SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 1581:

    Which of the following wireless protocols could be vulnerable to a brute-force password attack? (Select TWO).

    A. WPA2-PSK
    B. WPA - EAP - TLS
    C. WPA2-CCMP
    D. WPA -CCMP
    E. WPA - LEAP
    F. WEP

  • Question 1582:

    A malicious user is sniffing a busy encrypted wireless network waiting for an authorized client to connect to it. Only after an authorized client has connected and the hacker was able to capture the client handshake with the AP can the hacker begin a brute force attack to discover the encryption key. Which of the following attacks is taking place?

    A. IV attack
    B. WEP cracking
    C. WPA cracking
    D. Rogue AP

  • Question 1583:

    A security administrator discovers that an attack has been completed against a node on the corporate network. All available logs were collected and stored.

    You must review all network logs to discover the scope of the attack, check the box of the node(s) that have been compromised and drag and drop the appropriate actions to complete the incident response on the network. The environment is

    a critical production environment; perform the LEAST disruptive actions on the network, while still performing the appropriate incident responses.

    Instructions: The web server, database server, IDS, and User PC are clickable. Check the box of the node(s) that have been compromised and drag and drop the appropriate actions to complete the incident response on the network. Not all

    actions may be used, and order is not important. If at anytime you would like to bring back the initial state of the simulation, please select the Reset button. When you have completed the simulation, please select the Done button to submit.

    Once the simulation is submitted, please select the Next button to continue.

    Correct Answer. Check the answer below

  • Question 1584:

    Matt, an administrator, is concerned about the wireless network being discovered by war driving.

    Which of the following can be done to mitigate this?

    A. Enforce a policy for all users to authentic through a biometric device.
    B. Disable all SSID broadcasting.
    C. Ensure all access points are running the latest firmware.
    D. Move all access points into public access areas.

  • Question 1585:

    An administrator wants to provide onboard hardware based cryptographic processing and secure key storage for full-disk encryption. Which of the following should the administrator use to fulfil the requirements?

    A. AES
    B. TPM
    C. FDE
    D. PAM

  • Question 1586:

    An employee uses RDP to connect back to the office network. If RDP is misconfigured, which of the of the following security exposures would this lead to?

    A. A virus on the administrator desktop would be able to sniff the administrator's username and password
    B. Result in an attacker being able to phish the employee's username and password
    C. A social engineering arrack could occur, resulting in the employee's password being extracted
    D. A man in the middle attack could occur, resulting the employee's username and password being captured

  • Question 1587:

    Which of the following is the term for a fix for a known software problem?

    A. Skiff
    B. Patch
    C. Slipstream
    D. Upgrade

  • Question 1588:

    A security administrator working for a law enforcement organization is asked to secure a computer system at the scene of a crime for transport to the law enforcement forensic facility. In order to capture as mush evidence as possible, the computer system has been left running. The security administrator begins information by image which of the following system components FIRST?

    A. NVRAM
    B. RAM
    C. TPM
    D. SSD

  • Question 1589:

    A software developer wants to prevent stored passwords from being easily decrypted. When the password is stored by the application, additional text is added to each password before the password is hashed. This technique is known as:

    A. Symmetric cryptography.
    B. Private key cryptography.
    C. Salting.
    D. Rainbow tables.

  • Question 1590:

    An attacker attempted to compromise a web form by inserting the following input into the username field: admin)(|(password=*))

    Which of the following types of attacks was attempted?

    A. SQL injection
    B. Cross-site scripting
    C. Command injection
    D. LDAP injection

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.