Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 3 out of 19 pages
Exam (elaborations)

COMPTIA SECURITY PLUS SY0 601 NETWORK SECURITY QUIZ 2026 IT TEST PAPER QUESTIONS ANSWERS GRADED A+

Document preview thumbnail
Preview 3 out of 19 pages

COMPTIA SECURITY PLUS SY0 601 NETWORK SECURITY QUIZ 2026 IT TEST PAPER QUESTIONS ANSWERS GRADED A+

Content preview

COMPTIA SECURITY PLUS SY0 601
NETWORK SECURITY QUIZ 2026
STUDY GUIDE COMPREHENSIVE
QUESTIONS ANSWERS VERIFIED A+
◉ Which of the following social engineering attacks continues to be a
primary weapon used by threat actors?
Answer: Phishing


◉ David, a software engineer, recently bought a brand new laptop
because his enterprise follows the BYOD (bring your own device)
model. David was part of a software development project where the
software code was leaked before its release. Further investigation proved
that a vulnerability in David's laptop caused the exposure. David insists
he never used the laptop to access any network or integrate any devices,
and the laptop was kept in a vault while not in use. Which of the
following attack vectors was used by the threat actor?
Answer: c. Supply chain


◉ Which category of cybersecurity vulnerability is exploited by
attackers before anyone else knows about it?
Answer: c. Zero day


◉ The company that developed the office productivity software used on
both static and mobile devices by your organization has audited some
code and noticed a potential security issue. To address the issue, they

,have released and automatically scheduled an update to ensure that all
users receive it.


Which of the following might still be vulnerable after the patch?
Answer: c. Firmware


◉ Which of the following types of hackers are strongly motivated by
ideology?
Answer: Hacktivists


◉ Which part of the NIST Cybersecurity frameworks defines the
activities needed to attain the different cybersecurity results?
Answer: b. Framework core


◉ Which type of vulnerability scan mimics the work of a threat actor
who has already exploited a vulnerability and compromised credentials
to access the network?
Answer: b. Credentialed scan


◉ John is appointed as a vulnerability assessment engineer in a financial
organization. An audit report published by a third-party auditing firm
revealed that most of the web servers have cross-site scripting and XML
entity injection vulnerabilities. John has been told to perform a
vulnerability assessment on these servers to verify if the audit report is
valid. He is also told that he should not attempt to engage or exploit any

, vulnerabilities. By applying his knowledge of vulnerability assessment
concepts, which type of vulnerability scanning should John use?
Answer: d. Credentialed


◉ Quinton has been asked to analyze the TTPs of an attack that recently
occurred and prepare an SOP to hunt for future treats. When researching
the recent attack, Quinton discovered that after penetrating the system,
the threat actor moved through the network using elevated credentials.
Which technique was the threat actor using to move through the
network?
Answer: b. Lateral movement


◉ Meta is a penetration testing engineer assigned to pen test the security
firm's network. So far, she cannot tunnel through the network looking
for additional systems accessible through advanced privileges. What
should Meta do to gain repeated and long-term access to the system in
the future?
Answer: b. Perform backdoor installation


◉ Shaun is an external penetration testing consultant. The Chief
Information Security Officer (CISO) of the organization he is working
with indicated that none of the internal higher management executives
should receive any kind of spear-phishing emails during Shaun's testing.
Which part of the rules of engagement would cover this limitation?
Answer: b. Internal targets

Document information

Uploaded on
August 17, 2026
Number of pages
19
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$14.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
GradeGalaxy
4.4
(9)
Sold
142
Followers
4
Items
49121
Last sold
18 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions