General Knowledge Cluster202 Verified Questions

Cybersecurity, Cryptography, Malware Threats & Information Technology Act 2000 GK Questions & Answers

Cybersecurity encompasses the technologies, operational protocols, and legal frameworks designed to protect computer systems, networks, programs, and data from unauthorized digital attacks, damage, or exploitation. The cyber threat landscape comprises malware variants including self-replicating viruses and worms, stealth Trojans, extortionist ransomware, and surveillance spyware, alongside network disruptions such as Distributed Denial-of-Service (DDoS) attacks and phishing vectors. Cryptographic protection relies on symmetric encryption algorithms (e.g., Advanced Encryption Standard, AES), where a single secret key encrypts and decrypts data, and asymmetric encryption (e.g., Rivest-Shamir-Adleman, RSA), utilizing a mathematically linked public-private key pair foundational to Public Key Infrastructure (PKI), SSL/TLS protocols, and digital signatures. In India, statutory governance is anchored in the Information Technology (IT) Act, 2000, as amended in 2008. The statute prescribes penalties for unauthorized system tampering under Section 43, penalizes computer-related hacking and identity theft under Section 66, and empowers lawful traffic interception under Section 69. The Indian Computer Emergency Response Team (CERT-In), established under Section 70B under MeitY, serves as the national nodal agency for incident response and cyber vulnerability mitigation.

Essential Concepts & Key Facts

High-yield conceptual summaries for competitive exams and rapid revision.

