munotes®

BSc CS Sem 6 BSc CS Semester 6 ATKT (2018 2019) 2019 ETHICAL HACKING Question Paper - Mumbai University | munotes

BSc CS Semester 6 ATKT (2018 2019) Question Paper.pdf
SEM 6 · BSc CS Semester 6 ATKT (2018-2019) · 329 KB · 1 May 2025

Loading PDF...

Questions asked in this paper

  • 2) Figures to the right indicate marks
  1. Q3 Illustrations, in-depth answers and diagrams will be appreciated
  2. Q4 Mixing of sub-questions is not allowed
  3. Q1 Attempt Allthe Questions (15M)
    • (a) Multiple Choice Questions:
  4. Q1 Programs designed to affect performance and not damage the system are called
    • a) BOT’s Spyware
    • c) Virus d) Worm
  5. Q2 Which one of the following is not a part of Metasploit interface
  6. Q3 What is the first step in a SQL injection attack?
    • a) Enter arbitrary commands at a user b) Locate a user field on a web page
    • c) Locate the return pointer d) Enter a series of NOPs
  7. Q4 What type of device connects systems on a shared network?
    • a) Routers b) Gateways
    • c) Hubs d) Switches
  8. Q5 Entering Password:blah or 1=1 into a web form in order to get a password is an example of what type of attack?
    • (b) Fillin the blanks (Use following pool to answer questions)
  9. Q1 A indicates where the packet is located in the data stream so the receiving station can reassemble the data
  10. Q2 Ina attack, an attacker hijacks a session and then watches and records all the traffic that is being sent by the legitimate user
  11. Q3 A flood attack sends TCP connection requests faster than a machine can process
  12. Q4 an automated software program that behaves intelligently
  13. Q5 is a technique that tricks a DNS server into believing it has received authentic information when in reality it has not
    • (c) Answer in ONE or TWO sentences:
  14. Q1 Name any three threats in information security
  15. Q2 List different ways to detect DoS attacks
  16. Q3 What is session hijacking?
  17. Q4 What are two types of buffer overflow attacks?
  18. Q5 Mention any two VOIP Vulnerabilities
  19. Q2 Attempt the following (Any THREE) (15M)
    • (a) Explain the following terms:
    • a. Keystroke Logging
    • b. Denial of Service (DoS /DDoS)
    • (b) the statement “As Security increases system’s functions and ease of use decreases for users”’
    • (c) Define a Worm and Virus. Mention the differences between the two
    • (d) Explain ARP poisoning in detail
    • (e) What are BOTs and BOTNETs? Explain
    • (f) What is an attack? Explain in brief rootkit attack
  20. Q3 Attempt the following (Any THREE) (15M)
    • (a) What is Footprinting? What countermeasures can be taken against footprinting?
    • (b) Write a short note on phases of hacking
    • (c) Explain the need for repeated penetration testing
    • (d) Describe the implementation of Request Forging using XSRF/CSRF
    • (e) Explain Authenticated and Unauthenticated Penetration Testing
    • (f) Describe the several steps Security testing plan
  21. Q4 Attempt the following (Any THREE) (15M)
    • (a) Write a note on Covering your tracks phase
    • (b) What is password cracking? Explain various steps involved in cracking a password
    • (c) Write a short note on SYN flooding
    • (d) Describe in detail SMTP/Email based attack
    • (e) Explain the different steps adopted to secure a VOIP Network
    • (f) Explain Honeypots and different evasion technique
  22. Q5 Attempt the following (Any THREE) (15M)
    • (a) Explain in brief DNS poisoning
    • (b) Describe threat modelling
    • (c) Explain internal and external penetration testing with suitable example
    • (d) Write a short note on cross site scripting (XSS)

Read from the scan above, so a character or two may differ. The scan is the original.

Report or request

Something wrong on this page? Report it and we will check it against the scan.

Quick Help

No. The full paper opens straight away, with no login and nothing to pay.

Something wrong with this paper? Report it.

Connected Papers
BSc CS / Sem 6 · 49 papers
Browse all →
Questions? Email contact@munotes.in
Done!
Done!