Which description best explains symmetric encryption?
7. Encryption, Privacy, and Trust Online Quiz Questions
Use this free practice quiz with 30 questions to review 7. Encryption, Privacy, and Trust, test your knowledge, and prepare for your next test or exam.
What standard term names the fixed-length value produced when a cryptographic hash function processes input?
Complete the sentence: Encryption transforms readable information, called , into ciphertext.
Which two choices are different authentication-factor categories that could satisfy the category requirement for multifactor authentication? Select all correct choices.
- A
Something you know
- B
Two passwords
- C
Something you have
- D
A longer username
What is a primary security function of a digital signature?
- A
They guarantee that no one can observe communication metadata
- B
They encrypt data so only the recipient can read it
- C
They help establish authenticity and integrity
- D
They eliminate the need to protect private keys
What protocol, commonly used by HTTPS, negotiates cryptographic algorithms, authenticates the server through certificates, establishes session keys, and protects application data in transit?
Complete the sentence: A digital certificate binds a website identity to a , and a trusted signs the certificate.
Which two actions are legitimate parts of a cryptographic key-management life cycle? Select all correct choices.
- A
Revoking compromised keys
- B
Sharing every private key publicly
- C
Destroying keys when appropriate
- D
Using one key indefinitely for every purpose
After public-key operations authenticate participants and establish a temporary session key, what typically protects the rest of a secure communication efficiently?
- A
A permanent public key encrypts every application message directly
- B
A temporary symmetric session key protects the rest of the communication
- C
A hash replaces all encryption during the communication
- D
A certificate authority decrypts every application message
A government agency proposes a universal backdoor in an encrypted messaging system to obtain evidence. Evaluate this proposal using the material's framework for lawful access. What safeguards should apply, why does a universal backdoor create security concerns, and what alternatives might investigators consider?
Which distinction correctly describes authentication and authorization?
- A
Authentication determines permissions, while authorization proves identity
- B
Authentication establishes identity, while authorization determines permitted actions
- C
Authentication encrypts files, while authorization hashes them
- D
Authentication creates session keys, while authorization signs certificates
What type of encryption uses the same secret key to encrypt and decrypt data?
A software publisher posts a file hash, but a user's computed hash does not match it. What is the most appropriate conclusion?
- A
The file is definitely confidential.
- B
The file may have been corrupted or replaced.
- C
The file was encrypted with a public key.
- D
The file's password has been securely stored.
Complete the statement: Encryption transforms readable information called into ciphertext.
True or false: Authorization determines which actions an authenticated entity is permitted to perform.
- A
True
- B
False
How many authentication-factor categories are described in the material? Enter the number as a whole number.
Alice wants to send Bob a confidential message using asymmetric cryptography. Which key should Alice use to encrypt the message?
- A
The sender's private key
- B
The sender's public key
- C
The recipient's public key
- D
The recipient's private key
True or false: A digital signature by itself provides confidentiality for the signed information.
- A
True
- B
False
What is the full term for the trusted entity that signs a certificate binding a website identity to a public key?
Which actions are part of responsible cryptographic key management? Select all that apply.
- A
Generate keys using a secure source of randomness.
- B
Publish every private key openly.
- C
Rotate or replace keys when appropriate.
- D
Revoke keys that have been compromised.
- E
Use one unchanged key indefinitely.
What is the full name of TLS, the protocol used by HTTPS to help protect web communications?
A school wants to reduce the risk from stolen passwords. Which change most directly follows the material's recommendation about stronger multifactor authentication?
- A
Disable MFA to reduce inconvenience.
- B
Use only a longer password.
- C
Prefer a phishing-resistant physical security key over a text-message code.
- D
Reuse one password across accounts so it is easier to remember.
True or false: In end-to-end encryption, a service provider may deliver ciphertext without possessing the key needed to read the message.
- A
True
- B
False
Why can adding a universal backdoor to an encrypted system create a security problem?
- A
It guarantees that only courts can ever use the mechanism.
- B
It can create a target that may expose many users or systems.
- C
It eliminates the need for authentication.
- D
It makes encryption faster without introducing any security concern.
A company laptop is stolen while it is powered off. The laptop's storage is encrypted, but the thief may still possess the physical device. What protection does the encryption primarily provide in this situation?
- A
It proves which employee last used the laptop.
- B
It helps prevent an unauthorized person who obtains the laptop from reading the stored files.
- C
It guarantees that every file on the laptop is unaltered.
- D
It prevents the employee from losing access to the files.
A messaging system must protect large amounts of data efficiently, but two users have not previously shared a secret key. Which design best addresses both requirements?
- A
Use only symmetric encryption because it eliminates the need for key distribution.
- B
Use only asymmetric encryption because it is faster for large files.
- C
Use public-key operations to establish a temporary shared key, then use symmetric encryption for the data.
- D
Avoid encryption and rely on a password sent with the file.
A software publisher digitally signs an update, and users verify the signature with the publisher's public key. What can this process establish, assuming the publisher's private key remains secure?
- A
The recipient can check who signed the data and whether it was altered, but the signature alone does not hide the data.
- B
Only the recipient with a private key can read the signed data.
- C
The signature guarantees that the sender's device has no malware.
- D
The signature prevents anyone from knowing that communication occurred.
An organization discovers that an employee's private signing key may have been copied by an attacker. Which key-management response is most appropriate?
- A
Increase the key's length without changing or invalidating the compromised key.
- B
Publish the private key so others can confirm that it is genuine.
- C
Use the compromised key for all future operations so historical records remain consistent.
- D
Revoke the compromised key and replace it through a secure key-management process.
True or false: Encrypting a message prevents an observer from learning that data was exchanged, when it was exchanged, or how much data was transferred.
- A
True
- B
False
True or false: A security measure that is so difficult that users routinely disable it or work around it may weaken practical security, so usable security matters.
- A
True
- B
False