4.2 Understand network threats and attacks.
Objective 4.2 sits in Network Security, which carries 24% of the Certified in Cybersecurity exam. The questions below are original, written from the official objective title above, and each explanation cites the ISC2 page it rests on.
Objective title verbatim from the official objectives. ISC2 exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
What is phishing, at its core?
Correct.
Concept
Some attacks target software; phishing targets judgment, using electronic delivery to put a deceptive request in front of a person.
Why A
ATT&CK puts it plainly: all forms of phishing are electronically delivered social engineering, sent to gain access to victim systems.
Now you: objective 4.2 questions
No account needed. The explanation opens when you answer.
Sample question 1 of 3
A malicious email references your company's current projects and names its CFO. Which attack variant is this?
Sample question 2 of 3
A user receives an email urging them to call a support number, where a voice directs them to install a remote access tool. Is this phishing?
Sample question 3 of 3
A forged sender identity slips past your users and the automated filters alike. Which technique does that describe?
Full Certified in Cybersecurity question bank coming
We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.
Read the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.