Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 2 fuera de 5 páginas
Examen

Final Exam: SEC110 VERIFIED 100% SOLUTIONS

Document preview thumbnail
Vista previa 2 fuera de 5 páginas

Final Exam: SEC110 VERIFIED 100% SOLUTIONS Threat actors focused on financial gain often attack which of the following main target categories? a.Individual users b.REST services c.Product lists d.Social media assets - ANSWER a.Individual users What is a variation of a common social engineering attack targeting a specific user? a.Spam b.Watering holes c.Redirection d.Spear phishing - ANSWER d.Spear phishing Which of the following computing platforms is highly vulnerable to attacks? a.On-premises b.Hybrid c.Legacy d.Cloud - ANSWER c.Legacy Which of the following is a social engineering method that attempts to influence the subject before the event occurs? a.Watering hole b.Spear phishing c.Redirection d.Prepending - ANSWER d.Prepending Which of the following is the most common method for delivering malware? a.Email b.Identity theft c.Removable media d.Social media - ANSWER a.Email Which threat actors violate computer security for personal gain? a.Red hat hackers b.Gray hat hackers c.White hat hackers d.Black hat hackers - ANSWER d.Black hat hackers Which of the following is a primary difference between a red team and a white team? a.The red team uses an automated vulnerability scanning tool to find vulnerabilities, whereas the white team decides which tool to use in automated vulnerability scanning. b.The red team provides real-time feedback to enhance the threat detection capability, whereas the white team defines the rules of penetration testing. c.The red team uses an automated vulnerability scanning tool to find vulnerabilities, whereas the white team defines the rules of penetration testing. d.The red team scans for vulnerabilities and exploits them manually, whereas the white team defines the rules of the penetration testing. - ANSWER d.The red team scans for vulnerabilities and exploits them manually, whereas the white team defines the rules of the penetration testing. Which of the following is the advantage of penetration testing over vulnerability scanning? a.Penetration testing performs automated scans to discover vulnerabilities and prevent penetration, while vulnerability scanning requires manually scanning for vulnerabilities. b.Penetration testing scans a network for open FTP ports to prevent penetration, while vulnerability scanning only discovers versions of the running services. c.Penetration testing performs SYN DOS attacks towards a server in a network, while vulnerability scanning only discovers versions of the running services. d.Penetration testing uncovers and exploits deep vulnerabilities, while vulnerability scanning only discovers surface vulnerabilities. - ANSWER d.Penetration testing uncovers and exploits deep vulnerabilities, while vulnerability scanning only discovers surface vulnerabilities. Which of the following tools can be used to scan 16 IP addresses for vulnerabilities? a.Nessus Essentials b.QualysGuard c.App Scan d.Nessus - ANSWER a.Nessus Essentials What type of attack occurs when the threat actor snoops and intercepts the digital data transmitted by the computer and resends that data, impersonating the user? a.Replay b.Buffer overflow c.Trojan d.Device driver manipulation - ANSWER a.Replay Which of the following is a form of malware attack that uses specialized communication protocols? a.Keylogger b.Bot c.Spyware d.RAT - ANSWER d.RAT Which of the following is a subset of artificial intelligence? a.Artificial intelligence algorithm b.Machine intelligence c.Data science d.Machine learning - ANSWER d.Machine learning What is meant by "infrastructure as code" in SecDevOps? a.SecDevOps method of managing code as infrastructure b.SecDevOps method of managing software and hardware using principles of developing code c.SecDevOps method of managing the infrastructure as a service d.SecDevOps method of managing the infrastructure as a software - ANSWER b.SecDevOps method of managing


Información del documento

Subido en
7 de marzo de 2024
Número de páginas
5
Escrito en
2023/2024
Tipo
Examen
Contiene
Preguntas y respuestas
$11.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
brilliantstudies
3.9
(13)
Vendido
98
Seguidores
46
Artículos
2484
Última venta
3 semanas hace


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes

Ups! No podemos cargar tu documento ahora. Inténtalo de nuevo o contacta con soporte.