  • Malware classifications include viruses (requiring host execution), worms (self-propagating), Trojans (disguised payloads), and ransomware (cryptographic extortion).
  • Asymmetric cryptography utilizes a public key for encryption and a private key for decryption, underpinning RSA algorithms, PKI, and digital signatures.
  • The Information Technology Act, 2000 provides statutory legal backing in India, penalizing damage to computer systems (Section 43) and hacking (Section 66).
  • Section 70B of the IT Act, 2000 establishes CERT-In under MeitY as the national nodal agency for cybersecurity incident response and alerts.
  • The National Critical Information Infrastructure Protection Centre (NCIIPC), created under Section 70A, protects strategic digital assets vital to national security.
Showing 25 Curated Questions202 Total in Bank
1ID: GK-CYBR-00057
hardIT Act 2000, CERT-In & Digital Personal Data Act
Under Section 66F of the Information Technology Act, 2000, what is the maximum punishment prescribed for the offense of Cyber Terrorism against the nation's integrity and security?
Verified Explanation
Section 66F of the IT Act prescribes imprisonment which may extend to imprisonment for life for acts of cyber terrorism that threaten India's unity, integrity, security, or sovereignty.
2ID: GK-CYBR-00122
hardIT Act 2000, CERT-In & Digital Personal Data Act
Under the Finance Act, 2017 amendments to the IT Act, 2000, which appellate tribunal was designated to hear appeals against decisions made by the Cyber Adjudicating Officer, replacing the former Cyber Appellate Tribunal (CyAT)?
Verified Explanation
Through Part XIV of Chapter VI of the Finance Act, 2017, the Cyber Appellate Tribunal was merged into the Telecom Disputes Settlement and Appellate Tribunal (TDSAT), which now exercises appellate jurisdiction over orders of Cyber Adjudicating Officers.
3ID: GK-CYBR-00178
hardIT Act 2000, CERT-In & Digital Personal Data Act
Under Section 66F of the Information Technology Act, 2000, what is the statutory penalty for committing the offense of 'Cyber Terrorism' against critical national security systems?
Verified Explanation
Section 66F of the IT Act, 2000 defines cyber terrorism (acts intended to threaten unity, integrity, security or sovereignty of India or strike terror in people by denying access or penetrating critical systems) and mandates punishment of imprisonment which may extend to imprisonment for life.
4ID: GK-CYBR-00181
hardIT Act 2000, CERT-In & Digital Personal Data Act
Under the Finance Act, 2017 amendments to the IT Act, 2000, which established appellate body took over the jurisdiction, powers, and authority of the former Cyber Appellate Tribunal (CyAT)?
Verified Explanation
Under Part XIV of Chapter VI of the Finance Act, 2017, the Cyber Appellate Tribunal (CyAT) was merged with the Telecom Disputes Settlement and Appellate Tribunal (TDSAT), making TDSAT the appellate body for hearing appeals against orders of the Adjudicating Officers under the IT Act, 2000.
5ID: GK-CYBR-00231
mediumIT Act 2000, CERT-In & Digital Personal Data Act
What is the maximum criminal punishment prescribed under Section 66F of the Information Technology Act, 2000 for the offense of Cyber Terrorism against the sovereignty and security of India?
Verified Explanation
Section 66F of the IT Act, 2000 states that whoever commits or conspires to commit cyber terrorism against the sovereignty, integrity, or critical infrastructure of India shall be punishable with imprisonment for life.
6ID: GK-CYBR-00232
mediumIT Act 2000, CERT-In & Digital Personal Data Act
Which multi-stakeholder operational cyber body was established in India under the National Cyber Security Policy 2013 to generate situational awareness of existing and potential cyber threats across government and private networks?
Verified Explanation
The National Cyber Coordination Centre (NCCC), operationalized under CERT-In and MeitY, acts as a national threat intelligence and metadata scanning body to coordinate cybersecurity defense.
7ID: GK-CYBR-00241
hardIT Act 2000, CERT-In & Digital Personal Data Act
What international convention adopted by the Council of Europe in 2001 serves as the first binding multilateral treaty on cybercrimes, harmonization of cyber laws, and cross-border digital evidence collection?
Verified Explanation
The Budapest Convention on Cybercrime (2001, Council of Europe ETS No. 185) is the primary international treaty establishing common cyber offense definitions and electronic evidence cooperation frameworks.
8ID: GK-CYBR-00276
mediumMalware, Spyware, Worms & Ransomware
Which historic, highly sophisticated nation-state cyber weapon discovered in 2010 utilized multiple zero-day vulnerabilities to specifically sabotage Siemens SCADA/PLC industrial centrifuges at Iran's Natanz nuclear facility?
