SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 481:

    Which of the following would verify that a threat does exist and security controls can easily be bypassed without actively testing an application?

    A. Protocol analyzer
    B. Vulnerability scan
    C. Penetration test
    D. Port scanner

  • Question 482:

    An audit reported has identifies a weakness that could allow unauthorized personnel access to the facility at its main entrance and from there gain access to the network. Which of the following would BEST resolve the vulnerability?

    A. Faraday cage
    B. Air gap
    C. Mantrap
    D. Bollards

  • Question 483:

    A company recently experienced a security incident in which its domain controllers were the target of a DoS attack. In which of the following steps should technicians connect domain controllers to the network and begin authenticating users again?

    A. Preparation
    B. Identification
    C. Containment
    D. Eradication
    E. Recovery
    F. Lessons learned

  • Question 484:

    A security analyst monitors the syslog server and notices the following pinging 10.25.27.31 with 65500 bytes of data Reply from 10.25.27.31 bytes=65500 times<1ms TTL=128 Reply from 10.25.27.31 bytes=65500 times<1ms TTL=128 Reply from 10.25.27.31 bytes=65500 times<1ms TTL=128 Reply from 10.25.27.31 bytes=65500 times<1ms TTL=128 Reply from 10.25.27.31 bytes=65500 times<1ms TTL=128 Reply from 10.25.27.31 bytes=65500 times<1ms TTL=128

    Which of the following attacks is occurring?

    A. Memory leak
    B. Buffer overflow
    C. Null pointer deference
    D. Integer overflow

  • Question 485:

    A restaurant wants to deploy tablets to all waitstaff but does not want to use passwords or manage users to connect the tablets to the network. Which of the following types of authentication would be BEST suited for this scenario?

    A. Proximity cards
    B. IEEE 802.1x
    C. Hardware token
    D. Fingerprint reader

  • Question 486:

    A highly complex password policy has made it nearly impossible to crack account passwords. Which of the following might a hacker still be able to perform?

    A. Pass-the-hash attack
    B. ARP poisoning attack
    C. Birthday attack
    D. Brute-force attack

  • Question 487:

    An application developer is designing an application involving secure transports from one service to another that will pass over port 80 for a request. Which of the following secure protocols is the developer MOST likely to use?

    A. FTPS
    B. SFTP
    C. SSL
    D. LDAPS
    E. SSH

  • Question 488:

    Which of the following is the MOST significant difference between intrusive and non-intrusive vulnerability scanning?

    A. One uses credentials, but the other does not.
    B. One has a higher potential for disrupting system operations.
    C. One allows systems to activate firewall countermeasures.
    D. One returns service banners, including running versions.

  • Question 489:

    A security technician has been assigned data destruction duties. The hard drives that are being disposed of contain highly sensitive information. Which of the following data destruction techniques is MOST appropriate?

    A. Degaussing
    B. Purging
    C. Wiping
    D. Shredding

  • Question 490:

    Joe, a contractor, is hired by a firm to perform a penetration test against the firm's infrastructure. While conducting the scan, he receives only the network diagram and the network list to scan against the network. Which of the following scan types is Joe performing?

    A. Authenticated
    B. White box
    C. Automated
    D. Gray box

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.