CFS136 · Principles of Information Security

Chapter 4 Review: Attacks and Indicators of Malicious Activity

A hands-on review station for malware families, social engineering, network and application attacks, and the indicators of compromise from Chapter 4.

Start Here

Five review stations, each a different way to practice Chapter 4. Work through them in any order. Nothing here is graded or stored, so use it as many times as you like before the quiz or the exam.

What this chapter asked you to be able to do

  • Classify malware families (ransomware, trojans, worms, rootkits, logic bombs, fileless malware) and explain how each one works and what it aims to do.
  • Identify social engineering attacks and the psychological principles (authority, urgency, reciprocity, trust, social proof) that make them effective.
  • Explain network attacks including denial of service, on-path interception, DNS spoofing, and protocol downgrade.
  • Describe application and credential attacks including SQL injection, command injection, buffer overflow, and privilege escalation.
  • Recognize indicators of compromise across files, network, processes, and user behavior, and explain why behavioral indicators are the hardest for an attacker to fake.

Your progress this session

These counters update as you check answers on each station. They reset when you reload the page.

0/20Terms viewed
0/8Attacks identified
0/6Principles matched
0/7Indicators read
0/10Quiz correct
How to use each station Make a choice, then select Check to see whether it holds up and why. Every answer includes the reasoning, so a wrong pick is a chance to reread the logic rather than just the label. Keyboard users can move between tabs with the arrow keys.