• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 4 out of 143 pages
Exam (elaborations)

Comptia Security+ Sy0-701 Certification Exam Test Bank With Actual Correct Questions And Verified Detailed Answers| Currently Testing Version | Already Graded A+|Newest |

Document preview thumbnail
Preview 4 out of 143 pages

COMPTIA SECURITY+ SY0-701 CERTIFICATION EXAM TEST BANK WITH ACTUAL CORRECT QUESTIONS AND VERIFIED DETAILED ANSWERS| CURRENTLY TESTING VERSION | ALREADY GRADED A+|NEWEST |

Content preview

COMPTIA SECURITY+ SY0-701
CERTIFICATION EXAM TEST BANK WITH
ACTUAL CORRECT QUESTIONS AND
VERIFIED DETAILED ANSWERS| CURRENTLY
TESTING VERSION | ALREADY GRADED
A+|NEWEST |2026-2027

In a recent high-profile cybersecurity incident, attackers targeted a multinational
corporation's executive team with personalized emails, tricking them into revealing
sensitive company data and financial information. What type of attack is this scenario
describing?


Ransomware attack
Whaling attack
Spear-phishing attack
DDoS attack

Whaling attack
- Where high-ranking individuals within an organization are targeted with
personalized emails to deceive them into revealing sensitive information.

Spear-phishing Attack

Targets specific individuals or organizations typically through malicious emails.

DDoS Attack (Disrupted Denial of Service)

Occurs when multiple systems flood the bandwidth or resources of a targeted system,
usually one or more web servers.
- Aims to disrupt services by overwhelming them with traffic

A security researcher discovered that a popular social media website had been
compromised by attackers. The attackers had injected malicious code into the site,

1|Page

,which infected the devices of users who visited the compromised pages. What type of
attack is this scenario describing?


Ransomware attack
Watering hole attack
Typosquatting attack
Spear-phishing attack

Watering hole attack
- Where attackers compromise a legitimate website that their intended victims
frequently visit, infecting visitors' devices with malware.

A cybercriminal registers domain names that are similar to well-known banking
websites but contain minor typographical errors. Users who mistype the URLs may be
redirected to these fraudulent sites, leading to potential credential theft. What kind of
attack is being depicted in this scenario?


Man-in-the-middle (MitM) attack
Typosquatting attack
Phishing attack
Watering hole attack

Typosquatting attack
- Where domain names with minor typographical errors are registered to deceive
users into visiting fraudulent websites.

An attacker goes through the company's trash bins, searching for discarded documents,
invoices, and other materials that might contain sensitive information. What kind of
physical security threat does this scenario illustrate?


Dumpster diving
Social engineering attack
Shoulder surfing
Physical intrusion


2|Page

,Dumpster diving
- Where an attacker searches through trash or discarded materials to obtain
sensitive information.

A company's security team discovered that a group of hackers had been scanning the
organization's network and systems, attempting to find vulnerabilities that could be
exploited. This prelude to an attack is a classic example of which cybersecurity activity?


Intrusion detection
Dumpster diving
Reconnaissance
Encryption

Reconnaissance
- Where attackers gather information about potential targets and vulnerabilities to
prepare for an attack.

Intrusion detection

Involves identifying and responding to unauthorized access or malicious activities after
an attack has started.

Which attack aims to manipulate a website to redirect users to a fraudulent site that
appears legitimate to steal their information?


SQL injection
Cross-Site Scripting (XSS)
DNS spoofing
URL hijacking

DNS Spoofing
- Manipulates the DNS records to redirect users to a fraudulent site, typically
appearing legitimate, intending to steal their information.

SQL Injection

Involves manipulating databases.

3|Page

, Cross-Site Scripting (XSS)

Involves injecting malicious scripts into a website.

Which type of attack involves the modification or interception of communication
between two parties without their knowledge?


Man-in-the-Middle (MitM)
Buffer overflow
Spoofing
Zero-day exploit

Man-in-the-Middle (MitM)
- MitM attacks intercept and manipulate communications between two parties
without their awareness, allowing attackers to eavesdrop or modify data.

Which attack involves falsifying the origin of an email to make it appear as though it's
from a trusted source?


Smurf attack
Phishing
Spoofing
Zero-day exploit

Spoofing
- Spoofing involves altering information to appear as if it comes from a legitimate
source, commonly seen in email addresses to deceive recipients.

What is the primary aim of a SQL injection attack?


Disrupting network connections
Altering DNS records
Gaining unauthorized access to a database
Executing ransomware




4|Page

Document information

Uploaded on
September 16, 2026
Number of pages
143
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$15.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Drmserpi
4.6
(217)
Sold
97
Followers
32
Items
2329
Last sold
13 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions