PrepGo

AP Computer Science Principles Flashcards: Safe Computing

Written by AP Content Team, Verified for 2026 AP Exams, Last updated: May 2026

Review key ideas with interactive flashcards. This set includes 36 cards to help you master important concepts.

What is a potential benefit of sharing PII and other information online?
PII and other information placed online can be used to enhance and personalize a user’s online experiences.
Card 1 of 36

All Flashcards (36)

What is a potential benefit of sharing PII and other information online?
PII and other information placed online can be used to enhance and personalize a user’s online experiences.
What is malware?
Malware is any software intended to damage a computing system or to take partial control over its operation without the owner's consent.
What are encryption and decryption?
Encryption is the process of encoding data to prevent unauthorized access, while decryption is the reverse process of decoding it back into a readable format.
Why are regular software updates important for security?
Regular software updates often include patches for security vulnerabilities that could otherwise be exploited by attackers to compromise a computing system.
How can a user protect a computing system from malicious programs?
Using computer virus and malware scanning software can help detect and remove malicious programs, protecting a computing system against infection.
What defines a 'strong password'?
A strong password is one that is easy for the user to remember but difficult for someone else to guess, even with personal knowledge of that user.
What is a major risk of placing information online?
Information placed online can be used in ways that were not originally intended, which may have a harmful impact on an individual.
How can different types of personal data be combined to create a profile of an individual?
Disparate personal data, such as geolocation, cookies, and browsing history, can be aggregated to create detailed knowledge and profiles about an individual.
What is a rogue access point?
A rogue access point is a wireless access point that gives unauthorized access to secure networks, often by mimicking a legitimate Wi-Fi network to trick users into connecting.
What is a computer virus?
A computer virus is a malicious program that can copy itself and gain unauthorized access to a computer, often by attaching itself to legitimate programs.
What are the three categories of evidence used in multifactor authentication (MFA)?
MFA requires evidence from at least two of three categories: knowledge (something you know), possession (something you have), and inherence (something you are).
How do search engines track user activity?
Search engines can record and maintain a detailed history of all searches made by a user.
What is the purpose of authentication measures?
Authentication measures, such as strong passwords and multifactor authentication, protect devices and information from unauthorized access by verifying a user's identity.
What is the risk associated with commercial and governmental curation of information?
This curated information can be exploited for unintended or malicious purposes if privacy and other protections are ignored.
What are two common ways search engines use a user's search history?
Search engines use search history to suggest relevant websites and to enable targeted marketing and advertising.
How does multifactor authentication enhance security?
Multifactor authentication adds layers of security by requiring at least two distinct steps or factors to unlock protected information, making unauthorized access more difficult.
How can information posted on social media lead to a privacy breach?
Information posted to social media can be combined with other public data sources to deduce private information about you that you did not intend to share.
How does stored PII benefit online commerce?
PII stored online, such as shipping addresses and payment details, can be used to simplify and speed up the process of making online purchases.
What is the role of a Certificate Authority (CA)?
Certificate authorities issue digital certificates that validate the ownership of encryption keys used in secure communications, operating on a 'trust model'.
What is keylogging?
Keylogging is the use of a program to secretly record every keystroke made by a computer user in order to gain fraudulent access to confidential information.
What are common methods used to gain unauthorized access to computing resources?
Unauthorized access is often gained through techniques like phishing, keylogging, exploiting software vulnerabilities, and using rogue access points to intercept data.
What type of personal data can devices, websites, and networks collect about a user's physical presence?
These technologies can collect information about a user’s current and past physical locations.
What is a common risk of using freeware or shareware sites?
Untrustworthy (often free) downloads from freeware or shareware sites can contain hidden malware that compromises the security of your computing system.
How are malicious links often presented to users?
A malicious link can be disguised on a web page or in an email message to appear as a legitimate or harmless link, tricking the user into clicking it.
What specific location data can programs collect?
Programs can collect your location and record where you have been, the route you took to get there, and how long you stayed at a given location.
What should users do regarding program permissions to protect their privacy?
Users can control and should regularly review the permissions that programs have for collecting their personal information to ensure no unnecessary data is being shared.
Why is it crucial to be cautious about what information is placed online?
Once information is placed online, it is extremely difficult, and often impossible, to permanently delete.
In what two contrasting ways can computing resources be handled?
Computing resources can be protected through security measures like authentication and encryption, but they can also be misused to gain unauthorized access or exploit data.
What is phishing?
Phishing is a technique that attempts to trick a user into providing personal information, such as passwords or financial details, often through deceptive emails or websites.
What is a major risk of sending data over public networks?
Data sent over public networks can be intercepted, analyzed, and modified by unauthorized parties, sometimes through a malicious tool like a rogue access point.
What are some criminal ways PII can be used against a person?
PII can be used to stalk or steal the identity of a person, or to aid in the planning of other criminal acts.
What is the broad role of technology regarding personal information?
Technology enables the widespread collection, use, and exploitation of information about, by, and for individuals, groups, and institutions.
What is Personally Identifiable Information (PII)?
PII is information about an individual that identifies, links, relates, or describes them, such as a Social Security number, age, phone number, or biometric data.
What information do websites often track about their visitors?
Websites can record and maintain a history of the individuals who have viewed their pages, often using cookies and other tracking technologies.
What are the security risks associated with unsolicited emails?
Unsolicited emails, attachments, links, and forms can be used to compromise the security of a computing system by delivering malware or phishing for information.
What is a primary risk to privacy from collecting and storing personal data on a computer system?
The collection and storage of personal data creates a risk that the information can be used in unintended ways or exploited for harmful purposes if privacy protections are ignored.