100% de satisfacción garantizada Inmediatamente disponible después del pago Tanto en línea como en PDF No estas atado a nada 4,6 TrustPilot
logo-home
Examen

CompTIA Security+ (SY0-601) | Full Practice Question Set with Answers | Malware, Attacks, Cloud, and PKI

Puntuación
-
Vendido
-
Páginas
17
Grado
A+
Subido en
03-06-2025
Escrito en
2024/2025

This document contains a complete set of practice questions and answers for the CompTIA Security+ SY0-601 exam, covering key domains such as malware types, social engineering, secure coding, network vulnerabilities, cryptography, PKI, cloud security, and forensics. The format includes scenario-based questions that simulate real-world cybersecurity challenges with clear explanations. Designed for exam readiness and knowledge reinforcement, it is suitable for self-paced study and last-minute revision.

Mostrar más Leer menos
Institución
CompTIA Security+ Acronym Reference List
Grado
CompTIA Security+ Acronym Reference List

Vista previa del contenido

CompTIA Security+ SY0-601 Practice
Questions.
The user installed Trojan horse malware. -
A user used an administrator account to download and install a software application.
After the user launched the .exe extension installer file, the user experienced frequent crashes, slow
computer performance, and strange services running when turning on the computer. What most
likely happened to cause these issues?

A worm -
A security operations center (SOC) analyst investigates the propagation of a memory-
resident virus across the network and notices a rapid consumption of network bandwidth, causing a
Denial of Service (DoS). What type of virus is this?

PUP (potentially unwanted program) -
A user purchased a laptop from a local computer shop. After powering on the laptop
for the first time, the user noticed a few programs like Norton Antivirus asking for permission to
install. How would an IT security specialist classify these programs?

-Uses lightweight shellcode
-Uses low observable characteristic attacks -
A fileless malicious software can replicate between processes in memory on a local
host or over network shares. What other behaviors and techniques would classify malware as
fileless rather than a normal virus? (Select all that apply.)

-Computer Bots,
-Command & Control -
An attacker is planning to set up a backdoor that will infect a set of specific computers
at an organization, to inflict a set of other intrusion attacks remotely. Which of the following will
support the attackers' plan? (Select all that apply.)

-Launch a Distributed Denial of Service (DDoS) attack
-Establish a connection with a Command and Control server
-Launch a mass-mail spam attack -
If a user's computer becomes infected with a botnet, which of the following can this
compromise allow the attacker to do? (Select all that apply.)

Have up-to-date backups. -
If a user's device becomes infected with crypto-malware, which of the following is the
best way to mitigate this compromise?

A logic bomb -
A security specialist discovers a malicious script on a computer. The script is set to
execute if the administrator's account becomes disabled. What type of malware did the specialist
discover?


1

,Spyware infected the computers. -
End-users at an organization contact the cybersecurity department. After downloading
a file, they are being redirected to shopping websites they did not intend to navigate to, and built-in
webcams turn on. The security team confirms the issue as malicious, and notes modified DNS
(Domain Name System) queries that go to nefarious websites hosting malware. What most likely
happened to the users' computers?

A Remote Access Trojan (RAT) -
An attacker installs Trojan malware that can execute remote backdoor commands,
such as the ability to upload files and install software to a victim PC. What type of Trojan malware
is this?

Password spraying attack -
A hacker is trying to gain remote access to a company computer by trying brute force
password attacks using a few common passwords in conjunction with multiple usernames. What
specific type of password attack is the hacker most likely performing?

-A rainbow table
-A dictionary word -
An attacker can exploit a weakness in a password protocol to calculate the hash of a
password. Which of the following can the attacker match the hash to, as a means to obtain the
password? (Select all that apply.)

A rainbow table attack -
Which of the following attacks do security professionals expose themselves to, if they
do not salt passwords with a random value?

Clone it. -
How can an attacker make unauthorized use of acquired user and account details from
a user's smart card?

Skimming -
What type of attack is occurring when a counterfeit card reader is in use?

