Human Element Security Flashcards

1
Q

Why are humans considered the “weakest link” in cybersecurity?

A

Because they can be tricked or manipulated into revealing sensitive information.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is social engineering?

A

The psychological manipulation of people to gain access to information or systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is HUMINT (Human Intelligence)?

A

Intelligence gathered by talking to people rather than using technical methods.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is OSINT (Open-Source Intelligence)?

A

Intelligence gathered from publicly available sources like social media, job postings, and public records.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Google Dorking?

A

A search technique that uses advanced Google search operators to find exposed data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is pretexting?

A

An attacker creates a false scenario to trick a victim into revealing sensitive information.

Example: A scammer pretends to be tech support and asks for login credentials.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is phishing?

A

A fraudulent email, text, or call designed to trick users into providing information or downloading malware.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is tailgating (piggybacking)?

A

When an attacker follows an authorized person into a restricted area without credentials.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are three best practices for password security?

A

Use strong, unique passwords for each account.
Store passwords in a password manager.
Enable Multi-Factor Authentication (MFA).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How can employees recognize phishing emails?

A

Look for misspellings & unusual requests.
Check the sender’s email address.
Hover over links before clicking.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Why should employees avoid public WiFi for work?

A

Public WiFi lacks encryption, allowing attackers to intercept data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a Clean Desk Policy?

A

A policy requiring employees to secure sensitive documents and lock computers when leaving their desks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly