Start Here
Five review stations, each a different way to practice Chapter 4. Work through them in any order. Nothing here is graded or stored, so use it as many times as you like before the quiz or the exam.
What this chapter asked you to be able to do
- Classify malware families (ransomware, trojans, worms, rootkits, logic bombs, fileless malware) and explain how each one works and what it aims to do.
- Identify social engineering attacks and the psychological principles (authority, urgency, reciprocity, trust, social proof) that make them effective.
- Explain network attacks including denial of service, on-path interception, DNS spoofing, and protocol downgrade.
- Describe application and credential attacks including SQL injection, command injection, buffer overflow, and privilege escalation.
- Recognize indicators of compromise across files, network, processes, and user behavior, and explain why behavioral indicators are the hardest for an attacker to fake.
Your progress this session
These counters update as you check answers on each station. They reset when you reload the page.
Key Terms Flashcards
Select a card to reveal its definition, then select again to flip it back. Try to state the definition before you flip. The counter tracks how many distinct cards you have opened.
Identifying the Attack from Its Description
Each scenario describes how one attack or malware family behaves. Read the description and choose the attack it fits, then check your answer.
Matching the Social Engineering Principle
Social engineering targets human psychology rather than software. Read each approach and choose the principle it relies on, then check your answer.
Interpreting Indicators of Compromise
An indicator of compromise is observable evidence that a system is under attack. Read each observation and choose the activity it most likely signals, then check your answer.
Knowledge Check
Ten multiple-choice questions across the whole chapter. Answer them all, then select Score my answers for feedback and a final total.