Deck 5: E-Commerce Security and Payment Systems

ملء الشاشة (f)
exit full mode
سؤال
Typically,the more security measures added to an e-commerce site,the slower and more difficult it becomes to use.
استخدم زر المسافة أو
up arrow
down arrow
لقلب البطاقة.
سؤال
All of the following are examples of cryptocurrencies except:

A) Ethereum.
B) Ripple.
C) Zelle.
D) Monero.
سؤال
Which of the following did the Internet Advertising Bureau urge advertisers to abandon?

A) HTML
B) HTML5
C) Adobe Flash
D) Adobe Acrobat
سؤال
Which of the following is an example of an online privacy violation?

A) your e-mail being read by a hacker
B) your online purchasing history being sold to other merchants without your consent
C) your computer being used as part of a botnet
D) your e-mail being altered by a hacker
سؤال
________ is the ability to identify the person or entity with whom you are dealing on the Internet.

A) Nonrepudiation
B) Authenticity
C) Availability
D) Integrity
سؤال
Why is it difficult to accurately estimate the actual amount of cybercrime?
سؤال
________ is the ability to ensure that e-commerce participants do not deny their online actions.

A) Nonrepudiation
B) Authenticity
C) Availability
D) Integrity
سؤال
Which of the following is the leading cause of data breaches?

A) theft of a computer
B) accidental disclosures
C) hackers
D) DDoS attacks
سؤال
Which of the following is an example of an integrity violation of e-commerce security?

A) A website is not actually operated by the entity the customer believes it to be.
B) A merchant uses customer information in a manner not intended by the customer.
C) A customer denies that he is the person who placed the order.
D) An unauthorized person intercepts an online communication and changes its contents.
سؤال
The overall rate of online credit card fraud is ________ of all online card transactions.

A) less than 1%
B) around 5%
C) around 10%
D) around 15%
سؤال
________ is the ability to ensure that messages and data are only available to those authorized to view them.

A) Confidentiality
B) Integrity
C) Privacy
D) Availability
سؤال
Software that is used to obtain private user information such as a user's keystrokes or copies of e-mail is referred to as:

A) spyware.
B) a backdoor.
C) browser parasite.
D) adware.
سؤال
Confidentiality is sometimes confused with:

A) privacy.
B) authenticity.
C) integrity.
D) nonrepudiation.
سؤال
What is the most frequent cause of stolen credit cards and card information today?

A) lost cards
B) the hacking and looting of corporate servers storing credit card information
C) sniffing programs
D) phishing attacks
سؤال
Which of the following statements about data breaches in 2017 is not true?

A) According to the Identity Theft Resource Center, the number of breaches in 2017 increased by almost 45% from 2016.
B) According to the Identity Theft Resource Center, over 50% of data breaches involved social security numbers.
C) According to the Identity Theft Resource Center, employee error was the leading cause of data breaches.
D) According to the Identity Theft Resource Center, data breaches involving the business sector represented over 55% of all breaches.
سؤال
Which of the following is not a key factor for establishing e-commerce security?

A) data integrity
B) technology
C) organizational policies
D) laws and industry standards
سؤال
Conficker is an example of a:

A) virus.
B) worm.
C) Trojan horse.
D) botnet.
سؤال
Accessing data without authorization on Dropbox is an example of a:

A) social network security issue.
B) cloud security issue.
C) mobile platform security issue.
D) sniffing issue.
سؤال
According to Symantec,almost half of the e-mail addresses involved in business e-mail compromise (BEC)phishing that it analyzed had an IP address originating in:

A) China.
B) Russia.
C) Nigeria.
D) North Korea.
سؤال
________ is the ability to ensure that an e-commerce site continues to function as intended.

A) Nonrepudiation
B) Authenticity
C) Availability
D) Integrity
سؤال
Which of the following was designed to cripple Iranian nuclear centrifuges?

A) Stuxnet
B) Shamoon
C) Snake
D) Storm
سؤال
Malware that comes with a downloaded file that a user requests is called a:

A) Trojan horse.
B) backdoor.
C) drive-by download.
D) PUP.
سؤال
A Trojan horse appears to be benign,but then does something other than expected.
سؤال
________ typically attack governments,organizations,and sometimes individuals for political purposes.

A) Crackers
B) White hats
C) Grey hats
D) Hacktivists
سؤال
Exploit kits can be purchased by users to protect their computers from malware.
سؤال
What is the Internet of Things (IoT)and what security issues and challenges does it raise?
سؤال
According to Ponemon Institute's 2017 survey,which of the following was not among the causes of the most costly cybercrimes?

A) malicious insiders
B) malicious code
C) denial of service
D) botnets
سؤال
A drive-by download is malware that comes with a downloaded file that a user intentionally or unintentionally requests.
سؤال
Which of the following is not an example of malicious code?

A) scareware
B) Trojan horse
C) bot
D) sniffer
سؤال
WannaCry is an example of ransomware.
سؤال
FREAK is an example of a software vulnerability.
سؤال
Beebone is an example of which of the following?

A) worm
B) botnet
C) phishing
D) hacktivism
سؤال
Which dimension(s)of security is spoofing a threat to?

A) integrity
B) availability
C) integrity and authenticity
D) availability and integrity
سؤال
According to the Identity Theft Resource Center,the number of data breaches in 2017 increased by ________ compared to 2016.

A) 15%
B) 45%
C) 55%
D) 75%
سؤال
Automatically redirecting a web link to a different address is an example of which of the following?

A) sniffing
B) social engineering
C) pharming
D) DDoS attack
سؤال
The attack on Dyn Inc.in 2016 is an example of which of the following?

A) SQL injection attack
B) browser parasite
C) DDoS attack
D) MitM attack
سؤال
IoT botnets became the preferred platform for launching DDoS attacks in 2017.
سؤال
Which of the following is not an example of a potentially unwanted program (PUP)?

A) adware
B) browser parasite
C) drive-by download
D) spyware
سؤال
Spoofing is the attempt to hide a hacker's true identity by using someone else's e-mail or IP address.
سؤال
Phishing attacks rely on browser parasites.
سؤال
Asymmetric key cryptography is also known as:

A) public key cryptography.
B) secret key cryptography.
C) PGP.
D) PKI.
سؤال
Next generation firewalls provide all of the following except:

A) an application-centric approach to firewall control.
B) the ability to identify applications regardless of the port, protocol, or security evasion tools used.
C) the ability to automatically update applications with security patches.
D) the ability to identify users regardless of the device or IP address.
سؤال
All of the following are features of WPA3 except:

A) it implements a more robust key exchange protocol.
B) it enables the creation of a VPN.
C) it provides a more secure way to connect IoT devices.
D) it features expanded encryption for public networks.
سؤال
Which of the following statements is not true?

A) Apple's Touch ID stores a digital replica of a user's actual fingerprint in Apple's iCloud.
B) Biometric devices reduce the opportunity for spoofing.
C) A retina scan is an example of a biometric device.
D) Biometric data stored on an iPhone is encrypted.
سؤال
All of the following are methods of securing channels of communication except:

A) SSL/TLS.
B) digital certificates.
C) VPN.
D) FTP.
سؤال
All of the following statements about public key cryptography are true except:

A) public key cryptography uses two mathematically related digital keys.
B) public key cryptography ensures authentication of the sender.
C) public key cryptography does not ensure message integrity.
D) public key cryptography is based on the idea of irreversible mathematical functions.
سؤال
Proxy servers are also known as:

A) firewalls.
B) application gateways.
C) dual home systems.
D) packet filters.
سؤال
Which of the following is not an example of an access control?

A) firewalls
B) proxy servers
C) digital signatures
D) login passwords
سؤال
The Data Encryption Standard uses a(n)________-bit key.

A) 8
B) 56
C) 256
D) 512
سؤال
A ________ is hardware or software that acts as a filter to prevent unwanted packets from entering a network.

A) firewall
B) virtual private network
C) proxy server
D) PPTP
سؤال
All of the following statements about PKI are true except:

A) the term PKI refers to the certification authorities and digital certificate procedures that are accepted by all parties.
B) PKI is not effective against insiders who have a legitimate access to corporate systems including customer information.
C) PKI guarantees that the verifying computer of the merchant is secure.
D) the acronym PKI stands for public key infrastructure.
سؤال
An intrusion detection system can perform all of the following functions except:

A) examining network traffic.
B) setting off an alarm when suspicious activity is detected.
C) checking network traffic to see if it matches certain patterns or preconfigured rules.
D) blocking suspicious activity.
سؤال
Which of the following statements is not true?

