SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 871:

    A security analyst is interested in setting up an IDS to monitor the company network. The analyst has been told there can be no network downtime to implement the solution, but the IDS must capture all of the network traffic. Which of the following should be used for the IDS implementation?

    A. Network tap
    B. Honeypot
    C. Aggregation
    D. Port mirror

  • Question 872:

    Which of the following identity access methods creates a cookie on the rst logic to a central authority to allow logins to subsequent applications without referring credentials?

    A. Multifactor authentication
    B. Transitive trust
    C. Federated access
    D. Single sign-on

  • Question 873:

    Having adequate lighting on the outside of a building is an example of which of the following security controls?

    A. Deterrent
    B. Compensating
    C. Detective
    D. Preventative

  • Question 874:

    An application was recently compromised after some malformed data came in via web form. Which of the following would MOST likely have prevented this?

    A. Input validation
    B. Proxy server
    C. Stress testing
    D. Encoding

  • Question 875:

    A transitive trust:

    A. is automatically established between a parent and a child.
    B. is used to update DNS records.
    C. allows access to untrusted domains.
    D. can be used in place of a hardware token for logins.

  • Question 876:

    A network technician needs to monitor and view the websites that are visited by an employee. The employee Is connected to a network switch. Which of the following would allow the technician to monitor the employee's web traffic?

    A. Implement promiscuous mode on the NIC of the employee's computer.
    B. Install and configure a transparent proxy server.
    C. Run a vulnerability scanner to capture DNS packets on the router.
    D. Configure a VPN to forward packets to the technician's computer.

  • Question 877:

    Which of the following solutions should an administrator use to reduce the risk from an unknown vulnerability in a third-party software application?

    A. Sandboxing
    B. Encryption
    C. Code signing
    D. Fuzzing

  • Question 878:

    Given the following: > md5.exe filel.txt > ADIFAB103773DC6A1E6021B7E503A210 > md5.exe file2.txt > ADIFAB103773DC6A1E602lB7E503A210 Which of the following concepts of cryptography is shown?

    A. Collision
    B. Salting
    C. Steganography
    D. Stream cipher

  • Question 879:

    After discovering the /etc/shadow file had been rewritten, a security administrator noticed an application insecurely creating files in / tmp. Which of the following vulnerabilities has MOST likely been exploited?

    A. Privilege escalation
    B. Resource exhaustion
    C. Memory leak
    D. Pointer dereference

  • Question 880:

    The network information for a workstation is as follows:

    When the workstation's user attempts to access www.example.com. the URL that actually opens is www.notexample.com. The user successfully connects to several other legitimate URLs. Which of the following have MOST likely occurred? (Select TWO).

    A. ARP poisoning
    B. Buffer overflow
    C. DNS poisoning
    D. Domain hijacking
    E. IP spoofing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.