BSc CS Sem 6 BSc CS Semester 6 ATKT (2018 2019) 2019 ETHICAL HACKING Question Paper - Mumbai University | munotes
Loading PDF...
Older exam
None: this is the earliest we hold
Newer exam
2019 - DATA MANAGEMENT USING PL SQL II
Semester-end · BSc CS Semester 6 ATKT (2018 2019)
→
Questions asked in this paper
- 2) Figures to the right indicate marks
-
Q3 Illustrations, in-depth answers and diagrams will be appreciated
-
Q4 Mixing of sub-questions is not allowed
-
Q1 Attempt Allthe Questions (15M)
- (a) Multiple Choice Questions:
-
Q1 Programs designed to affect performance and not damage the system are called
- a) BOT’s Spyware
- c) Virus d) Worm
-
Q2 Which one of the following is not a part of Metasploit interface
-
Q3 What is the first step in a SQL injection attack?
- a) Enter arbitrary commands at a user b) Locate a user field on a web page
- c) Locate the return pointer d) Enter a series of NOPs
-
Q4 What type of device connects systems on a shared network?
- a) Routers b) Gateways
- c) Hubs d) Switches
-
Q5 Entering Password:blah or 1=1 into a web form in order to get a password is an example of what type of attack?
- (b) Fillin the blanks (Use following pool to answer questions)
-
Q1 A indicates where the packet is located in the data stream so the receiving station can reassemble the data
-
Q2 Ina attack, an attacker hijacks a session and then watches and records all the traffic that is being sent by the legitimate user
-
Q3 A flood attack sends TCP connection requests faster than a machine can process
-
Q4 an automated software program that behaves intelligently
-
Q5 is a technique that tricks a DNS server into believing it has received authentic information when in reality it has not
- (c) Answer in ONE or TWO sentences:
-
Q1 Name any three threats in information security
-
Q2 List different ways to detect DoS attacks
-
Q3 What is session hijacking?
-
Q4 What are two types of buffer overflow attacks?
-
Q5 Mention any two VOIP Vulnerabilities
-
Q2 Attempt the following (Any THREE) (15M)
- (a) Explain the following terms:
- a. Keystroke Logging
- b. Denial of Service (DoS /DDoS)
- (b) the statement “As Security increases system’s functions and ease of use decreases for users”’
- (c) Define a Worm and Virus. Mention the differences between the two
- (d) Explain ARP poisoning in detail
- (e) What are BOTs and BOTNETs? Explain
- (f) What is an attack? Explain in brief rootkit attack
-
Q3 Attempt the following (Any THREE) (15M)
- (a) What is Footprinting? What countermeasures can be taken against footprinting?
- (b) Write a short note on phases of hacking
- (c) Explain the need for repeated penetration testing
- (d) Describe the implementation of Request Forging using XSRF/CSRF
- (e) Explain Authenticated and Unauthenticated Penetration Testing
- (f) Describe the several steps Security testing plan
-
Q4 Attempt the following (Any THREE) (15M)
- (a) Write a note on Covering your tracks phase
- (b) What is password cracking? Explain various steps involved in cracking a password
- (c) Write a short note on SYN flooding
- (d) Describe in detail SMTP/Email based attack
- (e) Explain the different steps adopted to secure a VOIP Network
- (f) Explain Honeypots and different evasion technique
-
Q5 Attempt the following (Any THREE) (15M)
- (a) Explain in brief DNS poisoning
- (b) Describe threat modelling
- (c) Explain internal and external penetration testing with suitable example
- (d) Write a short note on cross site scripting (XSS)
Read from the scan above, so a character or two may differ. The scan is the original.
Something wrong on this page? Report it and we will check it against the scan.
Quick Help
No. The full paper opens straight away, with no login and nothing to pay.
Related Resources
Something wrong with this paper? Report it.
Connected Papers
BSc CS / Sem 6 · 49 papers
October 2025 - Cloud Computing & Web Services
October 2025 - Customer Relationship Management
October 2025 - Cyber Laws & IPR
October 2025 - Data Mining & Warehousing
October 2025 - Data Science
October 2025 - Ethical Hacking
October 2025 - Information Retrieval
October 2025 - Wireless & Sensor Network
May 2019 - ADVANCED JAVA PROGRAMMING II
May 2019 - ADVANCED JAVA PROGRAMMING II
May 2019 - ADVANCED NETWORKING SECURITY
May 2019 - ADVANCED NETWORKING SECURITY
2019 - CYBER FORENSICS
Apr 2019 - CYBER FORENSICS
2019 - DATA MANAGEMENT USING PL SQL II
May 2019 - DATA MANAGEMENT USING PL SQL II
May 2019 - DATA SCIENCE
May 2019 - DATA SCIENCE
May 2019 - DIGITAL IMAGE PROCESSING
May 2019 - DIGITAL IMAGE PROCESSING
2019 - ETHICAL HACKING Open
May 2019 - ETHICAL HACKING
May 2019 - ETHICAL HACKING
May 2019 - SOFTWARE ENGINEERING AND TESTING
May 2019 - SOFTWARE ENGINEERING AND TESTING
Questions? Email contact@munotes.in
Done!