Cross-site scripting (XSS) -
An attacker discovered an input validation vulnerability on a website, crafted a URL
with additional HTML code, and emailed the link to a victim. The victim unknowingly defaced
(vandalized) the web site after clicking on the malicious URL. No other malicious operations
occurred outside of the web application's root directory. This scenario is describing which type of
attack?

DLL injection -
An attacker escalated privileges to a local administrator and used code refactoring to
evade antivirus detection. The attacker then allowed one process to attach to another and forced the
operating system to load a malicious binary package. What did the attacker successfully perform?

LDAP injection -




2

, Using an open connection to a small company's network, an attacker submitted
arbitrary queries on port 389 to the domain controllers. The attacker initiated the query from a client
computer. What type of injection attack did the attacker perform?

A malicious process can alter the execution environment to create a null pointer, and crash the
program. -
How can the lack of logic statement tests on memory location variables be detrimental
to software in development?

A buffer overflow -
An attacker gained remote access to a user's computer by exploiting a vulnerability in
a piece of software on the device. The attacker sent data that was able to manipulate the memory
size that the application reserved to store expected data. Which vulnerability exploit resulted from
the attacker's actions?

Race condition -
Developers found a "time of check to time of use" (TOCTTOU) vulnerability in their
application. The vulnerability made it possible to change temporary data created within the app
before the app uses the data later. This vulnerability is taking advantage of what process in the
application?

Revealing database server configuration -
A web application's code prevents the output of any type of information when an error
occurs during a request. The development team cited security reasons as to why they developed the
application in this way. What sort of security issues did the team have concerns about in this case?

Replay attack -
An intruder monitors an admin's unsecure connection to a server and finds some
required data, like a cookie file, that legitimately establishes a session with a web server. Knowing
the admin's logon credentials, what type of attack can the intruder perform with the cookie file?

Server-side request forgery -
An attacker submitted a modified uniform resource locator (URL) link to a website
that eventually established connections to back-end databases and exposed internal service
configurations. The attacker did not hijack a user to perform this attack. This describes which of the
following types of attacks?

Cross-site Request Forgery (XSRF) -
An attacker modified the HTML code of a legitimate password-change web form, then
hosted the .html file on the attacker's web server. The attacker then emailed a URL link of the
hosted file to a real user of the web page. Once the user clicked the link, it changed the user's
password to a value the attacker set. Based on this information, what type of attack is the website
vulnerable to?

-Key discovery
-Improper error handling -
The latest web application, using default settings, is currently accepting application
programming interface (API) calls over HyperText Transfer Protocol (HTTP). The environment has


3

Escuela, estudio y materia

Institución
CompTIA Security+ Acronym Reference List
Grado
CompTIA Security+ Acronym Reference List

Información del documento

Subido en
3 de junio de 2025
Número de páginas
17
Escrito en
2024/2025
Tipo
Examen
Contiene
Preguntas y respuestas

Temas

$11.49
Accede al documento completo:

100% de satisfacción garantizada
Inmediatamente disponible después del pago
Tanto en línea como en PDF
No estas atado a nada


Documento también disponible en un lote

Conoce al vendedor

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
NurseMiriam University of Pennsylvania
Seguir Necesitas iniciar sesión para seguir a otros usuarios o asignaturas
Vendido
14
Miembro desde
1 año
Número de seguidores
0
Documentos
1138
Última venta
2 meses hace
NurseAnn-M

Certified tutor, offering accurate, reliable, and current study materials to support students in their exam preparation and assignments. Aiming to provide the best resources, such as summaries, nursing exam test. Up-to-date exams and assignments, Detailed test banks with verified questions and answers, Elaborate exam solutions, Case studies and discussions Customized package deals tailored to your needs. I’m committed to providing only high-quality documents to ensure the best outcomes. Get instant access to expertly prepared materials designed to help you excel in your academic journey. Reach out today and take a step closer to achieving your goals! Always be Encouraged to leave a review after sale, all complements and comments, positive & Negative are appreciated to guide for better changes.

Lee mas Leer menos
4.5

2 reseñas

5
1
4
1
3
0
2
0
1
0

Recientemente visto por ti

Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes