherits the identity and privileges of the first website? a. DLLS b. CSRF c. SSFR d. DRCR

CSRF

Marius's team leader has just texted him that an employee, who violated company policy by bringing in a file on her USB flash drive, has just reported that her computer is suddenly locked up with cryptomalware. Why would Marius consider this a dangerous situation? a. Cryptomalware can encrypt all files on any network that is connected to the employee's computer. b. The employee would have to wait at least an hour before her computer could be restored. c. The organization may be forced to pay up to $500 for the ransom. d. It sets a precedent by encouraging other employees to violate company policy.

Cryptomalware can encrypt all files on any network that is connected to the employee's computer.

Which of the following is NOT a characteristic of malware? a. Launch b. Deceive c. Imprison d. Diffusion

Diffusion

Which of the following attacks targets the external software component that is a repository of both code and data? a. Dynamic-link library (DLL) injection attack b. OS REG attack c. Device driver manipulation attack d. Application program interface (API) attack

Dynamic-link library (DLL) injection attack

Which of the following is NOT a means by which a bot communicates with a C&C device? a. Command sent through Twitter posts b. Signing in to a website the bot herder operates c. Email d. Signing in to a third-party website

Email (They don't email, but they may have a draft email containing the code)

What word is used today to refer to network-connected hardware devices? a. Device b. Client c. Host d. Endpoint

Endpoint

Which type of malware relies on LOLBins? a. Bot b. File-based virus c. PUP d. Fileless virus

Fileless virus

Josh is researching the different types of attacks that can be generated through a botnet. Which of the following would NOT be something distributed by a botnet? a. LOLBins b. Spam c. Ad fraud d. Malware

LOLBins

Randall's roommate is complaining to him about all of the software that came pre-installed on his new computer. He doesn't want the software because it slows down the computer. What type of software is this? a. Spyware b. PUP c. Bot d. Keylogger

PUP

What term refers to changing the design of existing code? a. Refactoring b. Library manipulation c. Design driver manipulation d. Shimming

Refactoring

Which of the following manipulates the trusting relationship between web servers? a. SCSI b. SSRF c. CSRF d. EXMAL

SSRF

Which of these would NOT be considered the result of a logic bomb? a. Send an email to Rowan's inbox each Monday morning with the agenda of that week's department meeting. b. Delete all human resource records regarding Augustine one month after he leaves the company. c. If the company's stock price drops below $50, then credit Oscar's retirement account with one additional year of retirement credit. d. Erase the hard drives of all the servers 90 days after Alfredo's name is removed from the list of current employees.

Send an email to Rowan's inbox each Monday morning with the agenda of that week's department meeting.

Which statement regarding a keylogger is NOT true? a. Keyloggers can be used to capture passwords, credit card numbers, or personal information. b. Hardware keyloggers are installed between the keyboard connector and computer keyboard USB port. c. Software keyloggers can be designed to send captured information automatically back to the attacker through the Internet. d. Software keyloggers are generally easy to detect.

Software keyloggers are generally easy to detect

What race condition can result in a NULL pointer/object dereference? a. Value-based race condition b. Thread race condition c. Time of check/time of use race condition d. Conflict race condition

Time of check/time of use race condition

Which of the following is known as a network virus? a. Remote exploitation virus (REV) b. TAR c. Worm d. C&C

Worm

Which of the following attacks is based on a website accepting user input without sanitizing it? a. RSS b. SSXRS c. XSS d. SQLS

XSS


Related study sets

Marquis Leadership 8e Ch 1-25 (exclude 9)

View Set

Media lab Exam review with pictures

View Set

Physical Science Chapter 12 Forces

View Set

Chapter 9 Psychology Study Guide (Mr. Riley).

View Set

CH 21 Genomes and Their Evolution

View Set