Saturday, November 30, 2019

The Powers Above Essays - Greek Mythology, Mythology, Religion

The Powers Above The Powers Above Lana Fourdyce Classic Civilization 115: Section G The Powers Above The relationship between gods and mortals in mythology has long been a complicated topic. The gods can be generous and supportive, and also devastating and destructive to any group of humans. Mortals must respect the powers above them that cannot be controlled. The gods rule over destiny, nature, and justice, and need to be recognized and worshipped for the powerful beings as they are. Regardless of ones actions, intentions, and thoughts, the gods in Greek myth have ultimate power and the final decision of justice over nature, mortals, and even each other. Justice is a very important ruling power for both gods and mortals. For instance, in Sophocles tragedy, Antigone, justice prevails over king Creons actions. He sentences his own niece to death for giving her deceased brother, a pronounced enemy of Thebes, a proper burial. In return for his rigid ruling he loses his wife and son to tragic deaths. Creon puts his own citys justice before the determined justice of the gods, and pays dearly for it. Antigone also receives justice for her actions even though she dies. She did go against the law of her mortal king, but did obey the law of the gods, and therefore died a hero and martyr. The laws of the gods gives dishonor to those who do not properly respect their family members. In order to keep her honor and self-respect, Antigone had to break her citys law, even if it meant death. Justice can also be associated with the goddess of Earth, Justice. Antigone follows the laws of the gods that will live on forever, not Creons mere proclamations of power. Antigone will not let her sister die with her because Justice does not allow people to die heroes if the do not deserve it. Order is more important than justice to Creon, and it is one of the causes of his eventual downfall. Zeus and the other sky gods like order and law. Antigone looks to the gods and goddesses of the earth that live in the underworld, and will not take a mere mortal mans rules over the gods. She says the she does not fear any mortals words enough that she would pay the price the gods demand from those who break their laws (Antigone, 458). The gods do recognize courageous and just people, but these people do not always come to a happy end, as in Antigones case. Justice may not rule the gods as entirely as it rules mortals, because the gods ultimately decide what is just or unjust. Antigone also speaks of the power of Hades when she refers to her brothers. She tells Creon that Hades will apply equal laws to both, even though one is an enemy of Thebes. Antigone realizes that Thebes laws and enemies are not necessarily the laws and enemies of the gods. Creons regard for the laws of the city causes him to abandon all other beliefs. He feels that all should obey the laws set forth by him, even if other beliefs, moral, or religions, state otherwise. Antigone, on the other hand, holds the beliefs of the gods in high reverence. She feels that the laws of the gods should be obeyed above all others, especially when in respect to family. Her beliefs in The sacred laws that Heaven holds in honor are for more important than those set by the king (Antigone 78). The king cannot, and should not in the gods eyes, override her belief in the God. Mortals that hold state law over devine law in Greek myths always come to a dreadful doom, usually by being punished by the gods. The gods have power over the weather, which in turn rules over humans. Zeus, the king of all gods, rules over storms, thunder, and lightening. He and other gods can produce earthquakes, tornadoes, and other devastating natural disasters at any moment if they see fit. In Euripides The Bacchae, Zeus power creates a lightening bolt that burns down Semeles house and kills her. Zeus mere presence in the form of a god is enough to kill Semele. Most every god or goddess has power over

Tuesday, November 26, 2019

How to Create a Mad Scientist Costume

How to Create a Mad Scientist Costume A mad scientist costume is great for Halloween, inspiring images of how science can run amock, creating horrific monstrosities. Here are tips on how to create a great mad scientist costume: Hair ... or not The decision on what sort of hair to have is an important one. You can go with wild hair (such as Albert Einstein and Doc Brown from the Back to the Future movies) or bald, the Lex Luthor route. If going for wild hair, there are inexpensive wigs available in most costume shops. Alternately, you can create your own with a bald cap by gluing fabric hair (from local fabric or craft stores) onto it - perhaps different colored hair. Or, if your hair is long enough, you can use styling gel and unusual hair colorings to get the desired effect. A bald cap (especially nice for female mad scientists) will also do. To really complete the look, you may want to use some fake skin to cover up your eyebrows. This will create an effect that youve lost all your hair due to the bizarre potions youve tested on yourself. A middle approach between the two is to glue chunks of fabric hair onto the bald cap, so that it looks like your hair is falling out in chunks. Again, using hair with strange colors might be useful. Other Headgear Some sort of eyewear is generally a good idea. Find an old pair of glasses with bulky frames, perhaps from a thrift store, and pop out the lenses. You might want to decorate them by gluing or taping object to them, like bottlecaps, beads, etc. Tape (duct tape) or Band-Aids can be used to make the glasses look like theyve been broken and mended. Goggles are also a nice alternative. A goattee is a nice addition for a mad scientist. If you cant or dont want to grow your own, you can glue some fur into your chin. Try to frame it into a sharp point, perhaps using a bent paperclip or piece of cardboard as a frame to mount it on. Lab Coat The lab coat is, of course, the crucial element of the mad scientist costume. This is what translates the costume from random weirdo to mad scientist. Around Halloween, lab coats are pretty easy to find anywhere costumes are sold. You can also get actual lab coats at medical supply stores, thrift stores, and the like. If you have trouble finding one, you can contact your local hospital to find out where they are sold locally. Personally, the best lab coat Ive ever seen is the Mad Scientists Union Local #3.14. I didnt buy it online, so I cant attest to this vendor, but the lab coat is very cool. You can also decorate the labcoat with pins, stickers, stencils, decals, rips, scorch marks, food spills, equations, and the like ... whatever you feel comfortable with based on the cost of the lab coat. Pants - The Easy Part Generally, dark pants or a dark skirt will work to finish the outfit. A goofy pair of shoes, such as bowling shoes, would do well to complete the outfit. Final Accessories A pocket protector (try office supply stores) is a perfect addition to the costume. Fill it up with as many pens and pencils as you can. Throw in a compass, ruler, spiral notepad, and calculator if you can. Heck, carry around an abacus if you can find one. Another nice accessory would be a beaker filled with strange-colored liquid. Exotic colors of punch (i.e. Kool-Aid) can create this. Add some dry ice so smoke will drift off of it. Note: If you do have a potion with dry ice in it, do not drink. A flourescent stick, like what you get at the circus, can be inserted to make it glow ... and is great for stirring up your concoction. Some Last Comments The unbridled wackiness is the best part of the mad scientist costume. Be funny and nuts, and youll pull it off. Anything you can think of to add to the costumes eccentricity is a plus. Try to go as cheap as you can, since you may want to make a real mess of the costume to create the right mood. Old pants, tattered lab coats, funny shoes, out of style glasses ... thrift stores are the perfect place to get components for the mad scientist costume. Mad Scientist Sidekick Costumes Robot costumeBride of Frankenstein costumeCousin It costumeFrank-Einstein costumeGeeky Science Nerd costumeGhostbuster costume

Friday, November 22, 2019

Aristotle slavery

Aristotle believes that some people are by nature slaves. What Is his argument for that claim? Do you agree with Aristotle that a slave-holding society can be democratic? According to Aristotle, a slave is the property of its master, and that any piece of property can be regarded as a tool enabling a man to live. The slave, therefore, is a living tool of the master, whose purpose is to allow the master to live well. A slave belongs to a master, but a master doesnt belong to a slave. The rule of a master over a slave, then, is exercised with a view to the masters and the slaves goals or nterests. He represents slaves as a tool in his definition of slavery. Aristotle continues his definition of slave by explaining that those people who are slaves are naturally born as slaves and they are naturally the property of some one else. Those who are as different [from other men] as the soul from the body or man from beast and they are in this state if their work is the use of the body, and if this is the best that can come from them are slaves by nature. For he is a slave by nature who is capable of belonging to another which is also why he belongs to another nd who participates in reason only to the extent of perceiving it, but does not have it. Slaves are tools but they are alive and they belong to their masters. But when he widens his explanations about slavery, he states that all slavery instituted by human convention Is not compatible with Justice by saying the distinction between slave and free Is one of convention only, and In nature there Is no difference, so that this form of rule Is based on force and Is therefore not Just. Therefore, If someone Is not naturally born as a slave, it is unjust to refer him as a slave in his opinion. This critic of Aristotle means that if the slavery is built up my laws or is enforced by some particular communities; these are unjust because they are unnatural and they have no equivalency in nature. In his arguments, the people the laws treat as slaves and those they treat as free which coul d Justify the legal difference are indistinguishable. So, when Aristotle claims are scrutinized it is obvious to see that in some points Aristotle seems as accepting that some in fact, some legal methods which make people slaves are unjust. But he defends some dfferences between people and these differences make slavery Just. If legal slavery represents these Inherent differences It Is Just, but If It Is contrary to his then It Is totally unjust. Aristotle also states In Polltlcs that: the one strong for servile labor, the other upright, and although useless for such services, useful for political life in the arts both of war and peace. But the opposite often happensthat some have the souls and others have the bodies of freemen. And doubtless if men differed from one another in the mere forms of their bodies as uch as the statues of the Gods do from men, all would acknowledge that the inferior class should be slaves of the superior. It is clear, then, that some men are by nature free, and others slaves, and that for these latter slavery is both expedient and right. and this claim takes us to the point that distinguishing the differences among people. Also, there are some natural differences between people and these differences can Justify slavery or being someones living tool. Human beings are divided into groups according to different categorizations. The first partnerships among human eings would have been between persons who cannot exist without one another. There are two groups of people in this case; male and female for the sake of reproduction. and he continuous this discrimination by explaining the second partnership:the naturally ruling and ruled, on account of preservation. First, the ones who have less knowledge and who have more knowledge to manage with life. First group cannot properly exercise the practical virtues on their own and they have less chance to achieve the happiness. So, to treat someone as a living tool as Aristotle did, is not a complication to achieve the happiness. Furthermore, it is better to do so in order to give him the best possible use of that entity for the happiness. Where then there is such a difference as that between soul and body, or between men and animals, the lower sort are by nature slaves, and it is better for them as for all inferiors that they should be under the rule of a master. For he who can be, and therefore is, anothers and he who participates in rational principle enough to apprehend, but not to have, such a principle, is a slave by nature. By looking all these things Aristotle indicates about slavery, still it is not valid to defense the existence of slavery no matter what. Because in Aristotle arguments he defends that to be a natural slave is better for a slave, but to decide such an important in a human beings life is not possible, therefore not valid or ethic. Because it is unknown that if someone really unable to sustain his life and achieve the happiness especially for a short time of period. People may give their whole life to achieve the happiness and they can reach this aim maybe at the end of their lives, nd die as a happy human being without being treated as a slave by someone elses orders. Aristotle claims that natural slaves are people Whose condition is such that their function is the use of their bodies and nothing better can be expected of them. But by saying that he does not exactly mean not able to think or understand. Because if it was so that would be impossible for masters to expect all those things that slaves virtue is. But they are not the only one who are incapable to understand it, it is the majority of the society. Thus, if that would be an acceptable argument that, it would be necessary to agree that most people are incapable of true virtue and therefore they are all slaves which is impossible and completely absurd . Also another issue can be changed in a contrary way to what Aristotle claims. He distinguishes people as slaves and non-slaves, or the ruled ones and the rulers. But this grouping method can be collected in one group by using some techniques such as education. Even assuming that to be natural slave is natural and Just;it is quite logical to give a ualified education to group which includes the slaves and elevate them to the identical level as the rulers are. It is much beneficial to look for solutions rather than just categorizing people and treat them by some criteria without even questioning their rationality. Although the basic claims Aristotle makes, he is unable to explain not explain why some people are both weak and also have lack of knowledge and why some people are both strong and capable of knowledge. His arguments are also weak about why the children of natural slaves appears like natural rulers and how someone can ecome a slave even that not being captured in a war r how one can become a slave while he or she is the child of a natural master. When it is looked from different perspectives and from the society that we live in, all these reasons given above makes us to stand Just opposite to Aristotles thoughts and believing that it is unjust to enslave someone no matter what. Nobody is capable enough to decide whether someone has enough knowledge or not; or unable to sustain their lives and achieve the happiness, therefore it does not make any sense to try clarify the slavery is Just in todays conditions.

Wednesday, November 20, 2019

Problems and issue Essay Example | Topics and Well Written Essays - 500 words

Problems and issue - Essay Example As will be noted in the following analysis, the choice of sovereignty as the premier definition and explicate her of what a state truly is will be predicated upon the understanding of the fact that without a degree and level of sovereignty, no control or direction could be provided to either the population, territory, or government within such a system. In such a way, by defining sovereignty as the primary and fundamental compound of statehood, it is the hope of this author that the reader will gain a further understanding of why challenges to sovereignty account for the lion’s share of all conflict that takes place between states within the current world. In such a way, it is necessary for the reader to understand that sovereignty is the most important metric and defining the way in which the territory of state is appreciated and understood. Within such an understanding, one can realize that without a sovereign level of governance, it would be impossible to definitively demarcate borders and regions of control; due to the fact that without any control whatsoever (sovereignty) such a territorial understanding and definition would be meaningless. Similarly, with regards to the population, a level of sovereignty is absolutely required due to the fact that without this, no definitive goals or programs can be affected (Lewis, 2010). Finally, the issue of sovereignty is perhaps most specific with regards to the government of the state. Without an overall level of sovereignty over the territory and people to which the state intends to govern, the entire idea, definition, an understanding of statehood evaporates. Although it should not be understood that sovereignty in and of itself is the only determinant to statehood, it must be realized and appreciated that this determinant impacts strongly and primarily upon all of the

Tuesday, November 19, 2019

Effectiveness of Appreciative Inquiry Research Proposal

Effectiveness of Appreciative Inquiry - Research Proposal Example Introduction The main objective of this research is to explore the best and unexplored potential in the people and the existing system of the local Qatari transportation company and its surroundings in order to solve the underlying problems and obstacles in strategic operational areas. The changing systems within and outside the local Qatari transportation company are required to be studied in order to explore the underlying deficiencies in the area of operation of the transportation company through the process of unconditional and positive inquiry. The three important research questions that would be considered in the appreciative inquiry of the local Qatari transportation company are given: RQ1: How can Appreciative Inquiry prove to be effective? RQ2: What did Appreciative Inquiry hope to achieve? RQ 3: According to different stakeholders, were the anticipated goals achieved? The addressing of such areas of deficiency would help to fix the underlying problems in an efficient way th at was never thought before. Theoretical framework Appreciative Inquiry is a method of conducting an inquiry through the framing of a questionnaire and asking such questions to the stakeholders of the organization in order to search for the underlying problems and difficulties in the areas of operation, finance, human resource and associated areas. The objective of appreciative inquiry is to identify the areas of deficiency of the organization through unconditional positive statements and then analyzing the collected information through inquiry in order to determine the organizational deficiencies that are required to be solved. Appreciative inquiry studies the changing internal and external conditions involving the people, process and the communities and also explores the best potential of the organizational components that have never been explored and could be used to solve the organizational deficiencies. The art and practice of asking positive questions in an appreciative inquir y which is the subject of the research question enable the organization to anticipate the areas of concern and increase the positive potential in order to cope up with the problems. The identification of the areas of organizational concern and the exploration of the best potential of the resources in the changing systems of the organization helps to increase the operational efficiency (Tiem and  Rosenzweig, 2006, p.88). For example, in the local Qatari transportation company appreciative inquiry hopes to achieve performance efficiency by using the unexplored potential of the people and the process as well the external supporting systems for the organization. The appreciative inquiry lays the foundation for fulfillment of the anticipated goals for the shareholders. Appreciative inquiry brings about sudden changes in the process for improving operational efficiency that were never envisaged before the inquiry. Proposed methods The proposed method of conducting the research includes collection of data with the help of a designed questionnaire. In the paper qualitative research methodology has been selected mainly because it is less time consuming and less costly. The data required for quantitative analysis may be flawed and this will not lead to flawless conclusion. The questionnaire would contain unconditional positively framed questions which focus on the research perspective of appreciative inquiry. The data would be collected through self administered questionnaires with 50

Saturday, November 16, 2019

Abu Sayyaf Group Essay Example for Free

Abu Sayyaf Group Essay Abdurajak Janjalani’s religious and political thoughts provided the basis for ASG’s original ideology.23 The initial premise for creating the group was for a Muslim Mujahideen that would be committed to â€Å"a struggle in the cause of Allah† or â€Å"fighting and dying for the cause of Islam.†24 To his ASG followers Janjalani was more than a leader, he provided their ideological path and enlightenment. Janjalani was well educated and knowledgeable of various areas that impacted the Muslim population in the Philippines. These included the historical, religious, economic, political, and social conditions that existed at the time25 and it was his aim to build his idea of an Islamic state in the southern Philippines to improve those conditions.26 Funding to initiate and support the movement in the beginning was supposedly supplied by Mohammed Jamal Khalifa, Osama bin Laden’s brother-in-law.27 This was the first reported link to Al Qaeda. Later, in 1992, Janjalani and his group established an official headquarters in Isabela, Basilan naming the Camp Al-Madinah Mujahideen, but the camp was captured by the Philippine Marines in 1993 forcing ASG to relocate and establish a new base in Patikul, Sulu. This fostered greater cooperation and alliance with Ghalib Andang who led the Sulu-based unit of the ASG.28 Working together the combined ASG forces began an aggressive recruiting effort to expand their manpower, acquire arms and munitions, and began the lucrative series of fund-raising activities in kidnappings and demanding high ransoms.29 Before his death in 1998, Janjalani delivered eight radical ideological messages called Khutbahs. These Khutbahs are regarded as primary sources of his radical Islamic thought and depicted the depth of his Abu Sayyaf . . .5 understanding of Wahabi Islam. One of the Khutbahs exposed an intense resentment of Christian missionaries in Mindanao, especially those regarded as criticizing Islam. His interpretation was that â€Å"aggressive preaching of Christian missionaries in Mindanao thus insulted Islam and provoked Muslims to respond violently. As a result, the bombing of the Christian missionary ship M/V Doulos in 1991 was retaliation against Christian missionaries who used derogatory words against Islam and called Allah a false God.†

Thursday, November 14, 2019

The Themes of Wilderness and the White Man in William Faulkners The Be

The Themes of Wilderness and the White Man in William Faulkner's The Bear  Ã‚  Ã‚   William Faulkner's The Bear is bilateral in subject and plot. The first half of the story looks at the wilderness and the virtues man can learn from it. The second half applies these virtues to civilization, exposing the white man's corruption and misuse of the land. A careful look at the interaction of these two halves reveals a single unifying theme: man must learn virtue from nature. Faulkner believed humility, pride, courage, and liberty would be almost impossible for man to learn without the wilderness to teach him. The first half of the story tells a bittersweet tale of a boy who wished to learn humility and pride in order to become skillful and worthy in the woods but found himself becoming so skillful so fast that he feared he would never become worthy because he had not learned humility and pride though he had tried, until one day an old man who could not have defined either led him as though by the hand to where an old bear and a little mongrel dog showed him that, by possessing one thing other, he would possess them both. (283) The "old man" is Sam Fathers, "son of a Negro slave and an Indian king." While he "could not have defined either" pride or humility, he nevertheless understood them through his Indian and Negro heritage. The boy is Isaac, or Ike, McCaslin, the protagonist who learns virtue from the wilderness and repudiates his grandfather's corrupt inheritance. The above passage describes the high point of the first half of the story in which Ike saves his little dog from the crush of the towering bear. Ike is so close to the bear he can see "that there [is] a big wood tick just inside his off hind leg." This act gives h... ...ty once had pride and humility in the wilderness, but abandoned it along with the wilderness. Faulkner illustrates these differences with the story's two contrasting themes. Yet by melding the two parts into one and tying them inseparably together, he effectively communicates the duality of grief felt by the boy. Isaac loses the wilderness he so loved and respected, and in doing so, the heritage he otherwise might have. Works Cited Brooks, Cleanth. William Faulkner: Toward Yoknapatawpha and Beyond. New Haven: Yale University Press, 1978. Evans, David H. "Taking the Place of Nature: 'The Bear' and the Incarnation of America." Faulkner and the Natural World: Faulkner and Yoknapatawpha, 1996. Ed. Donald M. Kartiganer and Ann J. Abadie. Jackson: UP of Mississippi, 1999. Faulkner, William. â€Å"The Bear.† Uncollected Stories of William Faulkner. Vintage: 1997.

Monday, November 11, 2019

The Two Fishermen

1. For what newspaper does Michael Foster work for? (1-2) Michael Foster works for the town paper, the Examiner. He is a reporter. 2. Why did Michael not want to be seen with Smitty? (3-4) Michael didn’t want to be seen with Smitty because Smitty is a hangman. Every hangman is hated because people think that he is cruel and because he kills prisoners who are friends or parents with people in the town. If Michael is seen to be friend with Smitty, he would have a bad reputation and people of his town would hate him because he is supporting someone that all the others hated. It won’t only affect his life, but also his work, because no one will collaborate with him anymore and he could never become a reporter for city paper as he always wished. 3. Explain the final scene of the story? (5-6) The story finished with Smitty giving two big fish folded in a newspaper to Michael in front of everyone in the jail. But Michael let the other fisherman take the fish and through it at Smitty. First, the fish in this situation symbolize the friendship between Michael and the hangman and the newspaper represents the society, the people how hated, ridicule and criticize Smitty. When Smitty give Michael the newspaper folded fish, he is offering Michael to become his friend, and saying that Michael will need to deny other people’s judgments about him to become his friend, just like he needs to unwrap the newspaper to see the fish. The reporter, by accepting it, is accepting the friendship and the condition. Then, Michael let the other fisherman take his fish and through it at Smitty. By doing it, the young reporter is letting others to break the friendship between him and the hangman. He rejected the friendship and betrayed the hangman. In other words, he could unwrap the newspaper that folded the fish. After, when Smitty saw the fish, he could hardly believe it. Michael run off shamefully. Morley Callaghan, at the final scene, showed two conflicts. The first one is man versus society. This one is very evident. We can see clearly Smitty facing the whole society that criticizes, hates him. The second one is man versus himself. The man is Michael. He has to choose between Smitty and the rest of the society. He had the opportunity to explore the true personality of the hangman unlike other people and he knows that he is a really good guy. Even though he knows that there’s no reason Smitty should be hated, he still doesn’t want to be seen with him. We could see clearly his inner conflict when Morley wrote, â€Å" «it’s different now, it’s different,  » he kept thinking, as he held the fish in the newspaper tight under his arm. † Michael, at that moment, was questioning himself if he should help Smitty but risk his own reputation. At the end, â€Å"the expression on Smitty’s face as he saw the fish on the road made Michael hot with shame and he tried to get out of the crowd. † This shows that Michael is sorry for the hangman, but he couldn’t â€Å"get rid of the newspaper† The author, though the story showed us how a person can be betrayed even though he is a good friend and kind and moral person. 4. Explore the importance of the fish? (7-8) The fish in the short story â€Å"The Two Fishermen† is a very important symbol, a symbol of friendship. Smitty gives Michael a fish to show that he valued the time they spent together and that he was enjoying Michael and the company. It is a sign of their friendship. But Morley Callaghan, the author, added some detail to the simple fish. She gets it wrapped with newspaper. She gave the newspaper importance by repeating it various times, â€Å"[†¦] two good-sized salmon-bellied lake trout, folded in a newspaper†; â€Å"[†¦] he was carrying the fish, folded in the newspaper. † And â€Å"he held the fish in the newspaper. The use of newspaper means that Michael would be able to become real friend with Smitty only if he denies all the critics from other people and deny what the rest of the society thinks, like he would need to unwrap the fish from the newspaper to really see the fish. So, when Michael accepts the fish in front of everyone, he accepts the condition and the friendship, because if he doesn’t want to be friend, he could not take the fish and do like if he doesn’t know the hangman. Then, when he lets the other fisherman to through the fish at Smitty, he lets him at the same time break the friendship. Somehow, he betrayed Smitty and lets the newspaper to separate him and the fish forever. The fish is also a Christian symbol. It is a secret code used and only recognized by Christians to connect with each other without revealing themselves to the oppressors. This could also be linked to the Two Fishermen because their friendship is something secret. Their meeting is something secret too. Only they know why Smitty offers a fish instead of something else. In brief, the author used the fish as a very important symbol in this short story.

Saturday, November 9, 2019

Introduction of Information Security Systems Cis4385

1. Which if the following IPv6 address type is assigned to multiple interfaces but packets will only be delivered to one? a. Multicast b. Anycast c. Unicast d. Broadcast Grade:1 User Responses:b. Anycast Feedback:a. An anycast address is assigned to a group of interfaces on multiple nodes. Packets are delivered to the â€Å"first† interface only. 2. Routers operate at which OSI layer? a. Physical b. Transport c. Network d. Session Grade:1 User Responses:c. Network Feedback:a. Routers operate at the network layer making routing decisions based on IP addresses. 3. Which of the following is NOT a private IPv4 address? Choose all that apply. a. 192. 168. 5. 60 b. 172. 25. 6. 4 c. 10. 0. 6. 5 d. 26. 68. 6. 1 Grade:1 User Responses:d. 26. 68. 6. 1 Feedback:a. The private IP address ranges are as follows. IP Class Assigned Range Class A 10. 0. 0. 0-10. 255. 255. 255 Class B 172. 16. 0. 0-172. 31. 255. 255 Class C 192. 168. 0. 0-192. 168. 255. 2554. What is a server that evaluates Internet requests from LAN devices against a set called? a. Proxy b. Firewall c. Load balancer d. NAT server Grade:1 User Responses:a. Proxy Feedback:a. A server that evaluates Internet requests from LAN devices against a set of rules is called a proxy server. NAT servers perform private to public address translation; load balancers manage traffic between cluster hosts; and a firewall filters traffic based on access control lists.5. Which type of device maintains awareness of the status of connections, thereby preventing IP spoofing attacks? a. Stateless packet filterin g firewall b. Stateful packet filtering firewall c. NAT filter d. Application-level gateway Grade:1 User Responses:b. Stateful packet filtering firewall Feedback:a. A stateful packet filtering firewall is one that monitors the state of each connection by examining the header of each packet. Read this  Chapter 2 – Why Security is Needed A stateless packet filtering firewall does not do this. NAT filters perform only private-to-public address translation. An application-level gateway provides protection to a specific application such as FTP.6. Which of the following firewall services works at the session layer of the OSI model? a. Application layer gateway b. Stateful filtering c. NAT d. Circuit-level gateway Grade:0 User Responses:c. NAT Feedback:a. Circuit-level gateways work at the Session Layer of the OSI model and apply security mechanisms when a TCP or UDP connection is established; they act as a go between for the Transport and Application Layers in TCP/IP.After the connection has been made, packets can flow between the hosts without further checking. Circuit-level gateways hide information about the private network, but they do not filter individual packets.7. Which of the following are the two main functions of a proxy server? a. Caching of web pages b. NAT c. Domain authentication d. DHCP Grade:1 User Respo nses:a. Caching of web pages,c. Domain authentication Feedback:a. A proxy server secures a network by keeping machines behind it anonymous; it does this through the use of NAT. It also improves web performance by caching web pages from servers on the Internet for a set amount of time. b. A proxy server secures a network by keeping machines behind it anonymous; it does this through the use of NAT. It also improves web performance by caching web pages from servers on the Internet for a set amount of time.8. Which of the following devices can detect but not prevent attacks across the entire network? a. NIDS b. Host-based IDS c. NIPS d. Protocol Analyzer Grade:1 User Responses:a. NIDS Feedback:a. Network Intrusion Detection Systems (NIDS) detect but do not prevent attacks across the entire network. Host-based IDS can protect only the host on which it is installed. Network Intrusion Protection Systems (NIPS) can detect and prevent attacks across the entire network. A Protocol Analyzer ca n capture traffic but not act upon it.9. When a NIPs blocks legitimate traffic, what is it known as? a. False negative b. True negative c. False positive d. True positive Grade:1 User Responses:c. False positive Feedback:a. A blocking of traffic is a positive action, and when it is in response to legitimate traffic, it is considered a false action; thus it is a false positive. A false negative would be when an action is NOT taken on traffic that is not legitimate. The other two options are normal actions; a true negative is the allowing of legitimate traffic, whereas a true positive is the blocking of illegitimate traffic.10. Which of the following types of NIPS reacts to actions that deviate from a baseline? a. Signature-based b. Heuristic c. Anomaly-based d. Bit blocker Grade:1 User Responses:c. Anomaly-based Feedback:a. Anomaly-based NIPS recognizes traffic that is unusual and reports it. Signature-based NIPs are configured with the signatures of attacks. Heuristics looks for pat terns in the traffic, whereas bit blocker is a not a type of NIPs.11. Which of the following systems attempt to stop the leakage of confidential data, often concentrating on communications? a. DHCP b. DNS c. DLP d. STP Grade:1 User Responses:c. DLP Feedback:a. Data loss prevention (DLP) systems are designed to protect data by way of content inspection. They are meant to stop the leakage of confidential data, often concentrating on communications. As such, they are often also referred to as data leak prevention (DLP) devices, information leak prevention (ILP) devices, and extrusion prevention systems.Regardless, they are intended to be used to keep data from leaking past a computer system or network and into unwanted hands.12. When a company buys fire insurance they are ____________ risk. a. accepting b. avoiding c. transferring d. reducing Grade:1 User Responses:c. transferring Feedback:a. It is possible to transfer some risk to a third-party. An example of risk transference (also k nown as risk sharing) would be an organization that purchases insurance for a group of servers in a datacenter.The organization still takes on the risk of losing data in the case of server failure, theft, and disaster, but transfers the risk of losing the money those servers are worth in the case they are lost.13. Which of the following processes block external files that use JavaScript or images from loading into the browser? a. URL filtering b. Content filtering c. Malware inspection d. Blacklists Grade:1 User Responses:b. Content filtering Feedback:a. Content filtering is a process that blocks external files that use JavaScript or images from loading into the browser. URL filtering blocks pages based on the URL.Malware inspection looks for malware based on a signature file, and blacklists are items to be denied by spam filters.14. Which of the following actions should NOT be taken for the default account on a network device? a. Delete it. b. Change the password. c. Disable it. d. Leave it as is. Grade:1 User Responses:d. Leave it as is. Feedback:a. The default account has a well-known username and password, so it should be either deleted or disabled, or at a minimum its password should be changed.15. Firewall rules are typically based in all but which of the following? a. IP addresses b. MAC addresses c. Port numbers . Content type Grade:1 User Responses:d. Content type Feedback:a. Firewall rules are typically based on IP addresses, MAC addresses, or port numbers, but they cannot filter for content.16. Which of the following is the target of a double tagging attack? a. VPNs b. VLANs c. Collision domains d. DMZs Grade:1 User Responses:b. VLANs Feedback:a. A double tagging attack can enable the attacker to view traffic from multiple VLANs.17. A network created to allow access to resources from the Internet, while maintaining separation from the internal network is called a ______? a. VPN b. VLAN c. Honeypot d. DMZ Grade:1User Responses:d. DMZ Feedback:a. When talking about computer security, a Demilitarized Zone (DMZ) is a special area of the network (sometimes referred to as a subnetwork) that houses servers which host information accessed by clients or other networks on the Internet, but which does not allow access to the internal network.18. How can access to the remote management of a router be protected? a. Content filtering b. ACLs c. Firewalls d. IPS Grade:0 User Responses:c. Firewalls Feedback:a. Remote access to a router is usually done via Telnet or SSH. The port used (vty line) can be secured using an access control list. The other options can all be used to help protect routers but not access the remote management function.19. You need to allow access from your network to all web sites. What port numbers should be opened in the firewall? Choose all that apply. a. 25 b. 443 c. 80 d. 119 e. 22 f. 23 Grade:1 User Responses:c. 80 Feedback:a. HTTP and HTTPS are the two services you need to allow access to use ports 80 and 443 res pectively.20. Which of the following mitigation techniques can prevent MAC flooding? a. Secure VLANs b. Prevent ICMP responses c. 802. 1x d. 802. 1q Grade:1 User Responses:c. 802. 1x Feedback:a.MAC flooding, which involves overwhelming the memory of the switch with MAC frames sourced from different MAC addresses, can be prevented by requiring authentication on each port through 802. 1x. Secure VLANs cannot prevent this because the frames don’t need to enter a VLAN to cause the problem. ICMP is at Layer 3, these frames are at Layer 2, and 802. 1q is a VLAN tagging protocol that does not prevent frames from entering the switch through access ports.21. Which of the following attacks cannot be mitigated with a flood guard? a. Smurf attack b. Fraggle c. Teardrop attack d. Session theft Grade:1 User Responses:d.Session theft Feedback:a. The smurf, fraggle, and teardrop attacks all involve sending a flood of packets to a device, using different types of malformed packets. A session theft attack is when a session cookie is stolen and used to authenticate to a server.22. Loop protection is designed to address problems that occur with which device? a. Switch b. Hub c. Router d. Firewall Grade:0 User Responses:b. Hub Feedback:a. Loops occur when switches have redundant connections causing a loop. Loop guard (or loop protection) can prevent loops on the switch.23. When creating an ACL which of the following statements is NOT true? a.The order of the rules is important for proper functioning b. You must include a deny all statement at the end of the rule set for proper functioning c. The more specific rules should be placed at the beginning of the rule list d. Once created, the ACL must be applied to an interface Grade:1 User Responses:b. You must include a deny all statement at the end of the rule set for proper functioning Feedback:a. There is an implied deny all statement at the end of each ACL and it is not required to include one.24. Which of the following is a n example of insecure network bridging in a LAN? a. Laptop connected to a hotspot and an ad hoc network . Laptop connected to a wireless network and the wired LAN at the same time c. Router connected to two subnets d. PC connected with two NIC to the same LAN Grade:1 User Responses:b. Laptop connected to a wireless network and the wired LAN at the same time Feedback:a. When a laptop connects to a wireless network and the wired LAN at the same time, it can create a bridge between the two allowing access to the LAN. The other scenarios do not create a security problem for the LAN.25. When the administrator creates a rule on the firewall to prevent FTP traffic, this is a type of __________rule. . implicit deny b. implicit allow c. explicit deny d. explicit allow Grade:1 User Responses:c. explicit deny Feedback:a. When traffic is specified to be prevented, it is an explicit deny. When it is denied simply because it was not specifically allowed, that is an implicit deny.26. Network Acces s Control (NAC) is an example of_______________. a. role-based management b. rules-based management c. port-based access d. application layer filtering Grade:1 User Responses:b. rules-based management Feedback:a. Network Access Control (NAC) uses rules by which connections to a network are governed.Computers attempting to connect to a network are denied access unless they comply with rules including levels of antivirus protection, system updates, and so on—effectively weeding out those who would perpetuate malicious attacks.27. What type of device is required for communication between VLANs? a. Hub b. Switch c. Router d. Firewall Grade:1 User Responses:c. Router Feedback:a. Hosts in different VLANs are also in different subnets and routing must be performed for them to communicate.28. Which of the following would be least likely to be placed in the DMZ? a. Web server b. DNS server c. Domain controller d. FTP serverGrade:1 User Responses:c. Domain controller Feedback:a. All th e options except a domain controller are often placed in the DMZ so they are accessible to the outside world. A DC however is sensitive and should NOT be placed in the DMZ.29. Subnetting a network creates segmentation at which layer of the OSI model? a. Layer 1 b. Layer 2 c. Layer 3 d. Layer 4 Grade:1 User Responses:c. Layer 3 Feedback:a. Subnetting a network creates segmentation using IP addresses, which is Layer 3.30. What service is required to represent multiple private IP addresses with a single public IP address? a. NAT b. DHCP c. DNS d. DLP Grade:0User Responses:a. NAT Feedback:a. Network Address Translation (NAT) is required to represent multiple private IP addresses with a single public IP address. The specific form of NAT required to represent multiple private IP addresses with a single public IP address is called Port Address Translation (PAT).31. Which of the following is NOT a remote access protocol? a. MS-CHAP b. CHAP c. LDAP d. PAP Grade:1 User Responses:c. LDAP Feedb ack:a. Lightweight Directory Access Protocol is used for accessing directory services such as Active Directory. It is not used in remote access. All other options are remote access protocols.32. Which of the following devices are susceptible to war dialing? a. Modems b. Firewalls c. Content filters d. Load balancers Grade:0 User Responses:a. Modems Feedback:a. Any devices that accept phone calls such as modems or PBX systems with remote phone access are susceptible to war dialing.33. When computers are not allowed to connect to the network without proper security patches and virus updates, the network is using a form of _____________. a. PAT b. DAC c. NAC d. DMZ Grade:0 User Responses:d. DMZ Feedback:a. Network Access Control (NAC) uses rules by which connections to a network are governed.Computers attempting to connect to a network are denied access unless they comply with rules including levels of antivirus protection, system updates, and so on—effectively weeding out those who would perpetuate malicious attacks.34. Which of the following items do not need to be changed on a new router to ensure secure router management? a. IP address b. Administrator name c. Administrator password d. IOS version Grade:1 User Responses:d. IOS version Feedback:a. All the options except the IOS version can be set to defaults from the factory and should be changed because they are well known.35. Which of the following is NOT an example of cloud computing? a. SaaS b. IaaS c. PaaS d. BaaS Grade:1 User Responses:d. BaaS Feedback:a. Software as a Service (SaaS), Infrastructure as a Service (IaaS), and Platform as a Service (PaaS) are all forms of cloud computing.36. On which concept is cloud computing based? a. load balancing b. virtualization c. RAID d. DLP Grade:1 User Responses:b. virtualization Feedback:a. All forms of cloud computing use virtualization.37. A three legged perimeter is a form of ______________. a. VPN b. DMZ c. NAT d. ACL Grade:1 User Responses:b. DMZ Fee dback:a. A three-legged perimeter is a firewall or server with three NICs: one pointed to the LAN, one to the Internet, and one to the DMZ.38. Which of the following is NOT a benefit provided by subnetting? a. It increases security by compartmentalizing the network. b. It is a more efficient use of IP address space. c. It reduces broadcast traffic and collisions. d. It eases administration of the network. Grade:1 User Responses:d. It eases administration of the network. Feedback:a. Subnetting provides a number of benefits but easing administration is not one of them.39. Which of the following is the result of implementing VLANs? . Larger broadcast domains b. Smaller collision domains c. Smaller broadcast domains d. Larger collision domains Grade:1 User Responses:c. Smaller broadcast domains Feedback:a. VLANs break up the network into subnets and as such result in smaller broadcast domains.40. Which of the following services helps conserve public IP addresses? a. NAT b. DHCP c. DNS d . SLIP Grade:0 User Responses:c. DNS Feedback:a. By allowing the use of private IP addresses inside each network and by representing those groups of private IP addresses with a single public IP address, public IP addresses are conserved by NAT.41. Which of the following remote access protocols are used with VPNs? Choose all that apply. a. PPTP b. PPP c. L2TP d. SLIP Grade:1 User Responses:c. L2TP,d. SLIP Feedback:a. Point-to-Point Tunneling Protocol (PPTP) and Layer Two Tunneling protocol (L2TP) are used with VPNs. PPP and SLIP are used for dial-up. /b. Point-to-Point Tunneling Protocol (PPTP) and Layer Two Tunneling protocol (L2TP) are used with VPNs. PPP and SLIP are used for dial-up.42. Which of the following security protocols operates at the network layer of the OSI model? a. IPSec b. SSH c. SSL d. TLS Grade:1 User Responses:a. IPSec Feedback:a.One of the key features of IPSec is its operation at the network layer enabling it to protect any type of communication operating at th e upper layers of the OSI model.43. Which of the following are components of SNMP? Choose all that apply. a. NMS b. IPSec c. Agent d. CARP Grade:1 User Responses:b. IPSec,c. Agent Feedback:a. The three components of SNMP are a network management system (NMS), agent software, and the managed device, where the agent software operates. /b. The three components of SNMP are a network management system (NMS), agent software, and the managed device, where the agent software operates.44. SSL is designed as a secure replacement for which of the following? a. PPP b. Telnet c. TLS d. SSH Grade:0 User Responses:d. SSH Feedback:a. SSL is designed as a secure replacement for Telnet, which transmits in clear text.45. Which of the following protocols supersedes SSL? a. SSH b. TLS c. S/MIME d. EAP Grade:0 User Responses:a. SSH Feedback:a. TLS 1. 2, the latest version, is used when establishing an HTTPS connection and supersedes SSLv3.46. The operation of which of the following protocols makes the SY N flood attack possible? a. IPX/SPX b. AppleTalk c. TCP/IP d. RIP Grade:1 User Responses:c. TCP/IP Feedback:a.TCP/IP uses a three-way handshake for its connection, and the SYN flood attack attempts to take advantage of the operation of this connection operation.47. Which of the following provides secure web access? a. SFTP b. HTTP c. HTTPS d. SSH Grade:1 User Responses:c. HTTPS Feedback:a. HTTPS uses port 443 and is the standard for secure web access.48. SCP is a secure copy protocol that uses the port of which other protocol for transfers? a. HTTPS b. SSH c. SSL d. FTPS Grade:0 User Responses:d. FTPS Feedback:a. Secure copy (SCP) is another example of a protocol that uses another protocol (and its corresponding port). It uses SSH and ultimately uses port 22 to transfer data.49. Which of the following protocols is abused when a ping flood occurs? a. SNMP b. IGMP c. ICMP d. EIGRP Grade:0 User Responses:a. SNMP Feedback:a. Ping floods use ICMP echo request packets aimed at the target. 50. Which of the following security mechanisms are built into IPv6? a. IPSec b. SSL c. HTTPS d. EAP Grade:1 User Responses:a. IPSec Feedback:a. IPv6 has IPSec support built in.51. What method is used by SSL to obtain and validate certificates? a. SPI b. PKI c. TLS d. EAP Grade:1 User Responses:b. PKI Feedback:a.SSL and TLS use a public Key Infrastructure (PKI) to obtain and validate certificates.52. What port number does FTPS use to protect the transmission? a. 21 b. 88 c. 443 d. 445 Grade:0 User Responses:a. 21 Feedback:a. FTPS uses SSL or TLS over port 443 to make a secure connection.53. Which of the following protocols uses port 22, normally used by SSH, to make a secure connection? a. FTPS b. SCP c. SFTP d. SSL Grade:0 User Responses:b. SCP Feedback:a. Secure FTP (SFTP) uses port 22, the port for SSH, which is why it is also sometimes called SSH FTP.54. Which protocol uses ports 161 and 162? a. SMTP b. IMAP4 . SNMP d. IGMP Grade:0 User Responses:a. SMTP Feedback:a. SNMP is used to collect information about and make changes to devices on the network. It uses ports 161 and 162.55. Which protocol uses the same port as HTTPS? a. SCP b. FTPS c. SFTP d. IMAP4 Grade:0 User Responses:c. SFTP Feedback:a. FTP secure (FTPS) uses port 443, which is also used by HTTPS.56. Which protocol uses port 69? a. SCP b. FTPS c. TFTP d. IMAP4 Grade:1 User Responses:c. TFTP Feedback:a. TFTP uses port 69.57. What port number is used by Telnet? a. 80 b. 443 c. 21 d. 23 Grade:1 User Responses:d. 23 Feedback:a. Port 23 is used by Telnet.58. Which port does HTTP use? a. 80 b. 443 c. 21 d. 23 Grade:0 User Responses:b. 443 Feedback:a. HTTP uses port 80.59. Which port does SCP use to transfer data? a. 80 b. 22 c. 21 d. 23 Grade:0 User Responses:c. 21 Feedback:a. SCP uses SSH and thus port 22 to transfer data.60. Which protocol uses port 443? a. HTTPS b. FTPS c. TFTP d. IMAP4 Grade:1 User Responses:a. HTTPS Feedback:a. HTTPS uses port 443.61. Which two protocols use port 22? a. HTTPS b. FT PS c. SSH d. SCP Grade:2 User Responses:c. SSH,d. SCP Feedback:a. SCP uses SSH and thus port 22 to transfer data, so both protocols use this port. b. SCP uses SSH and thus port 22 to transfer data, so both protocols use this port.62. Which ports does the NetBIOS protocol uses? Choose all that apply. a. 138 b. 139 c. 137 d. 140 Grade:3 User Responses:a. 138,b. 139,c. 137 Feedback:a. The NetBIOS protocol uses ports 137 through 139. /b. The NetBIOS protocol uses ports 137 through 139. /c. The NetBIOS protocol uses ports 137 through 139.63. What protocol uses port 53? a. HTTPS b. FTPS c. SSH d. DNS Grade:0 User Responses:b. FTPS Feedback:a. DNS uses port 53.64. Which port number does RDP use? a. 3389 b. 1723 c. 1701 d. 140 Grade:1 User Responses:a. 3389 Feedback:a. Port 3389 is used for Remote Desktop (RDP).65. What protocol uses port 25? a. HTTPS b. SMTP c. SSH d. DNS Grade:1 User Responses:b. SMTP Feedback:a. SMTP uses port 25.66. Which of the following statements is true regarding WP A and WPA2? (Choose all that apply. ) a. WPA uses 256-bit encryption. b. WPA2 uses 128-bit encryption. c. WPA uses TKIP. d. WPA2 uses AES. Grade:2 User Responses:c. WPA uses TKIP. ,d. WPA2 uses AES. Feedback:a. WPA uses TKIP 128-bit encryption, whereas WPA2 uses 256-bit AES. /b. WPA uses TKIP 128-bit encryption, whereas WPA2 uses 256-bit AES.67. Which statement is NOT true with regard to WPA2? a. Uses AES encryption b. Meets requirements of 802. 11i c. Uses TKIP encryption d. Uses 256 bit encryption Grade:1 User Responses:c. Uses TKIP encryption Feedback:a. WPA uses TKIP but WPA2 uses AES.68. Which of the following is the security provided in the original 802. 11 standard? a. WPA b. WPA2 c. WEP d. CCMP Grade:1 User Responses:c. WEP Feedback:a. Wired Equivalent Privacy (WEP) is the security provided in the original 802. 11 standard.69. What is the authentication system that calls for a supplicant, authenticator, and authentication server called? . EAP b. WPA c. WPA2 d. WEP Grade:1 Us er Responses:a. EAP Feedback:a. Extensible Authentication Protocol (EAP) is an authentication system that calls for a supplicant, authenticator, and authentication server.70. Which of the following implementations of EAP requires certificates on the client and the server? a. EAP-FAST b. EAP-TTLS c. PEAP d. EAP-TLS Grade:1 User Responses:d. EAP-TLS Feedback:a. EAP-TLS requires certificates on the client and the server.71. Which of the following versions of EAP is Cisco proprietary? a. LEAP b. EAP-TTLS c. PEAP d. EAP-TLS Grade:1 User Responses:a. LEAP Feedback:a. Lightweight EAP is a version that works only on Cisco devices unless the device is from a partner that participates in the Cisco Compatible Extensions program.72. Why are MAC filters not effective in preventing access to the WLAN? a. The MAC addresses of allowed devices are contained in the beacon frames sent by the AP. b. The MAC addresses of allowed devices are contained in any frames sent by the allowed device. c. The admi nistrative effort to maintain the MAC list is prohibitive. d. If the user changes his MAC address, the filter will disallow entry. Grade:1 User Responses:b.The MAC addresses of allowed devices are contained in any frames sent by the allowed device. Feedback:a. The MAC addresses of allowed devices are contained in any frames sent by the allowed device and can be seen by those using wireless protocol analyzers. The MAC address can then be spoofed for entry.73. Which of the following frame types contain the SSID? (Choose all that apply. ) a. Beacon frames b. Data frames c. Association frames d. Authentication frames Grade:3 User Responses:b. Data frames,c. Association frames,d. Authentication frames Feedback:a. The SSID is contained in all frames.If the SSID is hidden, it is removed only from the beacon frames. /b. The SSID is contained in all frames. If the SSID is hidden, it is removed only from the beacon frames. /c. The SSID is contained in all frames. If the SSID is hidden, it is removed only from the beacon frames.74. TKIP was designed to correct the shortcomings of which of the following? a. EAP b. WPA c. WEP d. WPA2 Grade:1 User Responses:c. WEP Feedback:a. TKIP was designed to correct the shortcomings of WEP. It was a temporary solution for use until the 802. 1x standard was completed.75. Which of the following encryption protocols is used with WPA2? . TKIP b. CCMP c. WEP d. DES Grade:1 User Responses:b. CCMP Feedback:a. Counter Mode with Cipher Block Chaining Message Authentication Code Protocol (CCMP) is the encryption protocol used with WPA2. It addresses the vulnerabilities of TKIP and meets requirements of IEEE 802. 11i.76. Which antenna types would be best for shaping the signal away from the front of the building for security purposes while still providing coverage in the other part of the building? (Choose all that apply. ) a. Yagi b. Omni c. Parabolic dish d. Semidirectional Grade:2 User Responses:a. Yagi,d. Semidirectional Feedback:a.You can us e a yagi antenna, which is a type of semidirectional antenna, to shape the coverage area as called for in the scenario. /b. You can use a yagi antenna, which is a type of semidirectional antenna, to shape the coverage area as called for in the scenario.77. How can you keep the existing radiation pattern of the antenna while reducing the coverage area? a. Increase the power of the transmitter. b. Decrease the power of the transmitter. c. Change the polarity of the antenna. d. Remove one of the attenuators from the line. Grade:1 User Responses:b. Decrease the power of the transmitter.Feedback:a. Reducing the power level maintains the radiation pattern while making the area of radiation smaller.78. What organization created WPA? a. FCC b. Wi-Fi Alliance c. IEEE d. ISO Grade:1 User Responses:b. Wi-Fi Alliance Feedback:a. The Wi-Fi Alliance created WPA to address the weaknesses of WEP.79. To which standard is WPA2 designed to adhere? a. 802. 16 b. 802. 11f c. 802. 11i d. 802. 11e Grade:1 User Responses:c. 802. 11i Feedback:a. WPA2 is designed to adhere to the 802. 11i security standard.80. Which of the following is the weakest form of security? a. TKIP b. WPA c. WEP d. EAP Grade:1User Responses:c. WEP Feedback:a. WEP is the weakest form of security. It has been cracked and is not suitable for Enterprise WLANs.81. A ______________ attack intercepts all data between a client and a server. a. DDoS b. Man-in-the-middle c. Replay d. Smurf Grade:1 User Responses:b. Man-in-the-middle Feedback:a. Man-in-the-middle is a type of active interception. If successful, all communications now go through the MITM attacking computer.82. When a group of compromised systems attack a single target it is a called a _______________ attack. a. DDoS b. Man-in-the middle c. Replay d. Smurf Grade:1User Responses:a. DDoS Feedback:a. A distributed denial-of-service attack occurs when a group of compromised systems launches a DDoS attack on a single target.83. When valid data transmissions are maliciously or fraudulently repeated, it is called a _______________ attack. a. DDoS b. man-in-the middle c. replay d. smurf Grade:1 User Responses:c. replay Feedback:a. When valid data transmissions are maliciously or fraudulently repeated, it is a called a replay attack.84. What attack sends large amounts of ICMP echoes, broadcasting the ICMP echo requests to every computer on its network or subnetwork? a.DDoS b. Man-in-the middle c. Replay d. Smurf Grade:1 User Responses:d. Smurf Feedback:a. A smurf attack sends large amounts of ICMP echoes, broadcasting the ICMP echo requests to every computer on its network or subnetwork. The ICMP request is sent to a broadcast address. When all hosts receive the ICMP broadcast request, these host send ICMP replies to the source address, which has been set to the address of the target.85. Changing your MAC address to that of another host is called ___________________. a. spear phishing b. spoofing c. pharming d. vishing Grade:1 User Responses:b . spoofing Feedback:a.Spoofing is when an attacker tails the IP or MAC address of another computer.86. Which of the following is more an aggravation than an attack? a. Spear phishing b. Spoofing c. Spam d. Vishing Grade:1 User Responses:c. Spam Feedback:a. Spam or unwanted email is more an aggravation than an attack.87. Which of the following uses instant messaging as its vehicle? a. Spim b. Spoofing c. Phishing d. Vishing Grade:1 User Responses:a. Spim Feedback:a. Spam Over Instant Messaging (SPIM) uses IM to deliver the spam.88. When VoIP phone calls are used in the pursuit of social engineering, it is called__________. a. spim b. poofing c. phishing d. vishing Grade:1 User Responses:d. vishing Feedback:a. Vishing is phishing performed with VoIP calls, which are harder to trace than regular calls.89. What type of attack is an advanced scan that tries to get around firewalls and look for open ports? a. DDoS b. Man-in-the-middle c. Xmas attack d. Smurf Grade:1 User Responses:c. Xmas attack Feedback:a. Usually using Nmap, the Xmas attack is an advanced scan that tries to get around firewalls and look for open ports.90. __________________ is when an attacker redirects one website’s traffic to another bogus and possibly malicious website. a.DDoS b. Pharming c. Xmas attack d. Smurf Grade:1 User Responses:b. Pharming Feedback:a. Host files and vulnerable DNS software can also be victims of pharming attacks. Pharming is when an attacker redirects one website’s traffic to another bogus and possibly malicious website. Pharming can be prevented by carefully monitoring DNS configurations and host files.91. ___________ is when a person that is not normally authorized to a server manages to get administrative permissions to resources. a. Whaling b. Pharming c. Spear phishing d. Privilege escalation Grade:1 User Responses:d. Privilege escalation Feedback:a.Privilege escalation is when a person that is not normally authorized to a server manages to get adminis trative permissions to resources.92. Which problem is the most difficult to contend with? a. Malicious insider threat b. Fraggle attack c. Distributed denial-of-service d. Whaling Grade:1 User Responses:a. Malicious insider threat Feedback:a. Because the attacker already is inside the network with company knowledge, a malicious insider threat is the most difficult to contend with.93. What type of attack can DNS poisoning lead to? a. Whaling b. Pharming c. Spear phishing d. Privilege escalation Grade:0User Responses:c. Spear phishing Feedback:a. Pharming attacks lead users from a legitimate website to a malicious twin. The easiest way to do this is to poison the DNS cache so that the DNS server sends them to the malicious site.94. Strong input validation can help prevent ____________________. a. bluesnarfing b. SQL injection c. session highjacking d. header manipulation Grade:0 User Responses:c. session highjacking Feedback:a. SQL injection attacks user input in web forms that is not correctly filtered. This can be prevented with input validations.95. LDAP injection is an attack on __________________servers. . SQL b. directory c. web d. email Grade:1 User Responses:b. directory Feedback:a. Lightweight Directory Access Protocol is a protocol used to maintain a directory of information such as user accounts or other types of objects.96. XML injection can be prevented with __________________. a. IDS b. IPS c. input validation d. complex passwords Grade:0 User Responses:d. complex passwords Feedback:a. The best way to protect against this (and all code injection techniques for that matter) is to incorporate strong input validation.97. The .. / attack is also known as ________________. a. irectory traversal b. SQL injection c. session highjacking d. header manipulation Grade:1 User Responses:a. directory traversal Feedback:a. Directory traversal, or the .. / (dot dot slash) attack is a method to access unauthorized parent (or worse, root) directories.98. ___________ __ is when commands and command syntax are entered into an application or OS. a. Directory traversal b. Command injection c. Command highjacking d. Code manipulation Grade:1 User Responses:b. Command injection Feedback:a. Command injection is when commands and command syntax are entered into an application or OS.99. Buffer overflows operate against the _________ of the computer. a. NIC b. disk c. CPU d. memory Grade:1 User Responses:d. memory Feedback:a. A buffer overflow is when a process stores data outside of the memory that the developer intended.100. What is the difference between an XSS and XSRF attack? a. The XSS attack exploits the trust a user’s browser has in a website, whereas the XSFR attack exploits the trust that a website has in a user’s browser. b. The XSFR attack exploits the trust a user’s browser has in a website, whereas the XSS attack exploits the trust that a website has in a user’s browser. . The XSS attack creates a buffer overflow on the website, whereas the XSFR attack creates a buffer overflow on the client. d. The XSS attack creates a buffer overflow on the client, whereas the XSFR attack creates a buffer overflow on the website. Grade:1 User Responses:a. The XSS attack exploits the trust a user’s browser has in a website, whereas the XSFR attack exploits the trust that a website has in a user’s browser. Feedback:a. The XSS attack exploits the trust a user’s browser has in a website. The converse of this: the XSRF attack exploits the trust that a website has in a user’s browser. In this attack (also known as a one-click attack), the user’s browser is compromised and transmits unauthorized commands to the website.101. _______________ are placed by programmers, knowingly or inadvertently, to bypass normal authentication and other security mechanisms in place. a. Landing spots b. Backdoors c. Hotspots d. Code heels Grade:1 User Responses:b. Backdoors Feedback:a. Backdoors a re placed by programmers, knowingly or inadvertently, to bypass normal authentication and other security mechanisms in place.102. An XSS attack is also called a(n) __________________ attack. a. Zero day b. Command injection . Xmas d. Cross site scripting Grade:1 User Responses:d. Cross site scripting Feedback:a. XSS attacks, also called cross site scripting attacks, exploit the trust a user’s browser has in a website through code injection, often in webforms.103. ______________can be used by spyware and can track people without their permission. a. MAC addresses b. Cookies c. IP addresses d. Attachments Grade:1 User Responses:b. Cookies Feedback:a. Cookies are text files placed on the client computer that store information about it, which could include your computer’s browsing habits and possibly user credentials.104. Which of the following attachments is the riskiest to open? a.. exe b.. pdf c.. doc d.. txt Grade:1 User Responses:a.. exe Feedback:a. A . exe or executa ble file is one that contains a program that will do something, perhaps malicious to the computer.105. Stolen cookies can be used to launch a(n) ____________________. a. XSS attack b. SQL injection c. session highjack d. header manipulation Grade:1 User Responses:c. session highjack Feedback:a. Session cookies authenticate you to a server and can be used to highjack your session.106. Header manipulation alters information in ______________ headers. a. LDAP b. file c. HTTP . SQL Grade:1 User Responses:c. HTTP Feedback:a. Header manipulation alters information in HTTP headers and falsifies access.107. An ActiveX control is an example of a(n) _________________. a. cookie b. add-on c. cipher d. virus Grade:1 User Responses:b. add-on Feedback:a. You can enable and disable add-on programs such as ActiveX controls in the Programs tab by clicking the Manage add-ons button in Internet Explorer.108. When an attack targets an operating system vulnerability that is still unknown to the world in general, it is called a __________. a. P2P attack b. zero day attack c. whaling attack d. DDoS attack Grade:1User Responses:b. zero day attack Feedback:a. A zero day attack targets an operating system vulnerability that is still unknown to the world in general.109. __________________is a concept that refers to the monitoring of data in use, data in motion, and data at rest. a. DLP b. DHCP c. DEP d. DMS Grade:1 User Responses:a. DLP Feedback:a. Data Loss Prevention (DLP) is a concept that refers to the monitoring of data in use, data in motion, and data at rest. It does this through content inspection and is designed to prevent unauthorized use of data as well as prevent the leakage of data outside the computer (or network) that it resides.110. Which form of DLP is typically installed in data centers or server rooms? a. Endpoint DLP b. Network DLP c. Storage DLP d. Comprehensive DLP Grade:1 User Responses:c. Storage DLP Feedback:a. Storage DLP systems are typically installed in data centers or server rooms as software that inspect data at rest.111. Which of the following is an example of drive encryption? a. AppLocker b. BitLocker c. Windows defender d. Trusted Platform Module Grade:1 User Responses:b. BitLocker Feedback:a. To encrypt an entire hard disk, you need some kind of full disk encryption software.Several are currently available on the market; one developed by Microsoft is called BitLocker.112. The beauty of hardware-based encryption devices such as HSM (and TPM) is that it is ____________ than software encryption. a. more difficult to crack b. easier to use than software encryption c. faster than software encryption d. can be used to calculate data other than encryption keys Grade:1 User Responses:c. faster than software encryption Feedback:a. Hardware security modules (HSMs) are physical devices that act as secure cryptoprocessors.This means that they are used for encryption during secure login/authentication processes, during digital signings of da ta, and for payment security systems. The beauty of hardware-based encryption devices such as HSM (and TPM) is that it is faster than software encryption.113. A _________________ is a chip residing on the motherboard that actually stores the encrypted keys. a. DLP b. DHCP c. DEP d. TPM Grade:1 User Responses:d. TPM Feedback:a. A Trusted Platform Module (TPM) chip is one residing on the motherboard that actually stores the encrypted keys.114. Which of the following is NOT required to encrypt the entire disk in Windows?Choose all that apply. a. TPM chip or USB key b. A hard drive with two volumes c. HSM Module d. Cryptoprocessor Grade:2 User Responses:c. HSM Module,d. Cryptoprocessor Feedback:a. Hardware security modules (HSMs) are physical devices that act as secure cryptoprocessors; however, they are NOT a part of encrypting the entire disk in Windows. /b. Hardware security modules (HSMs) are physical devices that act as secure cryptoprocessors; however, they are NOT a part of encry pting the entire disk in Windows.115. Probably the most important security concern with cloud computing is _______________. . less secure connections b. loss of physical control of data c. weak authentication d. bug exploitation Grade:1 User Responses:b. loss of physical control of data Feedback:a. Probably the most important security control concern is the physical control of data that is lost when an organization makes use of cloud computing.116. Which of the following is NOT a solution to security issues surrounding cloud computing? a. Complex passwords b. Strong authentication methods c. Standardization of programming d. Multiple firewalls Grade:1 User Responses:d. Multiple firewalls Feedback:a. Solutions to these security issues include complex passwords, strong authentication methods, encryption, and standardization of programming.117. Which form of DLP is typically installed on individual computers? a. Endpoint DLP b. Network DLP c. Storage DLP d. Comprehensive DLP Grade:1 Us er Responses:a. Endpoint DLP Feedback:a. Endpoint DLP systems run on an individual computer and are usually software-based. They monitor data in use such as email communications and can control what information flows between various users.118. Where could you disable the use of removable media on a computer? a. Device manager . BIOS c. Control panel d. Programs and features Grade:1 User Responses:b. BIOS Feedback:a. BIOS settings can be used to reduce the risk of infiltration including disabling removable media including the floppy drives and eSATA and USB ports.119. What are two shortcomings of using BitLocker drive encryption? a. Weak encryption b. Expensive c. Performance suffers d. Shorter drive life Grade:2 User Responses:c. Performance suffers,d. Shorter drive life Feedback:a. A drive encrypted with BitLocker usually suffers in performance compared to a nonencrypted drive and could have a shorter shelf life as well. /b. A drive encrypted with BitLocker usually suffers in perfo rmance compared to a nonencrypted drive and could have a shorter shelf life as well.120. Which form of DLP is typically installed on the perimeter of the network? a. Endpoint DLP b. Network DLP c. Storage DLP d. Comprehensive DLP Grade:1 User Responses:b. Network DLP Feedback:a. Network DLP systems can be software or hardware solutions that are often installed on the perimeter of the network. They inspect data that is in motion.121. Software as a service (SaaS) is a type of _____________ computing. a. HSM b. cloud c. role-based d. TPM Grade:1 User Responses:b. cloudFeedback:a. Software as a Service (SaaS) is the most commonly used and recognized example of cloud computing. SaaS is when users access applications over the Internet that are provided by a third party.122. Which form of DLP inspects ONLY data in motion? a. Endpoint DLP b. Network DLP c. Storage DLP d. Comprehensive DLP Grade:1 User Responses:b. Network DLP Feedback:a. Network DLP systems can be software or hardware solut ions that are often installed on the perimeter of the network. They inspect data that is in motion.123. Which of the following is NOT an example of cloud services? a. SaaS b. IaaS c. PaaS d. BaaS Grade:1User Responses:d. BaaS Feedback:a. Examples of cloud services include Software as a Service (SaaS), Infrastructure as a Service (IaaS), and Platform as a Service (PaaS).124. When an electronic control suffers an error, reports the error, and shuts down, it is called_____________. a. Failopen b. Failsafe c. Failclose d. Failshut Grade:1 User Responses:b. Failsafe Feedback:a. When the control fails and shuts down, it is a failsafe. When it fails and leaves a vulnerable system, it is a failopen.125. What should be the first thing you check when an intrusion has been detected? a. Firewall logs b. Server logs c. Workstation logs d.Security patches Grade:1 User Responses:a. Firewall logs Feedback:a. Logging is also important when it comes to a firewall. Firewall logs should be the first th ing you check when an intrusion has been detected. You should know how to access the logs and how to read them.126. Which log on a Windows server is where you could learn if Joe logged in today? a. Applications b. System c. Security d. DNS Grade:1 User Responses:c. Security Feedback:a. The security log contains entries about logins and access to resources both successful and unsuccessful.127. Which of the following is NOT an example of physical security? a. Mantraps b.Security logs c. Video surveillance d. Hardware locks Grade:1 User Responses:b. Security logs Feedback:a. Security logs track activities on the network which is logical not physical security.128. Which of the following is NOT a type of door lock? a. Cipher b. Keyed c. Cardkey d. Mantrap Grade:1 User Responses:d. Mantrap Feedback:a. A mantrap is a two door system designed to prevent tailgating.129. Which of the following is NOT an example of operating system hardening? a. Disabling unnecessary services b. Removing the N IC c. Protecting management interfaces d. Password protection Grade:1 User Responses:b. Removing the NIC Feedback:a.Hardening the system should not reduce its functionality, and removing the NIC would do that.130. Which of the following standards is often referred to as port-based security? a. 802. 1x b. 802. 11 c. 802. 11n d. 802. 1 Grade:1 User Responses:a. 802. 1x Feedback:a. 802. 1x enforces perimeter security by keeping the port of the station closed until authentication is complete.131. In which type of monitoring is network traffic analyzed for predetermined attack patterns? a. Signature-based monitoring b. Anomaly-based monitoring c. Behavior-based monitoring d. Reactive-based monitoring Grade:1 User Responses:a. Signature-based monitoringFeedback:a. Network traffic is analyzed for predetermined attack patterns. These attack patterns are known as signatures.132. A(n) __________________ uses baseline reporting and other analyses to discover vulnerabilities and weaknesses in s ystems. a. NAT b. SPA c. SLA d. PSK Grade:1 User Responses:b. SPA Feedback:a. The security posture can be defined as the risk level to which a system, or other technology element, is exposed. Security Posture Assessments (SPA) use baseline reporting and other analyses to discover vulnerabilities and weaknesses in systems.133. Which of the following indicate a problem currently occurring? . Trends b. Baselines c. Alarms d. Averts Grade:1 User Responses:c. Alarms Feedback:a. Although alerts indicate an issue that MAY need attention, alarms indicate a problem currently occurring.134. Which of the following are detection controls? (Choose all that apply. ) a. IDS b. IPS c. Video cameras d. Security guard Grade:2 User Responses:a. IDS,c. Video cameras Feedback:a. Detection controls, such as Intrusion Detection systems and video cameras record only activity; they do not prevent it. /b. Detection controls, such as Intrusion Detection systems and video cameras record only activity; they do not prevent it.135. Which of the following is designed to prevent tailgating? a. Mantraps b. Security logs c. Video surveillance d. Hardware locks Grade:1 User Responses:a. Mantraps Feedback:a. Mantraps use double doors to prevent tailgating.136. Which of the following is a proximity reader? a. a security card that transmits the location of the holder b. a device that tracks how close an individual is c. a security card reader that can read the card from a distance d. a card reader that locks the door when the holder is a certain distance from the door Grade:1 User Responses:c. security card reader that can read the card from a distance Feedback:a. These cards use radio waves to transmit to the reader.137. By frequently updating systems and by employing other methods such as group policies and baselining, you _____________ the systems. a. brace b. harden c. virtualize d. hardline Grade:1 User Responses:b. harden Feedback:a. By frequently updating systems and by employing other metho ds such as group policies and baselining, you harden the system.138. Installing service packs is a part of the ___________ process. a. baselining b. hardening c. scaling . security templating Grade:1 User Responses:b. hardening Feedback:a. Hardening the OS is accomplished through the use of service packs, patch management, hotfixes, group policies, security templates, and configuration baselines.139. ______________ can be described as unauthorized WAPs that inadvertently enable access to secure networks. a. Rogue access points b. Evil twin c. War driver d. Phisher Grade:1 User Responses:a. Rogue access points Feedback:a. Rogue access points can be described as unauthorized wireless access points/routers that enable access to secure networks.They differ from an Evil twin in that an Evil twin is strategically placed for the purpose of accessing the network or performing a high jacking attack, whereas rogue access points generally may be placed by employees for their convenience.140. W hich wireless attacks include the introduction of radio interference? a. Rogue Access Point b. Evil twin c. War driver d. Bluesnarfing Grade:1 User Responses:b. Evil twin Feedback:a. The evil twin attack includes jamming the network to cause the stations to associate with the evil twin AP.141. When executing the Evil twin attack, what value must match on the Evil twin and the legitimate AP? . IP address b. SSID c. MAC address d. Admin password Grade:1 User Responses:b. SSID Feedback:a. The Evil twin attack includes jamming the network to cause the stations to associate with the Evil twin AP. The stations will not roam to the Evil twin unless the SSID is the same as the legitimate AP.142. ________________ is when a person attempts to access a wireless network, usually while driving in a vehicle. a. War chalking b. Radiophishing c. War driving d. Bluesnarfing Grade:1 User Responses:c. War driving Feedback:a. War driving is when a person attempts to access a wireless

