Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Free Practice Questions for the WGU Courses and Certificates Network-and-Security-Foundation Exam (2026 Updated)

At Marks4sure, we are dedicated to providing IT professionals with the most accurate and reliable preparation materials for the WGU Network-and-Security-Foundation exam. To support your certification journey, we have made a selection of our premium 2026 Courses and Certificates practice questions and answers available completely free. You can take this practice test as many times as you need. Every question includes a detailed, expertly verified explanation to ensure you fully grasp the core security concepts before test day.

Questions 4

An organization is the victim of an attack in which an attacker intercepts messages between two parties before transferring them to the correct destination.

What is the type of cyberattack described in this scenario?

Options:

A.

Credential stuffing

B.

Social engineering

C.

Pharming

D.

Man-in-the-middle attack

Buy Now
Questions 5

A start-up company wants to build its computer network by starting with the base-level resources offered by a cloud service. In this way, the company won't have to buy physical hardware but can still have complete control over operating systems and other software.

Which cloud service model should be used?

Options:

A.

Software as a Service (SaaS)

B.

Function as a Service (FaaS)

C.

Infrastructure as a Service (IaaS)

D.

Platform as a Service (PaaS)

Buy Now
Questions 6

A company is specifically worried about rogue access points.

Which strategy should be used as a mitigation against this type of attack?

Options:

A.

Decrease the wireless range

B.

Disable unnecessary services

C.

Configure switch port tracing

D.

Monitor normal traffic patterns

Buy Now
Questions 7

An organization is evaluating its internal network. Currently, each device is connected to two adjacent devices, one on either side.

Which type of network topology is being used?

Options:

A.

Point-to-point

B.

Bus

C.

Star

D.

Ring

Buy Now
Questions 8

An attacker changes a computer's identification to appear as an authorized computer in a target network.

Which type of cyberattack is described?

Options:

A.

Pharming

B.

Man-in-the-middle attack

C.

Session hijacking

D.

IP address spoofing

Buy Now
Questions 9

A company’s internal messaging system is being redesigned. The authentication procedures were so cumbersome that employees were using personal email to communicate.

What is the security principle implemented in this scenario?

Options:

A.

Zero-trust model

B.

Least common mechanism

C.

Psychological acceptability

D.

Fail-safe

Buy Now
Questions 10

An attacker uses a network device to take over an existing connection between two network computers.

Which malicious attack strategy is represented in the scenario?

Options:

A.

Dictionary attack

B.

Social engineering

C.

Session hijacking

D.

IP address spoofing

Buy Now
Questions 11

An organization has experienced injection attacks in the past and wants to take actions to mitigate this type of attack.

What should this organization do?

Options:

A.

Detect code vulnerabilities

B.

Decrease the wireless range

C.

Use server-side validation

D.

Use Wi-Fi Protected Access 2 (WPA2)

Buy Now
Questions 12

Which layer of the TCP/IP model includes the Internet Protocol (IP)?

Options:

A.

Physical or network access

B.

Application

C.

Network or internet

D.

Transport

Buy Now
Questions 13

In the process of setting up a Linux-based network system, a technician needs to determine if there is connectivity to a hostname.

Which command should be used?

Options:

A.

ping

B.

nslookup

C.

ifconfig

D.

dig

Buy Now
Questions 14

An attacker uses malicious software to disable network resources, demanding a ransom to restore access.

Which category describes the purpose of the attack?

Options:

A.

Data modification

B.

Denial of availability

C.

Data export

D.

Launch point

Buy Now
Questions 15

In order to reduce the risk of insider attacks, a company assigns role-based permissions to its users.

Which network security concept does this scenario address?

Options:

A.

Authentication

B.

Accounting

C.

Availability

D.

Authorization

Buy Now
Questions 16

A company wants to use a cloud service to obtain virtual machines with pre-installed and configured software.

Which cloud service model should be used?

Options:

A.

Software as a Service (SaaS)

B.

Infrastructure as a Service (IaaS)

C.

Platform as a Service (PaaS)

D.

Function as a Service (FaaS)

Buy Now
Questions 17

A company is developing a data protection methodology in order to improve data protection measures.

What is a strategy that should be used?

Options:

A.

Use a variable network topology

B.

Increase wireless access point range

C.

Enhance physical resource security

D.

Implement wired equivalent privacy (WEP)

Buy Now
Questions 18

An attacker sends emails claiming that an online account has been locked. The email provides a fake link with the goal of tricking users into providing login credentials.

Which malicious attack strategy is represented in the scenario?

Options:

A.

Phishing

B.

IP address spoofing

C.

Session hijacking

D.

Man-in-the-middle attack

Buy Now
Exam Name: Network-and-Security-Foundation
Last Update: Sep 6, 2026
Questions: 62

PDF + Testing Engine

$64.99   $185.69

Testing Engine

$49.99   $142.83

PDF (Q&A)

$54.99   $157.11