Verified Explanation
Stuxnet (discovered in 2010) was the first known cyber weapon designed to cause physical destruction to industrial infrastructure. It targeted Siemens Step7 software controlling Programmable Logic Controllers (PLCs) regulating uranium enrichment centrifuges at Natanz.
9ID: GK-CYBR-00288
easyIT Act 2000, CERT-In & Digital Personal Data Act
Under the provisions of the Finance Act 2017, the appellate functions of the Cyber Appellate Tribunal (CyAT) were merged into which existing statutory appellate body?
Verified Explanation
Through the Finance Act 2017, the Cyber Appellate Tribunal was merged into the Telecom Disputes Settlement and Appellate Tribunal (TDSAT), which now adjudicates appeals arising from orders of Adjudicating Officers under the IT Act.
10ID: GK-CYBR-00289
easyIT Act 2000, CERT-In & Digital Personal Data Act
Which dedicated national helpline short-code number was launched by the Ministry of Home Affairs (MHA) under the Indian Cyber Crime Coordination Centre (I4C) for citizens to report immediate financial cyber fraud?
Verified Explanation
Helpline number 1930 (Citizen Financial Cyber Fraud Reporting and Management System), operated by I4C under the Ministry of Home Affairs, allows victims of digital financial fraud to lodge complaints immediately to freeze stolen funds in transit.
11ID: GK-CYBR-00298
hardIT Act 2000, CERT-In & Digital Personal Data Act
What is the statutory punishment prescribed under Section 66F of the Information Technology Act, 2000 for committing or conspiring to commit Cyber Terrorism against critical infrastructure or national security?
Verified Explanation
Section 66F of the IT Act (inserted by 2008 Amendment) defines Cyber Terrorism (acts intended to threaten unity, integrity, security of India or strike terror by denying access/damaging critical systems). It prescribes imprisonment for life as the statutory penalty.
12ID: GK-CYBR-00346
easyIT Act 2000, CERT-In & Digital Personal Data Act
Which section of the Information Technology (Amendment) Act, 2008 prescribes life imprisonment as the maximum punishment for the offense of 'Cyber Terrorism' against India's sovereignty and critical infrastructure?
Verified Explanation
Section 66F of the IT Act, 2000 (inserted by the 2008 Amendment Act) deals with 'Cyber Terrorism' (threatening unity, integrity, security, or sovereignty of India or striking terror) and prescribes punishment extending up to imprisonment for life.
13ID: GK-CYBR-00397
hardMalware, Spyware, Worms & Ransomware
Which historic cyber weapon, uncovered in 2010, utilized four zero-day exploits to sabotage Siemens Step 7 Programmable Logic Controllers (PLCs) regulating uranium enrichment centrifuges at Natanz, Iran?
Verified Explanation
Stuxnet was the first known cyber weapon specifically engineered to target industrial SCADA/PLC systems, altering centrifuge motor frequencies while reporting normal operations.
14ID: GK-CYBR-00410
mediumIT Act 2000, CERT-In & Digital Personal Data Act
Under the CERT-In Cyber Security Directions issued in April 2022, within what mandatory timeframe must service providers and intermediaries report specified cybersecurity incidents to CERT-In?
Verified Explanation
CERT-In Cyber Security Directions (April 28, 2022) mandate that all service providers, intermediaries, data centres, and corporate entities report identified cyber incidents within 6 hours.
15ID: GK-CYBR-00412
mediumIT Act 2000, CERT-In & Digital Personal Data Act
Which section of the IT Act specifically defines and penalizes 'Cyber Terrorism' with a maximum punishment extending up to imprisonment for life?
Verified Explanation
Section 66F of the IT Act (inserted via the 2008 Amendment) prescribes punishment up to life imprisonment for cyber terrorism acts threatening national unity, integrity, security, or sovereignty.
16ID: GK-CYBR-00478
hardIT Act 2000, CERT-In & Digital Personal Data Act
Under Section 66F of the Information Technology Act, 2000, what is the maximum statutory punishment prescribed for the offense of Cyber Terrorism?
Verified Explanation
Section 66F of the IT Act, inserted by the 2008 Amendment, prescribes imprisonment for life as the maximum penalty for acts of cyber terrorism threatening national unity, integrity, or sovereignty.
17ID: GK-CYBR-00532
mediumIT Act 2000, CERT-In & Digital Personal Data Act
Which section of the Information Technology Act, 2000 defines the severe offense of 'Cyber Terrorism' and prescribes punishment extending to imprisonment for life?
Verified Explanation
Section 66F of the IT Act, 2000 penalizes Cyber Terrorism (acts intended to threaten unity, integrity, security of India or strike terror) with imprisonment which may extend to life imprisonment.
18ID: GK-CYBR-00585
easyIT Act 2000, CERT-In & Digital Personal Data Act
Which four-digit national toll-free helpline number has been designated by the Ministry of Home Affairs in India for citizen reporting of financial cyber fraud?
Verified Explanation
Helpline number 1930 (previously 155260) is the national cyber financial fraud reporting helpline connected to the Citizen Financial Cyber Fraud Reporting and Management System (CFCFRMS).
19ID: GK-CYBR-00589
easyIT Act 2000, CERT-In & Digital Personal Data Act
What is the official government web portal launched by the Ministry of Home Affairs for citizens to report all categories of cyber crimes online in India?
Verified Explanation
The National Cyber Crime Reporting Portal (cybercrime.gov.in) is the centralized online portal operational under the Ministry of Home Affairs for reporting cybercrimes against women, children, and financial scams.
20ID: GK-DEF-00048
hardInternal Security, Intelligence & Cyber Warfare
In cyber warfare and military signals intelligence, what is 'CERT-In' (Indian Computer Emergency Response Team)?
Verified Explanation
CERT-In handles vulnerability reporting, incident prevention, malware forensics, and cybersecurity threat advisories across critical Indian digital infrastructure.
21ID: GK-CYBR-00170
mediumIT Act 2000, CERT-In & Digital Personal Data Act
Under the landmark cyber directions issued by CERT-In in April 2022, what is the mandatory time frame within which all service providers, intermediaries, and body corporates in India must report cybersecurity incidents to CERT-In upon noticing them?
Verified Explanation
Under the CERT-In Directions issued on 28 April 2022 under Section 70B(6) of the IT Act, 2000, all service providers, intermediaries, data centres, and body corporates must report mandatory cybersecurity incidents to CERT-In within 6 hours of noticing them.
22ID: GK-CYBR-00193
mediumPhishing, Spoofing & Social Engineering Attacks
What type of targeted cyber attack involves compromising a legitimate third-party website known to be frequented by members of a specific target organization to infect their computers?
Verified Explanation
In a Watering Hole attack, attackers identify and infect legitimate public websites commonly visited by employees of a targeted enterprise, waiting for them to visit and download drive-by malware.
23ID: GK-CYBR-00211
mediumMalware, Spyware, Worms & Ransomware
Which historic cyber weapon discovered in 2010 used four zero-day Windows exploits and specifically targeted Siemens PLCs to sabotage uranium enrichment centrifuges at Iran's Natanz facility?
Verified Explanation
Stuxnet was a groundbreaking state-sponsored worm that targeted Siemens Step7 software controlling variable-frequency centrifuge drives at the Natanz nuclear facility.
24ID: GK-CYBR-00212
mediumMalware, Spyware, Worms & Ransomware
In modern cyber extortion operations, what is 'Triple Extortion' ransomware?
Verified Explanation
Triple Extortion expands on double extortion (encryption + data theft) by launching disruptive DDoS attacks or contacting the victim's customers directly to intensify coercive payment pressure.
25ID: GK-CYBR-00303
hardIT Act 2000, CERT-In & Digital Personal Data Act
Which specific heinous cyber offense is penalised with rigorous imprisonment of up to 5 years (and up to 7 years on repeat conviction) and fine under Section 67B of the Information Technology Act, 2000?
Verified Explanation
Section 67B was inserted into the IT Act in 2008 to penalize publishing, transmitting, creating, or facilitating child sexual abuse material (CSAM) in electronic form, prescribing strict imprisonment and fine.

Related Knowledge Topics to Discover

Indian Polity & Constitution
Indian Constitution & Fundamental Rights

Comprehensive Indian Constitution and Fundamental Rights GK questions. Study Articles 12 to 35, Right to Equality, Right to Freedom, Writ jurisdictions (Habeas Corpus, Mandamus), and landmark Supreme Court rulings.

Explore Topic
Indian Polity & Constitution
Supreme Court & Indian Judicial System

Explore Supreme Court of India GK questions and answers. Learn Articles 124 to 147, original and appellate jurisdictions, advisory powers (Article 143), writ powers (Article 32), and landmark constitutional rulings.

Explore Topic
Indian Economy
National Income Accounting: GDP, GNP, NNP & GVA

Master National Income Accounting GK questions and answers. Study Gross Domestic Product (GDP), Gross National Product (GNP), Net National Product (NNP), Gross Value Added (GVA), factor cost vs market price, and CSO/NSO methodology.

Explore Topic

Looking for more specific GK questions?

Search across all 202 Cybersecurity, Cryptography, Malware Threats & Information Technology Act 2000 questions or browse 44,700+ verified questions across 65 domains.

Open Interactive Search