Thursday, November 7, 2019

The three classic gangster movies

The three classic gangster movies: Little Caesar (LeRoy, 1930), Public Enemy (Wellman, 1931), and Scarface (Hawks, 1932) usually took place at night in speakeasies, night clubs, elaborate apartments of the gangsters, and back rooms during the time of prohibition. Prohibition is believed to be the lead cause of the development of gangsters throughout the United States and the beginning of inter gang conflict involving territory among enemies. Each classic was said to have been based on a real life gangster of the 1930's and characters were created to depict the life of crime on the streets drawn from actual newspaper headlines. Actors such as Edward G. Robinson and James Cagney were cast to portray the life of infamous gang leaders Al Capone, Bugsy Siegel, and Hymie Weiss. It has been stated that their screen portrayals bore little resemblance to the actual criminal. In fact, many critics have argued that just the reverse is true, that "real" criminals tended to adjust th! eir dress and demeanor so that they might resemble their depiction in the movies. (Shatz 84) Two of the three most popular films begin and end in the same manner. Little Caesar opens with an off screen robbery and murder of a gas station attendant by a small time crook, Rico, who eventually makes his way to the top in the big city with the help of his right hand man, Joe. After he achieves his "overly ambitious goal of becoming a crime lord, Rico is machined gunned down in the final scene." (Dirks 2) The same holds true for Scarface. Tony Camonte, the former body guard of "Big Louis" Costillo- the last of the old fashioned leaders-sets the stage for what is to come when he viciously murders Costillo in his own night club. This begins Tony's relentless pursuit in his quest for power and fortune. Tony, like Rico, is killed by police sending him back to the gutter where they came from. The third of the classic gangster films, Public Enemy, opens not wi...

Monday, November 4, 2019

Managing Quality, Risk and Cost in Health Care Essay

Managing Quality, Risk and Cost in Health Care - Essay Example There is ample evidence that shows that effective management of service quality and patient safety could bring about vast improvement and desired results. Managing service quality, for example, could improve efficiency and costs and bring about patient satisfaction. On the other hand, improving the standards of patient safety is imperative because it lessens the risks of errors in clinical practice and secures the health and well-being of patients. Theoretically, managerial concerns in these two areas are deemed separate and distinct from each other because whilst one is evidently organisational in nature, the other involves actual clinical practice. The broadness of the concept of quality care, however, necessarily includes patient safety as a subset. Nonetheless, this connection and the commonalities of variables found in these two functions do not necessarily entail their integration. Patient safety is an important, and the primary, function of healthcare and deserves a separate t reatment from service quality. The quality of the service in health care is critically determined by the design of the process or processes that makes up the service. In health care organisations, the services offered are not tangibles but are processes or sets of processes. The process or processes themselves may not be entirely understood by patients but their quality is perceived, from the point of view of patients, from the design of the process or processes. This is because it is the design that shapes and directs the interaction between health provider and patients and serves the defining moment or the critical incident between them. This moment or incident by which the health provider interacts with the member or patient may be called a service encounter. A service encounter greatly impacts upon a member because it is at this point that the latter is given the opportunity to form his or her impression of the health provider’s service quality (Taylor &

Saturday, November 2, 2019

Letter about a product Essay Example | Topics and Well Written Essays - 500 words

Letter about a product - Essay Example I am looking forward to hearing from Emerson Process Management because I feel that I am a strong candidate for the vacant position. I shall keep you posted about the progress of my application with the aforementioned company. Greetings! I am contacting you today in relation to the job opening of Materials Analyst at your good company. It is by sheer luck that I am currently available to fill the position should you feel that I qualify to do so. I have almost 12 years on the job experience as a Materials Analyst having had the opportunity to work for ABC Processes Incorporated in the same position up until the time of my departure from the company this past January. I have traveled extensively across the United States as a representative for ABC Processes Incorporated and have created a personal network of business connections in the process that can benefit Emerson Process Management whenever necessary. I believe that my attached resume will prove that I am one of the strongest candidates for the open position. I am available to discuss my application and answer any questions you might have about my work experience at your convenience. I am looking forward to hearing from you about an interview date are your most convenient