SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 61:

    After a user reports stow computer performance, a systems administrator detects a suspicious file, which was installed as part of a freeware software package. The systems administrator reviews the output below:

    Based on the above information, which of the following types of malware was installed on the user's computer?

    A. RAT
    B. Keylogger
    C. Spyware
    D. Worm
    E. Bot

  • Question 62:

    To determine the ALE of a particular risk, which of the following must be calculated? (Select two.)

    A. ARO
    B. ROI
    C. RPO
    D. SLE
    E. RTO

  • Question 63:

    An Organization wants to separate permissions for individuals who perform system changes from individuals who perform auditing of those system changes. Which of the following access control approaches is BEST suited for this?

    A. Assign administrators and auditors to different groups and restrict permissions on system log files to read-only for the auditor group.
    B. Assign administrators and auditors to the same group, but ensure they have different permissions based on the function they perform.
    C. Create two groups and ensure each group has representation from both the auditors and the administrators so they can verify any changes that were made.
    D. Assign file and folder permissions on an Individual user basis and avoid group assignment altogether.

  • Question 64:

    A university with remote campuses, which all use different service providers, loses Internet connectivity across all locations. After a few minutes, internet and VoIP services are restored, only to go offline again at random intervals. typically,

    within four minutes of services being restored. Outages continue throughout the day. impacting all inbound and outbound connections and services. Services that are limited to the local LAN or WiFi network are not impacted, but all WAN and

    VoIP services are affected.

    Later that day. the edge-router manufacturer releases a CVE outlining the ability of an attacker to exploit the SIP protocol handling on devices, leading to resource exhaustion and system reloads. Which of the following BEST describe this

    type of attack? (Select TWO).

    A. DOS
    B. SSL Stripping
    C. Memory leak
    D. Race condition
    E. Shimming
    F. Refactoring

  • Question 65:

    After correctly configuring a new wireless enabled thermostat to control the temperature of the company's meeting room, Joe, a network administrator determines that the thermostat is not connecting to the internetbased control system. Joe verifies that the thermostat received the expected network parameters and it is associated with the AP. Additionally, the other wireless mobile devices connected to the same wireless network are functioning properly. The network administrator verified that the thermostat works when tested at his residence. Which of the following is the MOST likely reason the thermostat is not connecting to the internet?

    A. The company implements a captive portal
    B. The thermostat is using the incorrect encryption algorithm
    C. the WPA2 shared likely is incorrect
    D. The company's DHCP server scope is full

  • Question 66:

    Which of the following could occur when both strong and weak ciphers are configured on a VPN concentrator? (Select TWO)

    A. An attacker could potentially perform a downgrade attack.
    B. The connection is vulnerable to resource exhaustion.
    C. The integrity of the data could be at risk.
    D. The VPN concentrator could revert to L2TP.
    E. The IPSec payload reverted to 16-bit sequence numbers.

  • Question 67:

    An employee receives an email, which appears to be from the Chief Executive Officer (CEO), asking for a report of security credentials for all users. Which of the following types of attack is MOST likely occurring?

    A. Policy violation
    B. Social engineering
    C. Whaling
    D. Spear phishing

  • Question 68:

    After a merger, it was determined that several individuals could perform the tasks of a network administrator in the merged organization. Which of the following should have been performed to ensure that employees have proper access?

    A. Time-of-day restrictions
    B. Change management
    C. Periodic auditing of user credentials
    D. User rights and permission review

  • Question 69:

    A new Chief Information Officer (CIO) has been reviewing the badging and decides to write a policy that all employees must have their badges rekeyed at least annually. Which of the following controls BEST describes this policy?

    A. Physical
    B. Corrective
    C. Technical
    D. Administrative

  • Question 70:

    Given the following:

    Which of the following concepts of cryptography is shown?

    A. Collision
    B. Salting
    C. Steganography D. Stream cipher

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.