Evading IDS, Firewalls and Honeypots

← all quizzes

Answer all 15 questions, then submit. You need 75% to pass. If you don't pass, the reattempt unlocks after 24 hours.

Q1. Deception technology extends the honeypot idea by:
Q2. A network-based IDS typically:
Q3. A true positive IDS alert means:
Q4. A circuit-level gateway monitors:
Q5. The main limitation of an IDS deployed on a SPAN port is that it:
Q6. A honeytoken is:
Q7. A reverse shell over DNS is chosen when:
Q8. A honeypot is:
Q9. Alert fatigue is a security problem because:
Q10. A hardware firewall is:
Q11. Why should a tester agree with the client whether evasion is in scope?
Q12. Attackers detect honeypots by looking for:
Q13. WAF bypass frequently succeeds by:
Q14. Egress filtering is valuable because it:
Q15. Domain fronting was used to evade filtering by: