Cyber Crime - introduction, malware types, kinds of cyber crime - Question Bank

1. Which of the following malware types is designed to steal sensitive information like passwords and credit card numbers?
A) Worm
B) Adware
C) Spyware/Information Stealer
D) Ransomware
2. What is 'cyber sabotage'?
A) The act of stealing personal information.
B) The intentional disruption or destruction of computer systems or networks, often to cause damage or hinder operations.
C) The spread of viruses through email attachments.
D) The illegal trading of stolen data.
3. Which type of cybercrime involves unauthorized access to computer systems using stolen credentials?
A) Phishing
B) Credential Stuffing
C) Malware
D) Social Engineering
4. What is the primary purpose of a 'backdoor' in the context of malware?
A) To secure the system against unauthorized access.
B) To allow attackers to remotely access and control the compromised system without going through normal authentication procedures.
C) To encrypt user data for protection.
D) To provide a legitimate way for IT administrators to manage systems.
5. Which of these is a form of cybercrime that involves manipulating search engine results to promote fraudulent websites?
A) DDoS
B) Pharming
C) Black hat SEO
D) Ransomware
6. What does 'malicious insider' refer to in cybercrime?
A) An external hacker who gains access.
B) A trusted individual within an organization who intentionally misuses their access privileges to harm the organization or steal data.
C) A foreign government agent.
D) An automated bot used for cyber attacks.
7. A 'Trojan horse' is a type of malware that:
A) Spreads autonomously across networks.
B) Requires user interaction to install and often disguises itself as legitimate software.
C) Encrypts files and demands payment.
D) Hides its presence from the operating system.
8. What is 'cyberstalking' primarily focused on?
A) Financial fraud
B) Theft of intellectual property
C) Harassment and intimidation of an individual
D) Disruption of public infrastructure
9. Which of the following is NOT a common vector for malware infection?
A) Email attachments
B) Malicious websites
C) Legitimate software downloads from trusted sources
D) Infected USB drives
10. What is the primary goal of a 'scareware' attack?
A) To steal financial information.
B) To trick users into believing their system is infected and convincing them to purchase fake antivirus software.
C) To disrupt network services.
D) To gain unauthorized access to personal accounts.
11. A 'logic bomb' is a piece of malware that:
A) Replicates itself rapidly.
B) Is programmed to trigger and execute malicious functions only when specific conditions are met.
C) Encrypts files and demands a ransom.
D) Records keystrokes.
12. What is 'cyber bullying'?
A) Unauthorized access to computer systems.
B) Using electronic communication to bully a person, typically by sending messages of an intimidating or threatening nature.
C) Stealing sensitive data from corporations.
D) Disrupting network services.
13. Which of the following is a specific type of cybercrime that targets online banking systems?
A) DDoS attack
B) Phishing
C) Malware (e.g., banking trojans)
D) All of the above
14. What is a 'drive-by download'?
A) A download initiated by the user.
B) Malicious software downloaded onto a device without the user's knowledge or consent, often by simply visiting a compromised website.
C) A legitimate software update.
D) A download that requires user authentication.
15. Which malware type aims to gain administrative-level control over a computer system?
A) Adware
B) Spyware
C) Rootkit
D) Worm
16. What is 'cyberterrorism'?
A) Personal online harassment.
B) The use of cyber attacks to cause fear, disruption, or significant damage, often for political or ideological goals.
C) Corporate espionage for financial gain.
D) The spread of viruses through email.
17. A 'waterhole attack' is a type of cyber attack where:
A) Attackers target specific individuals by compromising websites they frequently visit.
B) Attackers flood a network with malicious packets.
C) Attackers use social media to spread malware.
D) Attackers steal credentials through fake login pages.
18. What is the purpose of a 'honeypot' in cybersecurity?
A) To store sensitive user data securely.
B) To lure cyber attackers into a decoy system to study their methods.
C) To encrypt all outgoing network traffic.
D) To automatically patch software vulnerabilities.
19. Which type of cybercrime involves exploiting trust and authority to gain access or information?
A) Brute-force attack
B) Social engineering
C) SQL injection
D) DDoS attack
20. What is the primary function of a 'keylogger'?
A) To encrypt files.
B) To record keystrokes made by a user.
C) To delete files from a system.
D) To block internet access.
21. In cybercrime, 'data breach' refers to:
A) A successful phishing attempt.
B) The unauthorized access and acquisition of sensitive or confidential data.
C) A denial-of-service attack that brings down a website.
D) The installation of ransomware on a system.
22. What is a 'zero-day exploit'?
A) An attack that targets systems with outdated software.
B) An attack that exploits a vulnerability that is unknown to the software vendor and for which no patch exists.
C) A type of malware that is easily detectable by antivirus software.
D) A phishing attack that uses a perfectly crafted email.
23. Which of the following is a characteristic of a computer virus?
A) It can spread across networks without human intervention.
B) It attaches itself to existing executable files.
C) It encrypts files and demands a ransom.
D) It operates by redirecting web traffic.
24. What is the term for malware that secretly mines cryptocurrency using a victim's computer resources?
A) Spyware
B) Cryptojacking
C) Ransomware
D) Adware
25. A 'botnet' is primarily used in cybercrime to:
A) Securely store stolen data.
B) Launch coordinated attacks like DDoS, send spam, or mine cryptocurrency.
C) Encrypt sensitive files for ransom.
D) Monitor user activity without detection.
26. What is 'cyber warfare'?
A) Personal attacks between individuals online.
B) The use of cyber attacks by a nation-state against another nation-state.
C) Large-scale corporate espionage.
D) The illegal trading of stolen data on the dark web.
27. Which type of malware is designed to exploit vulnerabilities in web browsers or websites to execute malicious code?
A) Worm
B) Virus
C) Web-based malware (e.g., drive-by downloads)
D) Rootkit
28. What is 'cyber espionage'?
A) The act of stealing personal identities online.
B) The unauthorized access to sensitive information, typically by governments or corporations, for intelligence purposes.
C) The disruption of online services through DDoS attacks.
D) The spread of malicious software for financial gain.
29. Credential stuffing is a cybercrime technique that involves:
A) Using stolen credit card numbers to make purchases.
B) Using automated tools to test large lists of username and password combinations obtained from data breaches.
C) Gaining unauthorized access to a company's internal network.
D) Spreading malware through infected USB drives.
30. Which of the following is a common method used in phishing attacks?
A) Exploiting software bugs.
B) Sending fraudulent emails or messages that appear to be from legitimate sources.
C) Using brute-force password cracking.
D) Deploying ransomware to encrypt files.
31. A 'man-in-the-middle' (MitM) attack is a type of cybercrime where:
A) An attacker intercepts and possibly alters communication between two parties.
B) An attacker gains complete control of a victim's computer.
C) An attacker floods a server with excessive requests.
D) An attacker steals a user's password through a fake login page.
32. What is 'social engineering' as a cybercrime tactic?
A) Using complex algorithms to break encryption.
B) Manipulating people into performing actions or divulging confidential information.
C) Exploiting hardware vulnerabilities.
D) Developing advanced AI for cyber attacks.
33. Which type of cybercrime involves exploiting vulnerabilities in web applications to inject malicious code?
A) Phishing
B) SQL Injection
C) Ransomware
D) Trojan Horse
34. Cyberstalking is a form of cybercrime that involves:
A) Unauthorized access to financial records.
B) Repeatedly harassing or threatening an individual online.
C) Spreading false information about a person or organization.
D) Disrupting online communication channels.
35. What is 'pharming' in the context of cybercrime?
A) A type of malware that steals banking details.
B) Redirecting users from legitimate websites to fraudulent ones.
C) An attack that exploits vulnerabilities in web applications.
D) The unauthorized use of someone's Wi-Fi network.
36. Identity theft in the cyber context involves:
A) Disrupting a website's functionality.
B) Using someone else's personal information for fraudulent purposes.
C) Spreading malicious code through email attachments.
D) Gaining unauthorized access to a secure network.
37. A Distributed Denial of Service (DDoS) attack differs from a DoS attack by:
A) Using only one computer to launch the attack.
B) Utilizing multiple compromised systems to flood the target with traffic.
C) Targeting only individual user accounts.
D) Requiring the attacker to have physical access to the target network.
38. What is the goal of a Denial of Service (DoS) attack?
A) To steal personal data.
B) To gain unauthorized access to a system.
C) To make a machine or network resource unavailable to its intended users.
D) To install malware on a victim's computer.
39. Which of the following is a form of cybercrime involving the impersonation of a trusted entity to trick individuals into revealing sensitive information?
A) Denial of Service (DoS) attack
B) Phishing
C) SQL Injection
D) Cross-Site Scripting (XSS)
40. A rootkit is a type of malware that:
A) Encrypts data for ransom.
B) Allows remote access to a system.
C) Hides its presence and other malicious activities from the user and security software.
D) Spreads rapidly without user intervention.
41. Adware primarily aims to:
A) Steal sensitive data.
B) Gain control of a user's computer.
C) Display unwanted advertisements to the user.
D) Install other malicious software.
42. Spyware is designed to:
A) Disrupt network operations.
B) Gain unauthorized access to systems.
C) Secretly monitor and collect information about the user.
D) Delete or corrupt files.
43. Ransomware typically operates by:
A) Stealing login credentials.
B) Encrypting a user's files and demanding a ransom.
C) Using the computer's resources for cryptocurrency mining.
D) Displaying unwanted advertisements.
44. What is the main characteristic of a computer virus?
A) It requires user interaction to spread.
B) It spreads autonomously across networks.
C) It encrypts files and demands payment.
D) It hides its presence from the operating system.
45. A program that disguises itself as legitimate software but performs malicious actions is known as a:
A) Virus
B) Worm
C) Trojan horse
D) Rootkit
46. Which type of malware is designed to replicate itself and spread to other computers?
A) Trojan horse
B) Worm
C) Ransomware
D) Spyware
47. What does 'malware' stand for?
A) Malicious software
B) Malicious network
C) Malicious hardware
D) Malicious document
48. Which of the following is NOT typically considered a motive for cybercrime?
A) Financial gain
B) Political activism
C) Personal revenge
D) Scientific research
49. What is the primary definition of cybercrime?
A) Any crime involving the use of a computer or network.
B) Unauthorized access to a computer system.
C) Theft of digital information.
D) Disruption of computer services.