Chapter 1: Introduction to Information Security


1. An indirect attack involves a hacker using a personal computer to break into a system.

2. The value of information comes from the characteristics it possesses.

3. By balancing information security and access, a completely secure information system can be created.

4. The security blueprint is a detailed version of the security framework.

5. One of the basic tenets of security architectures is the spheres of security.

1. Which term describes a subject or object’s ability to use, manipulate, modify, or affect another
9. Which individual interferes with or disrupts systems to protest the operations, policies, or actions of an organization or government agency?
b.|Packet monkey|d.|Hacktivist|

10. Which individual is considered to be a script kiddie who uses automated tools to inundate a Web site with a barrage of network traffic, usually resulting in a denial of service?
b.|Packet monkey|d.|Hacktivist|

11. Which threat is the most common intellectual property (IP) breach?
a.|Software piracy|c.|Shoulder surfing|
b.|Spoofing|d.|Password cracking|

12. Which attack is used when a copy of the hash of the user’s password has been obtained?
a.|Rainbow attack|c.|Dictionary attack|
b.|Brute force attack|d.|Spoofing|

13. Which e-mail attack occurs when an attacker routes large quantities of e-mail to the target system?
a.|Buffer overflow|c.|Spam|
b.|Mail bomb|d.|Timing attack|

14. A(n) ____ is an application error that occurs when more data is sent to a buffer than it can handle.
a.|timing attack|c.|dictionary attack|
