CompTIA Cybersecurity Analyst (CySA+) Questions & Answers Solved 100%
FTP port(s) - Answer TCP 20, 21 Telnet port(s) - Answer TCP 23 TFTP port(s) - Answer UDP 69 POP3 port(s) - Answer TCP 110 IMAP port(s) - Answer TCP 143 LDAP port(s) - Answer TCP and UDP 389 SQL server port(s) - Answer TCP 1433 Oracle database port(s) - Answer TCP 1521 H.323 call signaling port(s) - Answer TCP 1720 PPTP port(s) - Answer TCP 1723 Most common Network Access Control (NAC) standard - Answer 802.1x Defense Deception - Answer Attempts to lure attackers to specific targets such as honeypots and DNS sinkholing. Dynamic analysis - Answer Sandboxed, automated analysis of behaviour on virtual system and network. What it does. Static analysis - Answer Analysis of the source or decompiled code. How it does it. Most common method of reverse engineering for hardware - Answer Dynamic analysis. Port range of well-known ports - Answer 0-1024 Port range of registered ports - Answer Cisco event logging levels - Answer Level, Name, Example 0, Emergencies, Failure causing shutdown 1, Alerts, Temperature exceeded 2, Critical, Software failure 3, Errors, Interface down 4, Warning, Configuration change 5, Notifications, Line protocol up/down 6, Information, ACL violation 7, Debugging, Debugging messages Linux logs path - Answer /var/log/ Command to initiate DNS zone transfer - Answer dig axfr @dns-server Social engineering tools - Answer • Social Engineering Toolkit (SET) • Creepy • Metasploit • theHarvester Ways to mitigate passive recon - Answer • Control the information you release. • Blacklist systems. • Use CAPTCHAs. • Set rate limits. • Avoid publishing zone files. • Educate users. • Use vulnerability scanning. • Use IDPS and SIEM.
Información del documento
- Subido en
- 13 de septiembre de 2023
- Número de páginas
- 10
- Escrito en
- 2023/2024
- Tipo
- Examen
- Contiene
- Preguntas y respuestas