A network security analyst monitors the network's IDS, which has flagged unusual activity. The IDS has detected multiple login attempts to a database server within a short period. These attempts come from various IP addresses that are not normally recognized by the network's usual traffic patterns. Each attempt uses the same username and password. Based on the following log output (corrected formatting for readability):
2025-04-10 14:22:01.4532 - Source IP: 192.168.15.101 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:02.1122 - Source IP: 192.168.15.102 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:02.7835 - Source IP: 192.168.15.103 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:03.5637 - Source IP: 192.168.15.104 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:04.9474 - Source IP: 192.168.15.105 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:05.5673 - Source IP: 192.168.15.106 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:06.1573 - Source IP: 192.168.15.107 - Status: Failed - User: JDoe - Action: Login Attempt
2025-04-10 14:22:07.7462 - Source IP: 192.168.15.108 - Status: Failed - User: JDoe - Action: Login Attempt
Which of the following types of network attacks is most likely occurring?
A. Cross-site scriptingWhile updating the security awareness training, a security analyst wants to address issues created if vendors' email accounts are compromised.
Which of the following recommendations should the security analyst include in the training?
A. Refrain from clicking on images included in emails from new vendorsA nation-state attacker gains access to the email accounts of several journalists by compromising a website that the journalists frequently use.
Which of the following types of attacks describes this example?
A. On-pathA company wants to add an MFA solution for all employees who access the corporate network remotely. Log-in requirements include something you know, are, and have. The company wants a solution that does not require purchasing third-party applications or specialized hardware.
Which of the following MFA solutions would best meet the company's requirements?
A. Smart card with PIN and passwordA network team segmented a critical, end-of-life server to a VLAN that can only be reached by specific devices but cannot be reached by the perimeter network.
Which of the following best describe the controls the team implemented? (Choose two.)
A. ManagerialAn organization is required to maintain financial data records for three years and customer data for five years.
Which of the following data management policies should the organization implement?
A. RetentionWhich of the following is the act of proving to a customer that software developers are trained on secure coding?
A. AssuranceWhich of the following is the most likely reason a security analyst would review SIEM logs?
A. To check for recent password reset attemptsA client asked a security company to provide a document outlining the project, the cost, and the completion time frame.
Which of the following documents should the company provide to the client?
A. MSAWhich of the following security measures is required when using a cloud-based platform for IoT management?
A. Encrypted connectionNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.