CAS-003 Exam Details

  • Exam Code
    :CAS-003
  • Exam Name
    :CompTIA Advanced Security Practitioner (CASP+)
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :791 Q&As
  • Last Updated
    :Jan 22, 2024

CompTIA CAS-003 Online Questions & Answers

  • Question 231:

    A well-known retailer has experienced a massive credit card breach. The retailer had gone through an audit and had been presented with a potential problem on their network. Vendors were authenticating directly to the retailer's AD servers, and an improper firewall rule allowed pivoting from the AD server to the DMZ where credit card servers were kept. The firewall rule was needed for an internal application that was developed, which presents risk. The retailer determined that because the vendors were required to have site to site VPN's no other security action was taken.

    To prove to the retailer the monetary value of this risk, which of the following type of calculations is needed?

    A. Residual Risk calculation
    B. A cost/benefit analysis
    C. Quantitative Risk Analysis
    D. Qualitative Risk Analysis

  • Question 232:

    A cybersecunty engineer analyzed a system for vulnerabilities. The tool created an OVAL Results document as output Which of the following would enable the engineer to interpret the results in a human readable form? (Choose two.)

    A. Text editor
    B. OOXML editor
    C. Event Viewer
    D. XML style sheet
    E. SCAPtool
    F. Debugging utility

  • Question 233:

    A network service on a production system keeps crashing at random times. The systems administrator suspects a bug in the listener is causing the service to crash, resulting in a DoS. When the service crashes, a core dump is left in the /tmp directory. Which of the following tools can the systems administrator use to reproduce these symptoms?

    A. Fuzzer
    B. Vulnerability scanner
    C. Core dump analyzer
    D. Debugger

  • Question 234:

    An enterprise with global sites processes and exchanges highly sensitive information that is protected under several countries' arms trafficking laws. There is new information that malicious nation-state-sponsored activities are targeting the use of encryption between the geographically disparate sites. The organization currently employs ECDSA and ECDH with P-384, SHA-384, and AES-256-GCM on VPNs between sites.

    Which of the following techniques would MOST likely improve the resilience of the enterprise to attack on cryptographic implementation?

    A. Add a second-layer VPN from a different vendor between sites.
    B. Upgrade the cipher suite to use an authenticated AES mode of operation.
    C. Use a stronger elliptic curve cryptography algorithm.
    D. Implement an IDS with sensors inside (clear-text) and outside (cipher-text) of each tunnel between sites.
    E. Ensure cryptography modules are kept up to date from vendor supplying them.

  • Question 235:

    A company requires a task to be carried by more than one person concurrently. This is an example of:

    A. separation of d duties.
    B. dual control
    C. least privilege
    D. job rotation

  • Question 236:

    A company wants to configure its wireless network to require username and password authentication. Which of the following should the system administrator implement?

    A. WPS
    B. PEAP
    C. TKIP
    D. PKI

  • Question 237:

    A new web based application has been developed and deployed in production. A security engineer decides to use an HTTP interceptor for testing the application. Which of the following problems would MOST likely be uncovered by this tool?

    A. The tool could show that input validation was only enabled on the client side
    B. The tool could enumerate backend SQL database table and column names
    C. The tool could force HTTP methods such as DELETE that the server has denied
    D. The tool could fuzz the application to determine where memory leaks occur

  • Question 238:

    After being notified of an issue with the online shopping cart, where customers are able to arbitrarily change the price of listed items, a programmer analyzes the following piece of code used by a web based shopping cart.

    SELECT ITEM FROM CART WHERE ITEM=ADDSLASHES($USERINPUT);

    The programmer found that every time a user adds an item to the cart, a temporary file is created on the web server /tmp directory. The temporary file has a name which is generated by concatenating the content of the $USERINPUT variable and a timestamp in the form of MM-DD-YYYY, (e.g. smartphone-12-25-2013.tmp) containing the price of the item being purchased. Which of the following is MOST likely being exploited to manipulate the price of a shopping cart's items?

    A. Input validation
    B. SQL injection
    C. TOCTOU
    D. Session hijacking

  • Question 239:

    The Chief Information Officer (CIO) wants to establish a non-binding agreement with a third party that outlines the objectives of the mutual arrangement dealing with data transfers between both organizations before establishing a formal partnership. Which of the following would MOST likely be used?

    A. MOU
    B. OLA
    C. NDA
    D. SLA

  • Question 240:

    Given the following output from a security tool in Kali:

    A. Log reduction
    B. Network enumerator
    C. Fuzzer
    D. SCAP scanner

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-003 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.