SY0-601 Pre-Exam Practice Tests (Updated 412 Questions) [Q213-Q231] | DumpsMaterials

SY0-601 Pre-Exam Practice Tests (Updated 412 Questions) [Q213-Q231]

Share

SY0-601 Pre-Exam Practice Tests | (Updated 412 Questions)

Valid SY0-601 Exam Q&A PDF - One Year Free Update

NEW QUESTION 213
A security engineer is setting up passwordless authentication for the first time.
INSTRUCTIONS
Use the minimum set of commands to set this up and verify that it works. Commands cannot be reused.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:

Explanation:

 

NEW QUESTION 214
A security analyst sees the following log output while reviewing web logs:

Which of the following mitigation strategies would be BEST to prevent this attack from being successful?

  • A. Stored procedures
  • B. Input validation
  • C. Code signing
  • D. Secure cookies

Answer: B

 

NEW QUESTION 215
An organization has decided to host its web application and database in the cloud Which of the following BEST describes the security concerns for this decision?

  • A. Vendor support will cease when the hosting platforms reach EOL.
  • B. Access to the organization's servers could be exposed to other cloud-provider clients
  • C. Outsourcing the code development adds risk to the cloud provider
  • D. The cloud vendor is a new attack vector within the supply chain

Answer: D

 

NEW QUESTION 216
A security engineer is setting up passwordless authentication for the first time.
INSTRUCTIONS
Use the minimum set of commands to set this up and verify that it works. Commands cannot be reused.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:

Explanation:

 

NEW QUESTION 217
Which of the following would be BEST to establish between organizations to define the responsibilities of each party outline the key deliverables and include monetary penalties for breaches to manage third-party risk?

  • A. An ARO
  • B. A BPA
  • C. An SLA
  • D. An MOU

Answer: C

 

NEW QUESTION 218
A security analyst is reviewing a new website that will soon be made publicly available. The analyst sees the following in the URL:
http://dev-site.comptia.org/home/show.php?sessionID=77276554
The analyst then sends an internal user a link to the new website for testing purposes, and when the user clicks the link, the analyst is able to browse the website with the following URL:
http://dev-site.comptia.org/home/show.php?sessionID=98988475
Which of the following application attacks is being tested?

  • A. Object deference
  • B. Cross-site request forgery
  • C. Session replay
  • D. Pass-the-hash

Answer: B

 

NEW QUESTION 219
An organization has hired a security analyst to perform a penetration test. The analyst captures 1Gb worth of inbound network traffic to the server and transfers the pcap back to the machine for analysis. Which of the following tools should the analyst use to further review the pcap?

  • A. cURL
  • B. Wireshark
  • C. Nmap
  • D. Netcat

Answer: B

Explanation:
Explanation/Reference:

 

NEW QUESTION 220
The security administrator has installed a new firewall which implements an implicit DENY policy by default.
INSTRUCTIONS:
Click on the firewall and configure it to allow ONLY the following communication.
1. The Accounting workstation can ONLY access the web server on the public network over the default HTTPS port. The accounting workstation should not access other networks.
2. The HR workstation should be restricted to communicate with the Financial server ONLY, over the default SCP port
3. The Admin workstation should ONLY be able to access the servers on the secure network over the default TFTP port.
Instructions: The firewall will process the rules in a top-down manner in order as a first match The port number must be typed in and only one port number can be entered per rule Type ANY for all ports. The original firewall configuration can be reset at any time by pressing the reset button. Once you have met the simulation requirements, click save and then Done to submit.

Hot Area:

Answer:

Explanation:

Explanation
Graphical user interface Description automatically generated with medium confidence

Graphical user interface Description automatically generated

Section: Network Security
Implicit deny is the default security stance that says if you aren't specifically granted access or privileges for a resource, you're denied access by default.Rule #1 allows the Accounting workstation to ONLY access the web server on the public network over the default HTTPS port, which is TCP port 443.Rule #2 allows the HR workstation to ONLY communicate with the Financial server over the default SCP port, which is TCP Port
22Rule #3 & Rule #4 allow the Admin workstation to ONLY access the Financial and Purchasing servers located on the secure network over the default TFTP port, which is Port 69.
References:Stewart,
James Michael, CompTIA Security+ Review Guide, Sybex, Indianapolis, 2014, pp. 26, 44
http://en.wikipedia.org/wiki/List_of_TCP_and_UDP_port_numbers

 

NEW QUESTION 221
A researcher has been analyzing large data sets for the last ten months. The researcher works with colleagues from other institutions and typically connects via SSH to retrieve additional data. Historically, this setup has worked without issue, but the researcher recently started getting the following message:

Which of the following network attacks is the researcher MOST likely experiencing?