A) A VPN provides both confidentiality and integrity.
B) A VPN uses both authentication and encryption.
C) A VPN uses a dedicated secure line.
D) The primary use of VPNs is to establish secure communications among business partners.
سؤال
What is a sniffing attack and how does it differ from a MitM attack?
سؤال
All the following statements about symmetric key cryptography are true except:

A) in symmetric key cryptography, both the sender and the receiver use the same key to encrypt and decrypt a message.
B) the Data Encryption Standard is a symmetric key encryption system.
C) symmetric key cryptography is computationally slower.
D) symmetric key cryptography is a key element in digital envelopes.
سؤال
Define the terms tiger team,white hat,black hat,and grey hat and discuss the difference between them.
سؤال
All of the following are used for authentication except:

A) digital signatures.
B) certificates of authority.
C) biometric devices.
D) packet filters.
سؤال
Which of the following dimensions of e-commerce security is not provided for by encryption?

A) confidentiality
B) availability
C) message integrity
D) nonrepudiation
سؤال
Discuss and explain the various types of malicious code and how they work.Include the different types of viruses.
سؤال
A digital certificate contains all of the following except the:

A) subject's private key.
B) subject's public key.
C) digital signature of the certification authority.
D) digital certificate serial number.
سؤال
Face ID is an example of which of the following?

A) biometrics
B) encryption
C) IDS
D) firewall
سؤال
Which of the following is a set of short-range wireless technologies used to share information among devices within about two inches of each other?

A) DES
B) NFC
C) IM
D) text messaging
سؤال
Which of the following statements about Bitcoin is not true?

A) The computational power required to mine Bitcoins has increased over time.
B) Bitcoins are completely secure.
C) Bitcoins are illegal in some countries.
D) In 2018, Bitcoin reprsented just under 40% of the full market for cryptocurrencies.
سؤال
All of the following are limitations of the existing online credit card payment system except:

A) poor security.
B) cost to consumers.
C) cost to merchant.
D) social equity.
سؤال
PCI-DSS is a standard established by which of the following?

A) the banking industry
B) the credit card industry
C) the federal government
D) the retail industry
سؤال
Which of the following is not a major trend in e-commerce payments in 2018-2019?

A) Mobile retail payment volume decreases.
B) PayPal remains the most popular alternative payment method.
C) Large banks enter the mobile wallet and P2P payments market.
D) Payment by credit and/or debit card remains the dominant form of online payment.
سؤال
Zelle is an example of a P2P mobile payment app.
سؤال
Which of the following statements is not true?

A) A majority of states require companies that maintain personal data on their residents to publicly disclose when a security breach affecting those residents has occurred.
B) The USA Patriot Act broadly expanded law enforcement's investigative and surveillance powers.
C) The Cybersecurity Information Sharing Act was strongly supported by most large technology companies and privacy advocates.
D) The Federal Trade Commission has asserted that it has authority over corporations' data security practices.
سؤال
Which of the following statements about blockchain is not true?

A) A blockchain system is composed of a distributed network of computers.
B) A blockchain system is inherently centralized.
C) A blockchain system is a transaction processing system.
D) Cryptocurrencies are based on blockchain technology.
سؤال
PayPal is an example of what type of payment system?

A) online stored value payment system
B) digital checking system
C) accumulating balance system
D) digital credit card system
سؤال
The creation of Bitcoins consumes a significant amount of energy.
سؤال
What dimensions do digital signatures and hash digests add to public key cryptography and how do they work?
سؤال
Discuss the security of communications channels.Include definitions and explanations for the terms Secure Sockets Layer/Transport Layer Security (SSL/TLS),secure negotiated session,session key,and VPN.
سؤال
Explain the difference between symmetric key cryptography and public key cryptography.Which dimensions of e-commerce security does encryption address?
سؤال
To allow lower-level employees access to the corporate network while preventing them from accessing private human resources documents,you would use:

A) a firewall.
B) an authorization management system.
C) security tokens.
D) an authorization policy.
سؤال
All of the following statements about Apple Pay are true except which of the following?

A) Apple Pay is the most popular alternative payment method in the United States.
B) Apple Pay is an example of a universal proximity mobile wallet.
C) Apple Pay can be used for mobile payments at the point of sale at a physical store.
D) Apple Pay has more users than either Google Pay or Samsung Pay.
سؤال
The easiest and least expensive way to prevent threats to system integrity is to install anti-virus software.
سؤال
SSL/TLS cannot provide irrefutability.
سؤال
What is the first step in developing an e-commerce security plan?

A) Create a security organization.
B) Develop a security policy.
C) Perform a risk assessment.
D) Perform a security audit.
سؤال
Which of the following is the most common protocol for securing a digital channel of communication?

A) DES
B) SSL/TLS
C) VPN
D) HTTP
فتح الحزمة
قم بالتسجيل لفتح البطاقات في هذه المجموعة!
Unlock Deck
Unlock Deck
1/85
auto play flashcards
العب
simple tutorial
ملء الشاشة (f)
exit full mode
Deck 5: E-Commerce Security and Payment Systems
1
Typically,the more security measures added to an e-commerce site,the slower and more difficult it becomes to use.
True
2
All of the following are examples of cryptocurrencies except:

A) Ethereum.
B) Ripple.
C) Zelle.
D) Monero.
C
3
Which of the following did the Internet Advertising Bureau urge advertisers to abandon?

A) HTML
B) HTML5
C) Adobe Flash
D) Adobe Acrobat
C
4
Which of the following is an example of an online privacy violation?

A) your e-mail being read by a hacker
B) your online purchasing history being sold to other merchants without your consent
C) your computer being used as part of a botnet
D) your e-mail being altered by a hacker
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
5
________ is the ability to identify the person or entity with whom you are dealing on the Internet.

A) Nonrepudiation
B) Authenticity
C) Availability
D) Integrity
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
6
Why is it difficult to accurately estimate the actual amount of cybercrime?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
7
________ is the ability to ensure that e-commerce participants do not deny their online actions.

A) Nonrepudiation
B) Authenticity
C) Availability
D) Integrity
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
8
Which of the following is the leading cause of data breaches?

A) theft of a computer
B) accidental disclosures
C) hackers
D) DDoS attacks
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
9
Which of the following is an example of an integrity violation of e-commerce security?

A) A website is not actually operated by the entity the customer believes it to be.
B) A merchant uses customer information in a manner not intended by the customer.
C) A customer denies that he is the person who placed the order.
D) An unauthorized person intercepts an online communication and changes its contents.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
10
The overall rate of online credit card fraud is ________ of all online card transactions.

A) less than 1%
B) around 5%
C) around 10%
D) around 15%
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
11
________ is the ability to ensure that messages and data are only available to those authorized to view them.

A) Confidentiality
B) Integrity
C) Privacy
D) Availability
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
12
Software that is used to obtain private user information such as a user's keystrokes or copies of e-mail is referred to as:

A) spyware.
B) a backdoor.
C) browser parasite.
D) adware.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
13
Confidentiality is sometimes confused with:

A) privacy.
B) authenticity.
C) integrity.
D) nonrepudiation.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
14
What is the most frequent cause of stolen credit cards and card information today?

A) lost cards
B) the hacking and looting of corporate servers storing credit card information
C) sniffing programs
D) phishing attacks
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
15
Which of the following statements about data breaches in 2017 is not true?

A) According to the Identity Theft Resource Center, the number of breaches in 2017 increased by almost 45% from 2016.
B) According to the Identity Theft Resource Center, over 50% of data breaches involved social security numbers.
C) According to the Identity Theft Resource Center, employee error was the leading cause of data breaches.
D) According to the Identity Theft Resource Center, data breaches involving the business sector represented over 55% of all breaches.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
16
Which of the following is not a key factor for establishing e-commerce security?

A) data integrity
B) technology
C) organizational policies
D) laws and industry standards
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
17
Conficker is an example of a:

A) virus.
B) worm.
C) Trojan horse.
D) botnet.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
18
Accessing data without authorization on Dropbox is an example of a:

A) social network security issue.
B) cloud security issue.
C) mobile platform security issue.
D) sniffing issue.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
19
According to Symantec,almost half of the e-mail addresses involved in business e-mail compromise (BEC)phishing that it analyzed had an IP address originating in:

A) China.
B) Russia.
C) Nigeria.
D) North Korea.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
20
________ is the ability to ensure that an e-commerce site continues to function as intended.

A) Nonrepudiation
B) Authenticity
C) Availability
D) Integrity
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
21
Which of the following was designed to cripple Iranian nuclear centrifuges?

A) Stuxnet
B) Shamoon
C) Snake
D) Storm
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
22
Malware that comes with a downloaded file that a user requests is called a:

A) Trojan horse.
B) backdoor.
C) drive-by download.
D) PUP.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
23
A Trojan horse appears to be benign,but then does something other than expected.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
24
________ typically attack governments,organizations,and sometimes individuals for political purposes.

A) Crackers
B) White hats
C) Grey hats
D) Hacktivists
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
25
Exploit kits can be purchased by users to protect their computers from malware.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
26
What is the Internet of Things (IoT)and what security issues and challenges does it raise?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
27
According to Ponemon Institute's 2017 survey,which of the following was not among the causes of the most costly cybercrimes?

A) malicious insiders
B) malicious code
C) denial of service
D) botnets
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
28
A drive-by download is malware that comes with a downloaded file that a user intentionally or unintentionally requests.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
29
Which of the following is not an example of malicious code?

A) scareware
B) Trojan horse
C) bot
D) sniffer
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
30
WannaCry is an example of ransomware.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
31
FREAK is an example of a software vulnerability.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
32
Beebone is an example of which of the following?

A) worm
B) botnet
C) phishing
D) hacktivism
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
33
Which dimension(s)of security is spoofing a threat to?

A) integrity
B) availability
C) integrity and authenticity
D) availability and integrity
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
34
According to the Identity Theft Resource Center,the number of data breaches in 2017 increased by ________ compared to 2016.

A) 15%
B) 45%
C) 55%
D) 75%
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
35
Automatically redirecting a web link to a different address is an example of which of the following?

A) sniffing
B) social engineering
C) pharming
D) DDoS attack
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
36
The attack on Dyn Inc.in 2016 is an example of which of the following?

A) SQL injection attack
B) browser parasite
C) DDoS attack
D) MitM attack
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
37
IoT botnets became the preferred platform for launching DDoS attacks in 2017.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
38
Which of the following is not an example of a potentially unwanted program (PUP)?

A) adware
B) browser parasite
C) drive-by download
D) spyware
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
39
Spoofing is the attempt to hide a hacker's true identity by using someone else's e-mail or IP address.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
40
Phishing attacks rely on browser parasites.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
41
Asymmetric key cryptography is also known as:

A) public key cryptography.
B) secret key cryptography.
C) PGP.
D) PKI.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
42
Next generation firewalls provide all of the following except:

A) an application-centric approach to firewall control.
B) the ability to identify applications regardless of the port, protocol, or security evasion tools used.
C) the ability to automatically update applications with security patches.
D) the ability to identify users regardless of the device or IP address.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
43
All of the following are features of WPA3 except:

A) it implements a more robust key exchange protocol.
B) it enables the creation of a VPN.
C) it provides a more secure way to connect IoT devices.
D) it features expanded encryption for public networks.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
44
Which of the following statements is not true?

A) Apple's Touch ID stores a digital replica of a user's actual fingerprint in Apple's iCloud.
B) Biometric devices reduce the opportunity for spoofing.
C) A retina scan is an example of a biometric device.
D) Biometric data stored on an iPhone is encrypted.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
45
All of the following are methods of securing channels of communication except:

A) SSL/TLS.
B) digital certificates.
C) VPN.
D) FTP.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
46
All of the following statements about public key cryptography are true except:

A) public key cryptography uses two mathematically related digital keys.
B) public key cryptography ensures authentication of the sender.
C) public key cryptography does not ensure message integrity.
D) public key cryptography is based on the idea of irreversible mathematical functions.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
47
Proxy servers are also known as:

A) firewalls.
B) application gateways.
C) dual home systems.
D) packet filters.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
48
Which of the following is not an example of an access control?

A) firewalls
B) proxy servers
C) digital signatures
D) login passwords
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
49
The Data Encryption Standard uses a(n)________-bit key.

A) 8
B) 56
C) 256
D) 512
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
50
A ________ is hardware or software that acts as a filter to prevent unwanted packets from entering a network.

A) firewall
B) virtual private network
C) proxy server
D) PPTP
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
51
All of the following statements about PKI are true except:

A) the term PKI refers to the certification authorities and digital certificate procedures that are accepted by all parties.
B) PKI is not effective against insiders who have a legitimate access to corporate systems including customer information.
C) PKI guarantees that the verifying computer of the merchant is secure.
D) the acronym PKI stands for public key infrastructure.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
52
An intrusion detection system can perform all of the following functions except:

A) examining network traffic.
B) setting off an alarm when suspicious activity is detected.
C) checking network traffic to see if it matches certain patterns or preconfigured rules.
D) blocking suspicious activity.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
53
Which of the following statements is not true?

A) A VPN provides both confidentiality and integrity.
B) A VPN uses both authentication and encryption.
C) A VPN uses a dedicated secure line.
D) The primary use of VPNs is to establish secure communications among business partners.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
54
What is a sniffing attack and how does it differ from a MitM attack?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
55
All the following statements about symmetric key cryptography are true except:

A) in symmetric key cryptography, both the sender and the receiver use the same key to encrypt and decrypt a message.
B) the Data Encryption Standard is a symmetric key encryption system.
C) symmetric key cryptography is computationally slower.
D) symmetric key cryptography is a key element in digital envelopes.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
56
Define the terms tiger team,white hat,black hat,and grey hat and discuss the difference between them.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
57
All of the following are used for authentication except:

A) digital signatures.
B) certificates of authority.
C) biometric devices.
D) packet filters.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
58
Which of the following dimensions of e-commerce security is not provided for by encryption?

A) confidentiality
B) availability
C) message integrity
D) nonrepudiation
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
59
Discuss and explain the various types of malicious code and how they work.Include the different types of viruses.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
60
A digital certificate contains all of the following except the:

A) subject's private key.
B) subject's public key.
C) digital signature of the certification authority.
D) digital certificate serial number.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
61
Face ID is an example of which of the following?

A) biometrics
B) encryption
C) IDS
D) firewall
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
62
Which of the following is a set of short-range wireless technologies used to share information among devices within about two inches of each other?

A) DES
B) NFC
C) IM
D) text messaging
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
63
Which of the following statements about Bitcoin is not true?

A) The computational power required to mine Bitcoins has increased over time.
B) Bitcoins are completely secure.
C) Bitcoins are illegal in some countries.
D) In 2018, Bitcoin reprsented just under 40% of the full market for cryptocurrencies.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
64
All of the following are limitations of the existing online credit card payment system except:

A) poor security.
B) cost to consumers.
C) cost to merchant.
D) social equity.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
65
PCI-DSS is a standard established by which of the following?

A) the banking industry
B) the credit card industry
C) the federal government
D) the retail industry
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
66
Which of the following is not a major trend in e-commerce payments in 2018-2019?

A) Mobile retail payment volume decreases.
B) PayPal remains the most popular alternative payment method.
C) Large banks enter the mobile wallet and P2P payments market.
D) Payment by credit and/or debit card remains the dominant form of online payment.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
67
Zelle is an example of a P2P mobile payment app.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
68
Which of the following statements is not true?

A) A majority of states require companies that maintain personal data on their residents to publicly disclose when a security breach affecting those residents has occurred.
B) The USA Patriot Act broadly expanded law enforcement's investigative and surveillance powers.
C) The Cybersecurity Information Sharing Act was strongly supported by most large technology companies and privacy advocates.
D) The Federal Trade Commission has asserted that it has authority over corporations' data security practices.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
69
Which of the following statements about blockchain is not true?

A) A blockchain system is composed of a distributed network of computers.
B) A blockchain system is inherently centralized.
C) A blockchain system is a transaction processing system.
D) Cryptocurrencies are based on blockchain technology.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
70
PayPal is an example of what type of payment system?

A) online stored value payment system
B) digital checking system
C) accumulating balance system
D) digital credit card system
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
71
The creation of Bitcoins consumes a significant amount of energy.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
72
What dimensions do digital signatures and hash digests add to public key cryptography and how do they work?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
73
Discuss the security of communications channels.Include definitions and explanations for the terms Secure Sockets Layer/Transport Layer Security (SSL/TLS),secure negotiated session,session key,and VPN.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
74
Explain the difference between symmetric key cryptography and public key cryptography.Which dimensions of e-commerce security does encryption address?
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
75
To allow lower-level employees access to the corporate network while preventing them from accessing private human resources documents,you would use:

A) a firewall.
B) an authorization management system.
C) security tokens.
D) an authorization policy.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
76
All of the following statements about Apple Pay are true except which of the following?

A) Apple Pay is the most popular alternative payment method in the United States.
B) Apple Pay is an example of a universal proximity mobile wallet.
C) Apple Pay can be used for mobile payments at the point of sale at a physical store.
D) Apple Pay has more users than either Google Pay or Samsung Pay.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
77
The easiest and least expensive way to prevent threats to system integrity is to install anti-virus software.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
78
SSL/TLS cannot provide irrefutability.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
79
What is the first step in developing an e-commerce security plan?

A) Create a security organization.
B) Develop a security policy.
C) Perform a risk assessment.
D) Perform a security audit.
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
80
Which of the following is the most common protocol for securing a digital channel of communication?

A) DES
B) SSL/TLS
C) VPN
D) HTTP
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.
فتح الحزمة
k this deck
locked card icon
فتح الحزمة
افتح القفل للوصول البطاقات البالغ عددها 85 في هذه المجموعة.