Information Cyber Security (ICS) solved MCQs

Computer security, cybersecurity or information technology security is the protection of computer systems and networks from information disclosure, theft of or damage to their hardware, software, or electronic data, as well as from the disruption or misdirection of the services they provide

1. In the _______ mode, IPSec protects the whole IP packet, including the original IP header.

a. transport

B. tunnel

c. either (a) or (b)

d. neither (a) nor (b)

2. An HTTP connection uses port _________ whereas HTTPS uses port ____________ and invokes SSL

a. 40; 80

B. 60; 620

c. 80; 443

d. 620; 80

3. What port does Telnet use?

a. 22

B. 80

c. 20

d. 23

4. A digital Signature is

a. a bit string giving identity of a correspondent

B. a unique identification of a sender

c. an authentication of an electronic record by trying it uniquely to a key only a sender knows

d. an encrypted signature of sender

5. A ___________ is an extension of an enterprise’s private intranet across a public network such as the internet, creating a secure private connection.

a. vnp

B. vpn

c. vsn

d. vspn

6. ______uses the idea of certificate trust levels

a. x509

B. pgp

c. kdc

d. none of them

7. A digital signature needs a

a. private-key system

B. shared-key system

c. public-key system

d. all of them

8. Pretty good privacy (PGP) is used in ______

a. browser security

B. email security

c. ftp security

d. wifi security

9. What is necessary for a cross-site script attack with cookies to be thwarted

a. captchas

B. virtual machines

c. proxies

d. firewalls

10. The _______ mode is normally used when we need host-to-host (end-to-end) protection of data.

a. transport

B. tunnel

c. either (a) or (b)

d. neither (a) nor (b)

11. For each _______ the Kerberos Key Distribution Center (KDC) maintains a database of the realm’s principal and the principal’s associated “secret keys”.

a. key

B. realm

c. document

d. none of the mentioned

12. The basic Web Services platform is combination of _____ and _______

a. css + http

B. xml + html

c. xml + http

d. css + java

13. For a client-server authentication, the client requests from the KDC a ________ for access to a specific asset.

a. ticket

B. local

c. token

d. user

14. What is one advantage of setting up a DMZ with two firewalls?

a. you can control where traffic goes in three networks

B. you can do stateful packet filtering

c. you can do load balancing

d. ??improved network performance

15. What are the two primary classifications of cross-site scripting?

a. dom based and persistent

B. traditional and dom based

c. traditional and non-persistent

d. non-persistent and persistent

16. Imagine a social networking web app (like Twitter) that allows users to post short blurbs of text.

a. cross-site scripting

B. sql injection

c. packet sniffing

d. a and b

17. Why would a hacker use a proxy server?

a. to create a stronger connection with the target.

B. to create a ghost server on the network.

c. to obtain a remote access connection

d. to hide malicious activity on the network.

18. IPSec is designed to provide security at the _________

a. transport layer

B. network layer

c. application layer

d. session layer

19. Which component is included in IP security?

a. authentication header (ah)

B. encapsulating security payload (esp)

c. internet key exchange (ike)

d. all of the mentioned

20. What is Firewall?

a. firewalls are network based security measures that control the flow of incoming and outgoing traffic

B. firewall is a program that encrypts all programs that access the internet

c. a firewall is a program that keeps other programs from using the internet

d. firewall are the interrupts that automatically disconnect from the internet when a threat appears.

21. SSL stands for?

a. secured socket layer

B. secured shell layer

c. system socket layer

d. system secured layer

22. What is the most important activity in system hacking?

a. information gathering

B. cracking passwords

c. escalating privileges

d. covering tracks

23. Why would HTTP Tunneling be used?

a. to identify proxy servers

B. web activity is not scanned

c. to bypass a firewall

d. http is a easy protocol to work with

24. The domain name space (tree) is devided into---------different sections

a. 3

B. 2

c. 4

d. none

25. The _____domains define registered hosts according to their generic behaviour.

a. generic

B. country

c. inverse

d. none