  • A. ARP poisoning
  • B. Man-in-the-middle
  • C. MAC cloning
  • D. Evil twin

Answer: B

 

NEW QUESTION 222
A security analyst receives a SIEM alert that someone logged in to the appadmin test account, which is only used for the early detection of attacks. The security analyst then reviews the following application log:

Which of the following can the security analyst conclude?

  • A. An injection attack is being conducted against a user authentication system.
  • B. A service account password may have been changed, resulting in continuous failed logins within the application.
  • C. A replay attack is being conducted against the application.
  • D. A credentialed vulnerability scanner attack is testing several CVEs against the application.

Answer: B

 

NEW QUESTION 223
A cloud administrator is configuring five compute instances under the same subnet in a VPC Three instances are required to communicate with one another, and the other two must he logically isolated from all other instances in the VPC. Which of the following must the administrator configure to meet this requirement?

  • A. Two security groups
  • B. Three security groups
  • C. Five security groups
  • D. One security group

Answer: A

 

NEW QUESTION 224
A manufacturer creates designs for very high security products that are required to be protected and controlled by the government regulations. These designs are not accessible by corporate networks or the Internet. Which of the following is the BEST solution to protect these designs?

  • A. An air gap
  • B. A shielded cable
  • C. A demilitarized zone
  • D. A Faraday cage

Answer: A

Explanation:
Explanation

 

NEW QUESTION 225
A network analyst is setting up a wireless access point for a home office in a remote, rural location. The requirement is that users need to connect to the access point securely but do not want to have to remember passwords Which of the following should the network analyst enable to meet the requirement?

  • A. Captive portal
  • B. WPS
  • C. 802.1X
  • D. MAC address filtering

Answer: B

 

NEW QUESTION 226
An organization has implemented a policy requiring the use of conductive metal lockboxes for personal electronic devices outside of a secure research lab. Which of the following did the organization determine to be the GREATEST risk to intellectual property when creating this policy?

  • A. The theft of portable electronic devices
  • B. Geotagging in the metadata of images
  • C. Data exfiltration over a mobile hotspot
  • D. Bluesnarfing of mobile devices

Answer: C

Explanation:
Section: (none)
Explanation

 

NEW QUESTION 227
A security engineer is setting up passwordless authentication for the first time.
INSTRUCTIONS
Use the minimum set of commands to set this up and verify that it works. Commands cannot be reused.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:

Explanation:

 

NEW QUESTION 228
A network administrator has been alerted that web pages are experiencing long load times. After determining it is not a routing or DNS issue, the administrator logs in to the router, runs a command, and receives the following output:

Which of the following is the router experiencing?

  • A. Resource exhaustion
  • B. Buffer overflow
  • C. DDoS attack
  • D. Memory leak

Answer: A

 

NEW QUESTION 229
After entering a username and password, and administrator must gesture on a touch screen. Which of the following demonstrates what the administrator is providing?

  • A. Multifactor authentication
  • B. Biometric
  • C. Two-factor authentication
  • D. Something you can do

Answer: C

 

NEW QUESTION 230
A security analyst needs to make a recommendation for restricting access to certain segments of the network using only data-link layer security. Which of the following controls will the analyst MOST likely recommend?

  • A. ARP
  • B. MAC
  • C. ACL
  • D. BPDU

Answer: B

 

NEW QUESTION 231
......

CompTIA Security+ Exam 2021 Free Update Certification Sample Questions: https://www.dumpsmaterials.com/SY0-601-real-torrent.html

Trend for CompTIA SY0-601 pdf dumps before actual exam: https://drive.google.com/open?id=1I_COxPaKj9Hc21uM4Taqsoj5caqNxT6b