Network Security | OCR GCSE Computer Science (J277)
Network Security
- 51 questions
- 3 subtopics
- J277/01
- J277/01
Network Security is examined in J277/01, Computer systems.
It covers malware, social engineering and brute-force attacks, denial of service, data interception and SQL injection and identifying and preventing vulnerabilities.
Sample questions from Network Security
Answer each one closed book first, then open the answer.
-
Malware, social engineering and brute-force attacks
What is spyware, and what is its purpose?
Show the answer
Spyware secretly monitors what a user does on their computer. A keylogger is spyware that records keystrokes to capture passwords and card numbers. -
Malware, social engineering and brute-force attacks
Give two signs that an email may be a phishing attempt.
Show the answer
A phishing email often uses a generic greeting and urges the reader to act immediately. The sender's address or the link may not match the real organisation's website. -
Denial of service, data interception and SQL injection
What is data interception?
Show the answer
Data interception is capturing data as it travels across a network. The attacker copies the data without the sender or receiver knowing. -
Denial of service, data interception and SQL injection
What is SQL injection?
Show the answer
SQL injection is an attack where SQL code is typed into an input box on a website or app. The system then runs that code against its database. -
Identifying and preventing vulnerabilities
What attacks can a firewall help to limit?
Show the answer
A firewall helps block hackers trying to reach the network from outside. A firewall can also stop some malware sending data out and filter traffic from a denial of service attack. -
Identifying and preventing vulnerabilities
Why does a network protected by a firewall still need encryption?
Show the answer
A firewall filters traffic but cannot protect data once it has left the network. Encryption keeps data unreadable if it is captured in transit.
The 3 subtopics
One subtopic is one session. Work down the list.
| Subtopic | What it covers | Questions |
|---|---|---|
| Malware, social engineering and brute-force attacks | Viruses, worms, trojans, ransomware and spyware, social engineering, phishing and blagging, people as the weak point, and brute-force attacks with worked password combinations. | 18 |
| Denial of service, data interception and SQL injection | Denial of service and DDoS attacks, botnets, data interception and theft, and how SQL injection exploits a poorly written website. | 15 |
| Identifying and preventing vulnerabilities | Penetration testing, anti-malware software, firewalls, user access levels, strong passwords, encryption and physical security, and what each prevention method limits. | 18 |
How the guide is worked
Answering a question from memory stores it far better than reading the answer again. The guide runs that as a fixed procedure on one subtopic at a time, about twenty minutes a session.
-
Step 1 · Closed book
Cover the answers. Work through one subtopic and write down what you can. Leave blanks where you have nothing.
-
Step 2 · Open book
Go back to the top. Read each printed answer and write it out in full, including the ones you had right.
-
Step 3 · Closed book again
Same questions, same order, from memory. The gap between pass one and pass three is the session result.
Read the full method, the return schedule and the research behind it.
Nearby topics
OCR GCSE Computer Science Active Recall Guide
Every topic, not just this one. 740 questions with their answers.