HomeSubjectsUniversityBlogAbout

Protection & Security

Topic in Operating Systems

210 total MCQsShowing 30 with explanations10 Easy10 Medium10 Hard

About This Topic

Protection is the set of OS mechanisms that decide which processes and users may access which resources, while security defends against attacks. Protection questions use the principle of least privilege, protection domains, the access matrix, and its implementation as access control lists or capability lists. Access-control models such as DAC, MAC, RBAC and the Bell-LaPadula confidentiality model are regularly compared. On the security side, know threats like trojan horses, trap doors, buffer overflows, viruses and worms, along with authentication, password hashing with salts, symmetric versus asymmetric encryption, and hardware flaws such as Spectre and Meltdown.

Below are 30 practice questions from a pool of 210 Protection & Security MCQs, one of 12 topics in Operating Systems. Each shows the correct answer with an explanation; when you are ready, take a timed quiz to test recall under exam conditions.

Practice Questions

Each question below shows the correct answer with a full explanation. Use these to build conceptual understanding before attempting a timed quiz.

Protection & SecurityEasy

Q1. Authentication is the process of:

  1. A.Verifying identity of a user✓ Correct
  2. B.Encrypting data for security
  3. C.Authorizing resource access
  4. D.Backing up critical data

Explanation

Authentication verifies the identity of a user or process, typically through something the user knows (password), has (smart card/token), or is (biometrics like fingerprint).

Report an error in this question

Protection & SecurityEasy

Q2. A worm differs from a virus in that:

  1. A.A worm only affects the physical hardware parts
  2. B.A worm replicates across networks without host✓ Correct
  3. C.A worm is less harmful than a virus overall
  4. D.A worm cannot spread to other network systems

Explanation

Unlike viruses that need a host program, worms are standalone programs that self-replicate across networks without human intervention. They exploit network vulnerabilities to spread automatically.

Report an error in this question

Protection & SecurityEasy

Q3. A firewall is:

  1. A.A system monitoring and controlling network traffic✓ Correct
  2. B.A physical wall in the server room for safety
  3. C.A type of computer virus that spreads via network
  4. D.A backup system for disaster recovery procedures

Explanation

A firewall is a network security system that monitors and filters incoming and outgoing network traffic based on an organization's security policies and predefined rules.

Report an error in this question

Protection & SecurityEasy

Q4. Protection in operating systems refers to:

  1. A.Controlling process and user access to resources✓ Correct
  2. B.Antivirus software scanning for malware threats
  3. C.Firewall configuration for network protection
  4. D.Physical security of the computer hardware

Explanation

Protection is an internal mechanism that controls access of processes and users to system resources (CPU, memory, files) based on defined policies, ensuring authorized access only.

Report an error in this question

Protection & SecurityEasy

Q5. The principle of least privilege states that:

  1. A.All users should have full administrator access rights
  2. B.The least privileged user should have no access at all
  3. C.Users get only the minimum access needed for tasks✓ Correct
  4. D.All privileges should be equal for all system users

Explanation

The principle of least privilege requires that every process, user, and program operates using the least set of privileges necessary to complete the task, minimizing the damage from errors or malicious actions.

Report an error in this question

Protection & SecurityEasy

Q6. A Trojan horse in computer security is:

  1. A.A system backup utility tool for data
  2. B.A type of network firewall tool used
  3. C.A type of hardware peripheral device
  4. D.Malicious program disguised as legitimate✓ Correct

Explanation

A Trojan horse is a program that appears legitimate and useful but contains hidden malicious functionality. Unlike viruses and worms, Trojans do not replicate themselves.

Report an error in this question

Protection & SecurityEasy

Q7. Security in operating systems deals with:

  1. A.Only network security from remote attacks
  2. B.Defending against internal and external attacks✓ Correct
  3. C.Only internal threats from local users
  4. D.Only physical security of the server room

Explanation

Security involves defending the system against internal and external threats, including unauthorized access, malicious attacks (viruses, worms, trojans), denial-of-service attacks, and data breaches.

Report an error in this question

Protection & SecurityMedium

Q8. An access control matrix is:

  1. A.A type of encryption algorithm for data security
  2. B.A type of visual display device for output
  3. C.A hardware protection mechanism in the CPU unit
  4. D.A model specifying subject access rights to objects✓ Correct

Explanation

An access control matrix has rows for subjects (users/processes) and columns for objects (files/resources). Each cell contains the access rights (read, write, execute) that the subject has on the object.

Report an error in this question

Protection & SecurityEasy

Q9. Authorization determines:

  1. A.When to back up data for disaster recovery
  2. B.How to encrypt data for secure communication
  3. C.Who the user is based on their credentials
  4. D.What resources a verified user may access✓ Correct

Explanation

Authorization determines the access rights and permissions of an authenticated user - what resources they can access and what operations (read, write, execute) they can perform on them.

Report an error in this question

Protection & SecurityEasy

Q10. Encryption is the process of:

  1. A.Converting plaintext to ciphertext with key✓ Correct
  2. B.Backing up data to a remote server
  3. C.Deleting data permanently from disk
  4. D.Compressing data for efficient storage

Explanation

Encryption transforms readable data (plaintext) into an unreadable format (ciphertext) using a cryptographic algorithm and key. Only authorized parties with the correct key can decrypt and read the data.

Report an error in this question

Protection & SecurityEasy

Q11. A virus in computer security is:

  1. A.Self-replicating malicious program on host✓ Correct
  2. B.A network communication protocol standard
  3. C.A hardware malfunction in the CPU unit
  4. D.A type of data encryption algorithm used

Explanation

A computer virus is a piece of malicious code that attaches itself to a legitimate program. When the host program runs, the virus executes and can replicate itself to other programs or files.

Report an error in this question

Protection & SecurityMedium

Q12. Capability lists are a row-based implementation of the access control matrix where:

  1. A.Capabilities are stored in a central directory
  2. B.Each object stores its own capability tokens
  3. C.Each subject holds objects and allowed operations✓ Correct
  4. D.Capabilities are not used in any modern system

Explanation

A capability list is associated with each subject (user/process) and contains pairs of (object, access rights). It is a row-wise view of the access control matrix. A capability is an unforgeable token of authority.

Report an error in this question

Protection & SecurityMedium

Q13. In UNIX file permissions, the permission mode 755 means:

  1. A.Owner has rwx, group and others have r-x access✓ Correct
  2. B.Everyone has full unrestricted access to file
  3. C.The file is hidden from all users in system
  4. D.Only the owner can access and modify the file

Explanation

In octal notation, 755 means: owner has rwx (7=4+2+1), group has r-x (5=4+0+1), and others have r-x (5=4+0+1). This is common for executable files and directories.

Report an error in this question

Protection & SecurityMedium

Q14. Access Control Lists (ACLs) are a column-based implementation of the access control matrix where:

  1. A.Each object stores subjects and their access rights✓ Correct
  2. B.A central authority stores all access control rights
  3. C.Access rights are not stored anywhere in the system
  4. D.Each subject stores its own access rights list

Explanation

An ACL is associated with each object (e.g., file) and lists all subjects (users/groups) and their access rights. It is a column-wise view of the access control matrix.

Report an error in this question

Protection & SecurityMedium

Q15. What is a protection domain?

  1. A.A set of access rights for process resources✓ Correct
  2. B.A physical area in the server room building
  3. C.A network domain managed by a DNS server
  4. D.A type of firewall zone for network security

Explanation

A protection domain specifies the resources (objects) a process can access and the operations it can perform. Processes execute within a domain that limits their access rights, following least privilege.

Report an error in this question

Protection & SecurityMedium

Q16. A buffer overflow attack exploits:

  1. A.Too much available memory in the system overall
  2. B.Overwriting memory beyond a buffer boundary✓ Correct
  3. C.Network buffer limits causing packet loss
  4. D.Disk buffer overflow causing data corruption

Explanation

Buffer overflow occurs when a program writes data beyond the boundary of allocated buffer memory. Attackers exploit this to overwrite return addresses or other control data, potentially executing malicious code.

Report an error in this question

Protection & SecurityMedium

Q17. A denial-of-service (DoS) attack:

  1. A.Modifies system files to gain higher access levels
  2. B.Steals confidential data from the system quietly
  3. C.Overwhelms a system to deny service to users✓ Correct
  4. D.Encrypts user files and demands ransom payment

Explanation

A DoS attack floods a system, server, or network with excessive requests, consuming resources and making the service unavailable to legitimate users. A DDoS (Distributed DoS) uses multiple attacking systems.

Report an error in this question

Protection & SecurityMedium

Q18. What is the difference between symmetric and asymmetric encryption?

  1. A.Asymmetric is faster than symmetric in practice
  2. B.Symmetric uses one key; asymmetric uses key pair✓ Correct
  3. C.They are the same algorithm for encryption use
  4. D.Symmetric is always more secure than asymmetric

Explanation

Symmetric encryption (AES, DES) uses one shared key. Asymmetric encryption (RSA, ECC) uses a key pair: public key for encryption, private key for decryption. Asymmetric is slower but solves key distribution.

Report an error in this question

Protection & SecurityMedium

Q19. Multifactor authentication combines:

  1. A.Using multiple different usernames
  2. B.Combining different auth factor types✓ Correct
  3. C.Allowing multiple login attempts
  4. D.Using multiple passwords for login

Explanation

Multifactor authentication requires two or more different types of credentials: something you know (password), something you have (token/phone), and/or something you are (fingerprint/face), providing stronger security.

Report an error in this question

Protection & SecurityHard

Q20. What is a rootkit?

  1. A.A set of root user access tools for admin
  2. B.A root user configuration file set used
  3. C.A system administration utility toolkit
  4. D.Malware providing hidden privileged access✓ Correct

Explanation

A rootkit is malware designed to gain administrator (root) access while actively hiding its presence from the OS and security tools. It can modify OS components, intercept system calls, and hide files/processes.

Report an error in this question

Protection & SecurityHard

Q21. What are Spectre and Meltdown vulnerabilities?

  1. A.Software bugs found in major web browser apps
  2. B.Hardware flaws exploiting speculative execution to leak data✓ Correct
  3. C.Network protocol flaws in the TCP/IP stack implementation
  4. D.File system vulnerabilities found in modern operating systems

Explanation

Spectre and Meltdown are hardware vulnerabilities in modern CPUs. They exploit speculative execution and out-of-order execution to read memory that should be inaccessible, including kernel memory and other processes' data.

Report an error in this question

Protection & SecurityMedium

Q22. What is the role of a digital certificate in security?

  1. A.To encrypt files for security
  2. B.To manage user passwords securely
  3. C.To bind public key to identity via CA✓ Correct
  4. D.To compress data for efficient storage

Explanation

A digital certificate binds a public key to an entity's identity (person, organization, server). It is issued and signed by a trusted Certificate Authority (CA), enabling verification of the public key's authenticity.

Report an error in this question

Protection & SecurityHard

Q23. What is mandatory access control (MAC) and how does it differ from discretionary access control (DAC)?

  1. A.DAC is mandatory and MAC is discretionary
  2. B.They are the same access control model used
  3. C.MAC is system-enforced; DAC is owner-controlled✓ Correct
  4. D.MAC is weaker than DAC in all situations

Explanation

In MAC (e.g., SELinux), the system enforces centrally-defined security policies that users cannot override. In DAC (e.g., UNIX permissions), the resource owner decides who can access their resources.

Report an error in this question

Protection & SecurityHard

Q24. What is the concept of security rings (protection rings) in OS architecture?

  1. A.Hierarchical privilege levels with inner having more✓ Correct
  2. B.Physical rings around the processor die chip
  3. C.A type of ring network topology for communication
  4. D.A form of data encryption using circular key bits

Explanation

Protection rings are a hierarchical mechanism where Ring 0 (innermost, kernel mode) has highest privilege, and Ring 3 (outermost, user mode) has least privilege. Hardware enforces that outer rings cannot access inner ring resources directly.

Report an error in this question

Protection & SecurityHard

Q25. What is a side-channel attack?

  1. A.Exploiting physical info like timing or cache behavior✓ Correct
  2. B.An attack through a secondary network connection
  3. C.An attack on backup systems stored at off-site
  4. D.An attack on auxiliary devices connected to system

Explanation

Side-channel attacks extract secrets by observing physical characteristics of computation: timing (how long operations take), power consumption, electromagnetic emissions, or cache access patterns (Spectre, Meltdown).

Report an error in this question

Protection & SecurityHard

Q26. What is Address Space Layout Randomization (ASLR)?

  1. A.Randomizing data area positions to prevent exploits✓ Correct
  2. B.A network addressing scheme for distributed nodes
  3. C.A disk layout optimization for faster read access
  4. D.A memory allocation algorithm used by OS kernel

Explanation

ASLR randomizes the memory locations of stack, heap, libraries, and code at each execution. This makes it difficult for attackers to predict target addresses for buffer overflow or return-to-libc attacks.

Report an error in this question

Protection & SecurityHard

Q27. What is the Bell-LaPadula security model?

  1. A.A network security protocol for data transfer
  2. B.A database security model for SQL prevention
  3. C.Confidentiality model: no read up, no write down✓ Correct
  4. D.A physical security model for server rooms

Explanation

Bell-LaPadula is a formal security model enforcing confidentiality. Its rules: 'no read up' (a subject cannot read data at a higher security level) and 'no write down' (cannot write data to a lower level), preventing information leakage downward.

Report an error in this question

Protection & SecurityHard

Q28. What is Role-Based Access Control (RBAC)?

  1. A.Access control based on user physical location
  2. B.A type of encryption for access control data
  3. C.Controlling access based on time of day only
  4. D.Permissions assigned to roles; users gain via roles✓ Correct

Explanation

RBAC assigns access rights to roles (e.g., admin, editor, viewer) rather than individual users. Users are assigned roles, and inherit the permissions associated with those roles, simplifying access management.

Report an error in this question

Protection & SecurityHard

Q29. What is the Biba integrity model and how does it differ from Bell-LaPadula?

  1. A.Biba focuses on integrity: no read down, no write up✓ Correct
  2. B.They are the exact same model under different names
  3. C.Biba is a networking model for packet integrity checks
  4. D.Biba replaces Bell-LaPadula in all modern OS systems

Explanation

Biba is the dual of Bell-LaPadula, focusing on integrity instead of confidentiality. Its rules: 'no read down' (cannot read lower-integrity data) and 'no write up' (cannot write to higher-integrity objects), preventing corruption of trusted data.

Report an error in this question

Protection & SecurityHard

Q30. What is a sandbox in operating system security?

  1. A.A debugging tool for code analysis testing
  2. B.A test database for development and staging
  3. C.Isolated environment restricting program access✓ Correct
  4. D.A type of malware infection on the system

Explanation

A sandbox is a restricted execution environment where untrusted code runs with limited permissions. If the code is malicious, the damage is contained within the sandbox and cannot affect the wider system.

Report an error in this question

Ready to test yourself on Protection & Security?

Take a timed quiz drawn from 210+ questions on this topic. No signup required — your progress saves in your browser.

Start Protection & Security Quiz