Services
Discover
Homeschooling
Ask a Question
Log in
Sign up
Filters
Done
Question type:
Essay
Multiple Choice
Short Answer
True False
Matching
Topic
Certification
Study Set
Certified Internet Web Professional (CIW)
Exam 4: CIW v5 Security Essentials
Path 4
Access For Free
Share
All types
Filters
Study Flashcards
Practice Exam
Learn
Question 1
Multiple Choice
Which of the following errors most commonly occurs when responding to a security breach?
Question 2
Multiple Choice
You have determined that the company Web server has several vulnerabilities, including a buffer overflow that has resulted in an attack. The Web server uses PHP and has direct connections to an Oracle database server. It also uses many CGI scripts. Which of the following is the most effective way to respond to this attack?
Question 3
Multiple Choice
What is the primary drawback of using symmetric-key encryption?
Question 4
Multiple Choice
A new server has been placed on the network. You have been assigned to protect this server using a packet-filtering firewall. To comply with this request, you have enabled the following ruleset:
Which choice describes the next step to take now that this ruleset has been enabled?
Question 5
Multiple Choice
A CGI application on the company's Web server has a bug written into it. This particular bug allows the application to write data into an area of memory that has not been properly allocated to the application. An attacker has created an application that takes advantage of this bug to obtain credit card information. Which of the following security threats is the attacker exploiting, and what can be done to solve the problem?
Question 6
Multiple Choice
A security breach has occurred involving the company e-commerce server. Customer credit card data has been released to unauthorized third parties. Which of the following lists the appropriate parties to inform?
Question 7
Multiple Choice
Which of the following is a typical target of a trojan on a Linux system?
Question 8
Multiple Choice
A security breach has occurred in which a third party was able to obtain and misuse legitimate authentication information. After investigation, you determined that the specific cause for the breach was that end users have been placing their passwords underneath their keyboards. Which step will best help you resolve this problem?
Question 9
Multiple Choice
You have implemented a version of the Kerberos protocol for your network. What service does Kerberos primarily offer?
Question 10
Multiple Choice
Which of the following is the most likely first step to enable a server to recover from a denial-of-service attack in which all hard disk data is lost?
Question 11
Multiple Choice
A disgruntled employee has discovered that the company Web server is not protected against a particular buffer overflow vulnerability. The disgruntled employee has created an application to take advantage of this vulnerability and secretly obtain sensitive data from the Web server's hard disk. This application sends a set of packets to the Web server that causes it to present an unauthenticated terminal with root privileges. What is the name for this particular type of attack?
Question 12
Multiple Choice
You are using a PKI solution that is based on Secure Sockets Layer (SSL) . Which of the following describes the function of the asymmetric-key-encryption algorithm used?
Question 13
Multiple Choice
The most popular types of proxy-oriented firewalls operate at which layer of the OSI/RM?
Question 14
Multiple Choice
You want to create a quick solution that allows you to obtain real-time login information for the administrative account on an LDAP server that you feel may become a target. Which of the following will accomplish this goal?