411 Cybersecurity and Data Protection • Phishing विश्वसनीय संस्था का रूप लेकर संदेश या नकली वेबसाइट से पासवर्ड प्राप्त करने का प्रयास क्या कहलाता है? What is an attempt to obtain passwords through messages or fake websites impersonating a trusted organisation called? A. डिफ्रैगमेंटेशन Defragmentation B. कंपाइलेशन Compilation C. फिशिंग Phishing D. स्पूलिंग Spooling उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: C Correct Answer: C फिशिंग में धोखे से संवेदनशील जानकारी या कोई कार्रवाई प्राप्त करने की कोशिश होती है। संदेश की तात्कालिकता या परिचित लोगो उसकी प्रामाणिकता का प्रमाण नहीं है। Phishing uses deception to obtain sensitive information or induce an action. Urgency or a familiar logo does not prove authenticity.
412 Cybersecurity and Data Protection • Social Engineering लोगों को बहलाकर गोपनीय जानकारी या अनधिकृत पहुँच प्राप्त करना किसका उदाहरण है? Manipulating people into revealing confidential information or granting unauthorised access is an example of: A. डेटा संपीड़न Data compression B. सोशल इंजीनियरिंग Social engineering C. लोड बैलेंसिंग Load balancing D. मेमोरी पेजिंग Memory paging उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: B Correct Answer: B सोशल इंजीनियरिंग तकनीकी कमजोरी के बजाय मानव व्यवहार और भरोसे का दुरुपयोग करती है। फिशिंग इसका एक रूप है। Social engineering exploits human behaviour and trust rather than relying solely on technical weaknesses. Phishing is one form.
413 Cybersecurity and Data Protection • Firewalls फायरवॉल का प्रमुख कार्य क्या है? What is the main function of a firewall? A. सभी वायरसों को निश्चित रूप से हटाना To guarantee removal of every virus B. हार्ड डिस्क की क्षमता बढ़ाना To increase hard disk capacity C. हर फाइल का बैकअप बनाना To back up every file D. नियमों के अनुसार नेटवर्क ट्रैफिक को अनुमति देना या रोकना To allow or block network traffic according to rules उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: D Correct Answer: D फायरवॉल निर्धारित सुरक्षा नियमों के आधार पर नेटवर्क संचार नियंत्रित करता है। यह अपने आप सभी प्रकार के हमलों से पूर्ण सुरक्षा नहीं देता। A firewall controls network communication according to security rules. It does not by itself provide complete protection against every attack.
414 Cybersecurity and Data Protection • Authentication and Authorisation किसी उपयोगकर्ता की बताई गई पहचान की पुष्टि करना क्या कहलाता है? What is verifying the identity claimed by a user called? A. प्रमाणीकरण Authentication B. प्राधिकरण Authorisation C. संपीड़न Compression D. इंडेक्सिंग Indexing उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: A Correct Answer: A प्रमाणीकरण जाँचता है कि उपयोगकर्ता वास्तव में कौन है। प्राधिकरण यह तय करता है कि उसे कौन-से कार्य या संसाधन उपयोग करने की अनुमति है। Authentication verifies who the user is. Authorisation determines which actions or resources that user is permitted to access.
415 Cybersecurity and Data Protection • Authentication and Authorisation लॉगिन किए उपयोगकर्ता को केवल रिपोर्ट पढ़ने, लेकिन बदलने की अनुमति न देना किससे संबंधित है? Allowing a logged-in user to read a report but not modify it is an example of: A. कंपाइलेशन Compilation B. डेटा संपीड़न Data compression C. प्राधिकरण Authorisation D. डिफ्रैगमेंटेशन Defragmentation उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: C Correct Answer: C प्राधिकरण उपयोगकर्ता के अधिकार तय करता है। पढ़ने और लिखने की अनुमतियाँ अलग-अलग नियंत्रित की जा सकती हैं। Authorisation determines user permissions. Read and write access can be controlled separately.
416 Cybersecurity and Data Protection • Multifactor Authentication कौन-सा संयोजन दो अलग प्रकार के प्रमाणीकरण कारकों का उदाहरण है? Which combination is an example of two different authentication factor types? A. पासवर्ड और सुरक्षा प्रश्न का उत्तर A password and the answer to a security question B. पासवर्ड और फिंगरप्रिंट A password and a fingerprint C. दो अलग पासवर्ड Two different passwords D. PIN और पासवर्ड A PIN and a password उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: B Correct Answer: B पासवर्ड ज्ञात जानकारी का कारक है, जबकि फिंगरप्रिंट जैविक पहचान का कारक है। दो पासवर्ड एक ही प्रकार के कारक हैं। A password is a knowledge factor, while a fingerprint is an inherence factor. Two passwords belong to the same factor type.
417 Cybersecurity and Data Protection • Authentication Methods OTP का सही पूर्ण रूप क्या है? What is the correct expansion of OTP? A. Online Transfer Protocol Online Transfer Protocol B. Open Transaction Process Open Transaction Process C. Original Text Protection Original Text Protection D. One-Time Password One-Time Password उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: D Correct Answer: D OTP एक बार उपयोग के लिए बनाया गया पासवर्ड या कोड है। यह सीमित अवधि या विशेष प्रमाणीकरण प्रयास के लिए मान्य हो सकता है। An OTP is a password or code intended for one-time use. It may be valid for a limited period or a particular authentication attempt.
418 Cybersecurity and Data Protection • CIA Triad कौन-सा सुरक्षा सिद्धांत सुनिश्चित करता है कि जानकारी केवल अधिकृत लोगों को उपलब्ध हो? Which security principle ensures that information is accessible only to authorised parties? A. गोपनीयता Confidentiality B. उपलब्धता Availability C. डेटा रिडंडेंसी Data redundancy D. पोर्टेबिलिटी Portability उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: A Correct Answer: A गोपनीयता अनधिकृत जानकारी-प्रकटीकरण से सुरक्षा है। पहुँच नियंत्रण और एन्क्रिप्शन इसे बनाए रखने में सहायता कर सकते हैं। Confidentiality protects against unauthorised disclosure. Access controls and encryption can help maintain it.
419 Cybersecurity and Data Protection • CIA Triad डेटा में अनधिकृत परिवर्तन रोकना किस सुरक्षा सिद्धांत से संबंधित है? Preventing unauthorised changes to data relates to which security principle? A. केवल उपलब्धता Availability only B. केवल पोर्टेबिलिटी Portability only C. अखंडता Integrity D. संपीड़न Compression उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: C Correct Answer: C अखंडता डेटा को अनुचित परिवर्तन या नष्ट किए जाने से बचाने से संबंधित है। इसका उद्देश्य डेटा की शुद्धता और पूर्णता बनाए रखना है। Integrity concerns protection against improper alteration or destruction, helping preserve data accuracy and completeness.
420 Cybersecurity and Data Protection • CIA Triad अधिकृत उपयोगकर्ताओं को आवश्यक समय पर प्रणाली और डेटा मिलना किस सुरक्षा सिद्धांत से संबंधित है? Ensuring authorised users can access systems and data when needed relates to which security principle? A. गोपनीयता Confidentiality B. उपलब्धता Availability C. गुमनामी Anonymity D. संपीड़न Compression उत्तर और व्याख्या देखें Show answer and explanation सही उत्तर: B Correct Answer: B उपलब्धता का अर्थ अधिकृत उपयोगकर्ताओं के लिए समय पर विश्वसनीय पहुँच है। सेवा बाधित करने वाले हमले इसी गुण को प्रभावित करते हैं। Availability means timely and reliable access for authorised users. Service-disruption attacks affect this property.