Deck 11: Security and Ethics

Full screen (f)
exit full mode
Question
A firewall typically sits between a network and its individual computers.
Use Space or
up arrow
down arrow
to flip the card.
Question
Wiretapping involves the capability of authorized users to search through storage,directories,or files for private information.
Question
Partial network encryption,also called communications encryption,is the most extreme form of encryption.
Question
A continuing series of security awareness and ethics communications to computer users is more effective than a single announcement.
Question
Some viruses are considered to be benign.
Question
Spooling is a security threat that relies on cleartext transmission whereby the assailant falsifies the IP addresses of an Internet server by changing the address recorded in packets it sends over the Internet.
Question
Intrusion detection is an example of a strategy for improving system survivability based on knowledge gained from intrusions.
Question
The IEEE and the Association for Computing Machinery (ACM)issued a standard of ethics for the global computing community in 1977.
Question
A master boot record virus infects both the boot record and program files,making them especially difficult to repair.
Question
A worm is a memory-resident program that copies itself from one system to the next without requiring the aid of an infected program file.
Question
If a password consists of ten characters,it would take a human about 4.5 years to guess the password if the human makes one try each second.
Question
Any vulnerability at the operating system level opens the entire system to attack.
Question
A gap in system security in always indicative of malicious activity.
Question
In public/private key encryption,the private key is a pair of two prime numbers chosen by the person who wants to receive a private message.
Question
A logic bomb often spreads unnoticed throughout a network until a predetermined event,when it goes off and does its damage.
Question
When nonsynchronized processes access data records and modify some but not all of a record's fields,it is called "accidental incomplete modification of data."
Question
A virus is defined as a small program written to alter the way a computer operates,without the permission or knowledge of the user.
Question
One popular authentication tool is Kerberos,a network authentication protocol developed as part of the Athena Project at MIT.
Question
A single computer without access to e-mail or the Internet is easy to protect and has a low risk of attack.
Question
Default passwords pose unique vulnerabilities because they are widely known among system attackers but are a necessary tool for vendors.
Question
____ peruse data packets as they pass by,examine each one for specific information,and log copies of interesting packets for more detailed examination.

A) Spoofers
B) Proxy servers
C) Packet sniffers
D) Packet filters
Question
A ____ server hides important network information from outsiders by making the network server invisible.

A) redirection
B) blocking
C) proxy
D) fire
Question
A ____ combines into one program the characteristics of other attacks.

A) Trojan Horse
B) worm
C) multi-thread virus
D) blended threat
Question
The object used by the Kerberos protocol to provide client verification is known as a ____.

A) password
B) passphrase
C) token
D) ticket
Question
Generally,____ antivirus software compares file sizes (checking for added code when none is expected),looks for replicating instructions,and searches for unusual file activity.

A) diagnostic
B) preventive
C) reactive
D) firewall
Question
What strategy contributes most to system recovery?

A) authentication
B) integrity checking
C) data replication
D) encryption
Question
Trash collection,also known as ____,is an evening pastime for those who enjoy perusing anything and everything thrown out by system users.

A) dumpster diving
B) digital recycling
C) dumpster surfing
D) trash surfing
Question
The immediate result of a worm is ____.

A) not noticeable until later
B) the slower processing time of legitimate work
C) complete data loss with little chance of recovery
D) a computer crash with or without a blue screen
Question
Intruders have been known to capture user passwords by using a ____ to replace the standard login program on the computer with an identical fake login that captures keystrokes.

A) worm
B) masquerade program
C) Trojan horse
D) virtual login console
Question
____ is a form of social engineering whereby an intruder pretends to be a legitimate entity and contacts unwary users asking them to reconfirm their personal and/or financial information.

A) Spoofing
B) Phishing
C) Impersonating
D) Acting
Question
It will take a computer ____ to crack a password with a length of three characters if the computer tries one million values per second.

A) .008788 seconds
B) 4.5 seconds
C) 2.5 hours
D) 58 hours
Question
One major disadvantage of encryption is that ____.

A) it increases the system's overhead
B) it is inconvenient for users
C) it is prohibitive in cost
D) it is often ineffective
Question
The capability of a system to fulfill its mission,in a timely manner,in the presence of attacks,failures,or accidents is known as ____.

A) attack resistance
B) attack survivability
C) system recovery
D) system survivability
Question
Errors can occur when data values are incorrectly stored because the field isn't large enough to hold the numeric value stored there.This issue is an example of a(n)____.

A) unintentional attack
B) malicious attack
C) denial-of-service attack
D) trap door attack
Question
An entire system that is backed up once a week and only backs up files daily that are changed on that day is known as a(n)____ backup.

A) incremental
B) layered
C) phased
D) recovery-based
Question
As an alternative to passwords,some systems have integrated use of a ____.

A) smart card
B) fingerprint scanner
C) biometric scanner
D) retina scanner
Question
Using ____,a firewall reviews the header information for incoming and outgoing Internet packets to verify that the source address,destination address,and protocol are all correct.

A) snooping
B) packet filtering
C) a proxy server
D) anti-virus software
Question
Two methods of active wiretapping are "between lines transmission" and "____."

A) Trojan horse
B) piggyback entry
C) browsing
D) trap doors
Question
____ viruses infect data files.

A) File infector
B) Boot sector
C) Master boot record
D) Macro
Question
What configuration has the highest level of risk?

A) LAN with Internet
B) LAN without Internet
C) Single computer without e-mail or Internet
D) LAN with firewall
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/40
auto play flashcards
Play
simple tutorial
Full screen (f)
exit full mode
Deck 11: Security and Ethics
1
A firewall typically sits between a network and its individual computers.
False
2
Wiretapping involves the capability of authorized users to search through storage,directories,or files for private information.
False
3
Partial network encryption,also called communications encryption,is the most extreme form of encryption.
False
4
A continuing series of security awareness and ethics communications to computer users is more effective than a single announcement.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
5
Some viruses are considered to be benign.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
6
Spooling is a security threat that relies on cleartext transmission whereby the assailant falsifies the IP addresses of an Internet server by changing the address recorded in packets it sends over the Internet.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
7
Intrusion detection is an example of a strategy for improving system survivability based on knowledge gained from intrusions.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
8
The IEEE and the Association for Computing Machinery (ACM)issued a standard of ethics for the global computing community in 1977.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
9
A master boot record virus infects both the boot record and program files,making them especially difficult to repair.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
10
A worm is a memory-resident program that copies itself from one system to the next without requiring the aid of an infected program file.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
11
If a password consists of ten characters,it would take a human about 4.5 years to guess the password if the human makes one try each second.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
12
Any vulnerability at the operating system level opens the entire system to attack.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
13
A gap in system security in always indicative of malicious activity.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
14
In public/private key encryption,the private key is a pair of two prime numbers chosen by the person who wants to receive a private message.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
15
A logic bomb often spreads unnoticed throughout a network until a predetermined event,when it goes off and does its damage.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
16
When nonsynchronized processes access data records and modify some but not all of a record's fields,it is called "accidental incomplete modification of data."
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
17
A virus is defined as a small program written to alter the way a computer operates,without the permission or knowledge of the user.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
18
One popular authentication tool is Kerberos,a network authentication protocol developed as part of the Athena Project at MIT.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
19
A single computer without access to e-mail or the Internet is easy to protect and has a low risk of attack.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
20
Default passwords pose unique vulnerabilities because they are widely known among system attackers but are a necessary tool for vendors.
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
21
____ peruse data packets as they pass by,examine each one for specific information,and log copies of interesting packets for more detailed examination.

A) Spoofers
B) Proxy servers
C) Packet sniffers
D) Packet filters
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
22
A ____ server hides important network information from outsiders by making the network server invisible.

A) redirection
B) blocking
C) proxy
D) fire
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
23
A ____ combines into one program the characteristics of other attacks.

A) Trojan Horse
B) worm
C) multi-thread virus
D) blended threat
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
24
The object used by the Kerberos protocol to provide client verification is known as a ____.

A) password
B) passphrase
C) token
D) ticket
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
25
Generally,____ antivirus software compares file sizes (checking for added code when none is expected),looks for replicating instructions,and searches for unusual file activity.

A) diagnostic
B) preventive
C) reactive
D) firewall
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
26
What strategy contributes most to system recovery?

A) authentication
B) integrity checking
C) data replication
D) encryption
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
27
Trash collection,also known as ____,is an evening pastime for those who enjoy perusing anything and everything thrown out by system users.

A) dumpster diving
B) digital recycling
C) dumpster surfing
D) trash surfing
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
28
The immediate result of a worm is ____.

A) not noticeable until later
B) the slower processing time of legitimate work
C) complete data loss with little chance of recovery
D) a computer crash with or without a blue screen
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
29
Intruders have been known to capture user passwords by using a ____ to replace the standard login program on the computer with an identical fake login that captures keystrokes.

A) worm
B) masquerade program
C) Trojan horse
D) virtual login console
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
30
____ is a form of social engineering whereby an intruder pretends to be a legitimate entity and contacts unwary users asking them to reconfirm their personal and/or financial information.

A) Spoofing
B) Phishing
C) Impersonating
D) Acting
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
31
It will take a computer ____ to crack a password with a length of three characters if the computer tries one million values per second.

A) .008788 seconds
B) 4.5 seconds
C) 2.5 hours
D) 58 hours
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
32
One major disadvantage of encryption is that ____.

A) it increases the system's overhead
B) it is inconvenient for users
C) it is prohibitive in cost
D) it is often ineffective
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
33
The capability of a system to fulfill its mission,in a timely manner,in the presence of attacks,failures,or accidents is known as ____.

A) attack resistance
B) attack survivability
C) system recovery
D) system survivability
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
34
Errors can occur when data values are incorrectly stored because the field isn't large enough to hold the numeric value stored there.This issue is an example of a(n)____.

A) unintentional attack
B) malicious attack
C) denial-of-service attack
D) trap door attack
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
35
An entire system that is backed up once a week and only backs up files daily that are changed on that day is known as a(n)____ backup.

A) incremental
B) layered
C) phased
D) recovery-based
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
36
As an alternative to passwords,some systems have integrated use of a ____.

A) smart card
B) fingerprint scanner
C) biometric scanner
D) retina scanner
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
37
Using ____,a firewall reviews the header information for incoming and outgoing Internet packets to verify that the source address,destination address,and protocol are all correct.

A) snooping
B) packet filtering
C) a proxy server
D) anti-virus software
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
38
Two methods of active wiretapping are "between lines transmission" and "____."

A) Trojan horse
B) piggyback entry
C) browsing
D) trap doors
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
39
____ viruses infect data files.

A) File infector
B) Boot sector
C) Master boot record
D) Macro
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
40
What configuration has the highest level of risk?

A) LAN with Internet
B) LAN without Internet
C) Single computer without e-mail or Internet
D) LAN with firewall
Unlock Deck
Unlock for access to all 40 flashcards in this deck.
Unlock Deck
k this deck
locked card icon
Unlock Deck
Unlock for access to all 40 flashcards in this deck.