AP Cybersecurity 4.1 Exercise 2: Applied Challenge

🎯 Before You Start

These are harder than Exercise 1: spot the flaw in a claim, compare defenses across device types, and reason about devices that cannot be patched. Read every option fully — the distractors are plausible.

Goal: 3 of 4. Maps to LO 4.1.B–D.

✎ Applied Challenge
Question 1 of 4 — Spot the Flaw A security lead announces: “Now that anti-malware is deployed on every endpoint, our devices are protected against all malware.” Which is the BEST critique?
Question 2 of 4 — Compare Defenses Across all four device types, which single control most directly reduces risk from the weak authentication exploitation vector?
Question 3 of 4 — Multi-Select (Select ALL) A device is rated High risk under the CED framework. Select ALL conditions that independently justify a High rating. No credit for incorrect selections.
Question 4 of 4 — Hard Scenario An embedded medical device cannot be patched without interrupting care, exposes an open management port, and shares a flat network with patient records. Patching is infeasible. What is the MOST defensible assessment and primary mitigation?
Extension Pick any one device you own. Name its CED device type, the single exploitation vector you think most applies to it, and the one defense you would add first. Write three sentences.
0 / 4 3+/4 means you are ready for the Lab.
AP Cybersecurity · Unit 4 · Lesson 4.1 · Exercise 2
LessonExercise 1Exercise 2Quiz

Get in Touch

Whether you're a student, parent, or teacher — I'd love to hear from you.

Just want free AP CS resources?

Enter your email below and check the subscribe box — no message needed. Students get daily practice questions and study tips. Teachers get curriculum resources and teaching strategies.

Typically responds within 24 hours

Message Sent!

Thanks for reaching out. I'll get back to you within 24 hours.

🏫 Welcome, fellow educator!

I offer curriculum resources, practice materials, and study guides designed for AP CS teachers. Let me know what you're looking for — whether it's classroom materials, a guest speaker, or Teachers Pay Teachers resources.

Email

[email protected]

📚

Courses

AP CSA, CSP, & Cybersecurity

Response Time

Within 24 hours

Prefer email? Reach me directly at [email protected]