SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1016 Q&As
  • Last Updated
    :Jul 14, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 391:

    While a user reviews their email, a host gets infected by malware from an external hard drive plugged into the host. The malware steals all the user's credentials stored in the browser.

    Which of the following training topics should the user review to prevent this situation from reoccurring?

    A. Operational security
    B. Removable media and cables
    C. Password management
    D. Social engineering

  • Question 392:

    Which of the following is a reason environmental variables are a concern when reviewing potential system vulnerabilities?

    A. The contents of environmental variables could affect the scope and impact of an exploited vulnerability.
    B. In-memory environmental variable values can be overwritten and used by attackers to insert malicious code.
    C. Environmental variables de ne cryptographic standards for the system and could create vulnerabilities if deprecated algorithms are used.
    D. Environmental variables will determine when updates are run and could mitigate the likelihood of vulnerability exploitation.

  • Question 393:

    Which of the following is a vulnerability concern for end-of-life hardware?

    A. Failure to follow hardware disposal procedures could result in unintended data release.
    B. The supply chain may not have replacement hardware.
    C. Newly released software may require computing resources not available on legacy hardware.
    D. The vendor may stop providing patches and updates.

  • Question 394:

    An unexpected and out-of-character email message from a Chief Executive Officer's corporate account asked an employee to provide financial information and to change the recipient's contact number.

    Which of the following attack vectors is most likely being used?

    A. Business email compromise
    B. Phishing
    C. Brand impersonation
    D. Pretexting

  • Question 395:

    An engineer has ensured that the switches are using the latest OS, the servers have the latest patches, and the endpoints' definitions are up to date.

    Which of the following will these actions most effectively prevent?

    A. Zero-day attacks
    B. Insider threats
    C. End-of-life support
    D. Known exploits

  • Question 396:

    A network security analyst monitors the network's IDS, which has flagged unusual activity. The IDS has detected multiple login attempts to a database server within a short period. These attempts come from various IP addresses that are not normally recognized by the network's usual traffic patterns. Each attempt uses the same username and password. Based on the following log output (corrected formatting for readability):

    2025-04-10 14:22:01.4532 - Source IP: 192.168.15.101 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:02.1122 - Source IP: 192.168.15.102 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:02.7835 - Source IP: 192.168.15.103 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:03.5637 - Source IP: 192.168.15.104 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:04.9474 - Source IP: 192.168.15.105 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:05.5673 - Source IP: 192.168.15.106 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:06.1573 - Source IP: 192.168.15.107 - Status: Failed - User: JDoe - Action: Login Attempt

    2025-04-10 14:22:07.7462 - Source IP: 192.168.15.108 - Status: Failed - User: JDoe - Action: Login Attempt

    Which of the following types of network attacks is most likely occurring?

    A. Cross-site scripting
    B. Credential replay
    C. Distributed denial of service
    D. SQL injection

  • Question 397:

    An administrator must implement a solution that provides security and network connectivity between two companies.

    Which of the following infrastructure solutions is the best for this purpose?

    A. UTM
    B. VPN
    C. NAC
    D. NGFW

  • Question 398:

    Which of the following addresses individual rights such as the right to be informed, the right of access, and the right to be forgotten?

    A. GDPR
    B. PCI DSS
    C. NIST
    D. ISO

  • Question 399:

    A systems administrator is redesigning how devices will perform network authentication. The following requirements need to be met:

    1. An existing internal certificate must be used.

    2. Wired and wireless networks must be supported.

    3. Any unapproved device should be isolated in a quarantine subnet.

    4. Approved devices should be updated before accessing resources.

    Which of the following would best meet the requirements?

    A. 802.IX
    B. EAP
    C. RADIUS
    D. WPA2

  • Question 400:

    A company performs risk analysis on its equipment and estimates it will experience about ten incidents over a five-year period.

    Which of the following is the correct ARO for the equipment?

    A. 2
    B. 5
    C. 10
    D. 50

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.