Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 3 fuera de 19 páginas
Examen

COMPTIA SECURITY PLUS SY0 601 NETWORK SECURITY QUIZ 2026 IT TEST PAPER QUESTIONS ANSWERS GRADED A+

Document preview thumbnail
Vista previa 3 fuera de 19 páginas

COMPTIA SECURITY PLUS SY0 601 NETWORK SECURITY QUIZ 2026 IT TEST PAPER QUESTIONS ANSWERS GRADED A+

Vista previa del contenido

COMPTIA SECURITY PLUS SY0 601
NETWORK SECURITY QUIZ 2026
STUDY GUIDE COMPREHENSIVE
QUESTIONS ANSWERS VERIFIED A+
◉ Which of the following social engineering attacks continues to be a
primary weapon used by threat actors?
Answer: Phishing


◉ David, a software engineer, recently bought a brand new laptop
because his enterprise follows the BYOD (bring your own device)
model. David was part of a software development project where the
software code was leaked before its release. Further investigation proved
that a vulnerability in David's laptop caused the exposure. David insists
he never used the laptop to access any network or integrate any devices,
and the laptop was kept in a vault while not in use. Which of the
following attack vectors was used by the threat actor?
Answer: c. Supply chain


◉ Which category of cybersecurity vulnerability is exploited by
attackers before anyone else knows about it?
Answer: c. Zero day


◉ The company that developed the office productivity software used on
both static and mobile devices by your organization has audited some
code and noticed a potential security issue. To address the issue, they

,have released and automatically scheduled an update to ensure that all
users receive it.


Which of the following might still be vulnerable after the patch?
Answer: c. Firmware


◉ Which of the following types of hackers are strongly motivated by
ideology?
Answer: Hacktivists


◉ Which part of the NIST Cybersecurity frameworks defines the
activities needed to attain the different cybersecurity results?
Answer: b. Framework core


◉ Which type of vulnerability scan mimics the work of a threat actor
who has already exploited a vulnerability and compromised credentials
to access the network?
Answer: b. Credentialed scan


◉ John is appointed as a vulnerability assessment engineer in a financial
organization. An audit report published by a third-party auditing firm
revealed that most of the web servers have cross-site scripting and XML
entity injection vulnerabilities. John has been told to perform a
vulnerability assessment on these servers to verify if the audit report is
valid. He is also told that he should not attempt to engage or exploit any

, vulnerabilities. By applying his knowledge of vulnerability assessment
concepts, which type of vulnerability scanning should John use?
Answer: d. Credentialed


◉ Quinton has been asked to analyze the TTPs of an attack that recently
occurred and prepare an SOP to hunt for future treats. When researching
the recent attack, Quinton discovered that after penetrating the system,
the threat actor moved through the network using elevated credentials.
Which technique was the threat actor using to move through the
network?
Answer: b. Lateral movement


◉ Meta is a penetration testing engineer assigned to pen test the security
firm's network. So far, she cannot tunnel through the network looking
for additional systems accessible through advanced privileges. What
should Meta do to gain repeated and long-term access to the system in
the future?
Answer: b. Perform backdoor installation


◉ Shaun is an external penetration testing consultant. The Chief
Information Security Officer (CISO) of the organization he is working
with indicated that none of the internal higher management executives
should receive any kind of spear-phishing emails during Shaun's testing.
Which part of the rules of engagement would cover this limitation?
Answer: b. Internal targets

Información del documento

Subido en
17 de agosto de 2026
Número de páginas
19
Escrito en
2026/2027
Tipo
Examen
Contiene
Preguntas y respuestas
$14.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
GradeGalaxy
4.4
(9)
Vendido
142
Seguidores
4
Artículos
49121
Última venta
17 horas hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes