Courseiva
Security →mediumMatching

220-1102 Security Practice Question

Match each security threat to its description.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Fraudulent emails or messages tricking users into revealing sensitive info

Malware that encrypts files and demands payment for decryption

Manipulating people into divulging confidential information

Malware that hides deep in the OS to provide unauthorized access

Software that secretly monitors user activity and collects data

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Malware: Any software intentionally designed to cause damage.

Common security threats include malware (any malicious software), phishing (fraudulent info gathering), ransomware (data-encrypting extortion), and social engineering (human manipulation). Common confusions: ransomware is a type of malware, and social engineering is a broader attack vector that includes phishing.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Malware: Any software intentionally designed to cause damage.

    Why this is correct

    Malware is an umbrella term that includes viruses, worms, trojans, spyware, and ransomware, all designed to cause harm, disrupt operations, or gain unauthorized access. Unlike specific subtypes that have a particular mechanism or goal, malware's defining trait is malicious intent. This breadth is why it is correct as the general category for any deliberately harmful software.

  • ✓

    Phishing: A fraudulent attempt to obtain sensitive information by disguising as a trustworthy entity.

    Why this is correct

    Phishing is a targeted cyberattack method where the attacker masquerades as a legitimate organization or individual via email, SMS, or a forged website to trick victims into revealing sensitive data such as login credentials or credit card numbers. The deception relies on urgency, authority, or familiarity to bypass the victim's rational caution. It is distinct from general social engineering because it specifically uses digital impersonation and communication as the attack vector.

  • ✓

    Ransomware: Malware that encrypts files and demands payment for decryption.

    Why this is correct

    Ransomware is a particularly destructive form of malware that encrypts the victim's files or whole disk using strong encryption algorithms, then demands a ransom, usually payable in cryptocurrency, in exchange for the decryption key. The victim's data is effectively held hostage, and there is no guarantee that paying the ransom will restore access. Its defining characteristic is the extortion-based payment demand, which sets it apart from generic malware.

  • ✓

    Social Engineering: Manipulating people to divulge confidential information.

    Why this is correct

    Social engineering is an attack vector that exploits human psychology rather than technical vulnerabilities to manipulate individuals into performing actions or divulging confidential information. Techniques include pretexting, baiting, tailgating, and phishing, but it can occur in person, over the phone, or through digital channels. The core element is the psychological manipulation of trust, fear, or helpfulness, making it broader than any single technical threat.

  • ✗

    Malware: Malware that encrypts files and demands payment.

    Why it's wrong here

    This statement incorrectly narrows the definition of malware to only include encryption-based extortion, which is actually the unique behavior of ransomware. Malware encompasses a much wider range of malicious programs, including keyloggers that record keystrokes, backdoors that grant remote access, and adware that displays unwanted ads. By conflating malware with ransomware, the explanation ignores the diversity of malware and fails to distinguish between a general category and its specific subset.

  • ✗

    Phishing: Manipulating people to divulge confidential information.

    Why it's wrong here

    This definition is too broad and essentially describes social engineering, not phishing specifically. Phishing is a subset of social engineering that relies on electronic communications, such as fraudulent emails or spoofed websites, to impersonate a trusted source and steal information. Manipulation of people can also occur through phone calls (vishing), text messages (smishing), or even in-person interactions, so the absence of the digital impersonation element makes this option incorrect.

About these practice questions

One of 925 original 220-1102 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1102 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1102 exam.