Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 3 out of 20 pages
Exam (elaborations)

COMPTIA SECURITY+ (SY0-601) COMPLETE EXAM PAPER- REVISION QUESTIONS & SOLUTIONS

Document preview thumbnail
Preview 3 out of 20 pages

COMPTIA SECURITY+ (SY0-601) COMPLETE EXAM PAPER- REVISION QUESTIONS & SOLUTIONS

Content preview

COMPTIA SECURITY+ (SY0-601) COMPLETE 2026-2027 EXAM PAPER-
REVISION QUESTIONS & SOLUTIONS
Whaling

A method used by cybercriminals to masquerade as a senior player at an organization and
directly target senior individuals, with the aim of stealing or gaining access to their computer
systems for criminal purposes.

Prepending

A technique used to deprioritize a route in a netork.

Identity fraud

A crime in which an imposter obtains key pieces of personally identifiable information (PII) to
impersonate someone else.

Invoice scams

A fraudulent way of receiving money or by prompting a victim to put their credentials into a
fake login screen.

Credential harvesting

The process of gathering valid usernames, passwords, private emails, and email addresses
through infrastructure breaches.

Reconnaissance

A term for testing for potential vulnerabilities in a computer network.

Hoax

A message warning the recipients of a non-existent computer virus threat.

Impersonation

A form of fraud in which attackers pose as a known or trusted person to dupe an employee into
transferring money to a fraudulent account, sharing sensitive information or revealing login
credentials.

Watering hole attack

A targeted attack designed to compromise users within a specific industry by infecting websites
they typically visit and luring them to a malicious site.

,Typosquatting

A form of cybersquatting which relies on mistakes such as typos made by Internet users when
inputting a website address into a web browser.

Phishing

A type of social engineering attack often used to steal user data, including login credentials and
credit card numbers.

Smishing

The act of committing text message fraud to try to lure victims into revealing account
information or installing malware.

Vishing

An electronic fraud tactic in which individuals are tricked into revealing critical financial or
personal information to unauthorized entities.

Spam

An unsolicited bulk messages sent to multiple recipients who did not ask for them.

Spam over instant messaging (SPIM)

Refers to unsolicited instant messages.

Spear phishing

An email or electronic communications scam targeted towards a specific individual, organization
or business.

Dumpster diving

A technique used to retrieve information that could be used to carry out an attack on a
computer network.

Shoulder surfing

A direct observation techniques, such as looking over someone's shoulder, to get information.

Pharming

A form of online fraud involving malicious code and fraudulent websites.

Tailgating

, A physical security breach in which an unauthorized person follows an authorized individual to
enter a secured premise.

Eliciting information

A reporting format designed to elicit as much information as possible about individuals involved
in a group or network.



Pretexting

A form of social engineering in which an individual lies to obtain privileged data.

Social media

A computer-based technology that allows the sharing of ideas, thoughts, and information
through the building of virtual networks.

Authority

The power to enforce rules or give orders.

Consensus

Allows anyone in the network to join dynamically and participate without prior permission.

Ransomware

A malicious software that infects your computer and displays messages demanding a fee to be
paid in order for your system to work again.

Trojans

A type of malware that is often disguised as legitimate software.

Worms Potentially unwanted programs (PUPs)

A program that may be unwanted, despite the possibility that users consented to download it

Fileless virus

A type of malicious software that uses legitimate programs to infect a computer.

Command and Control

A computer controlled by a cybercriminal to send commands to systems compromised by
malware and receive stolen data from a target network.

Document information

Uploaded on
August 26, 2026
Number of pages
20
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$14.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
STUVIAEXCEL
4.0
(1)
Sold
4
Followers
3
Items
978
Last sold
1 year ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions