Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :Apr 14, 2025

CompTIA CompTIA Certifications SY0-601 Questions & Answers

  • Question 1161:

    After gaining access to a dual-homed (i.e., wired and wireless) multifunction device by exploiting a vulnerability in the device's firmware, a penetration tester then gains shell access on another networked asset. This technique is an example of:

    A. privilege escalation

    B. footprinting

    C. persistence

    D. pivoting.

  • Question 1162:

    A security engineer is installing a WF io protect the company's website from malicious wed requests over SSL, Which of the following is needed io meet the objective?

    A. A reverse proxy

    B. A decryption certificate

    C. A split-tunnel VPN

    D. Load-balanced servers

  • Question 1163:

    After segmenting the network, the network manager wants to control the traffic between the segments. Which of the following should the manager use to control the network traffic?

    A. A DMZ

    B. A VPN a

    C. A VLAN

    D. An ACL

  • Question 1164:

    Which of the following conditions impacts data sovereignty?

    A. Rights management

    B. Criminal investigations

    C. Healthcare data

    D. Intemational operations

  • Question 1165:

    A cybersecurity administrator needs to allow mobile BYOD devices to access network resources. As the devices are not enrolled to the domain and do not have policies applied to them, which of the following are best practices for authentication and infrastructure security? (Select TWO).

    A. Create a new network for the mobile devices and block the communication to the internal network and servers

    B. Use a captive portal for user authentication.

    C. Authenticate users using OAuth for more resiliency

    D. Implement SSO and allow communication to the internal network

    E. Use the existing network and allow communication to the internal network and servers.

    F. Use a new and updated RADIUS server to maintain the best solution

  • Question 1166:

    A cybersecurity administrator needs to implement a Layer 7 security control on a network and block potential attacks. Which of the following can block an attack at Layer 7? (Select TWO).

    A. HIDS

    B. NIPS

    C. HSM

    D. WAF

    E. NAC

    F. NIDS

    G. Stateless firewall

  • Question 1167:

    A user reports trouble using a corporate laptop. The laptop freezes and responds slowly when writing documents and the mouse pointer occasional disappears. The task list shows the following results

    Which of the following is MOST likely the issue?

    A. RAT

    B. PUP

    C. Spyware

    D. Keylogger

  • Question 1168:

    A business is looking for a cloud service provider that offers a la carte services, including cloud backups, VM elasticity, and secure networking. Which of the following cloud service provider types should business engage?

    A. A laaS

    B. PaaS

    C. XaaS

    D. SaaS

  • Question 1169:

    After a WiFi scan of a local office was conducted, an unknown wireless signal was identified Upon investigation, an unknown Raspberry Pi device was found connected to an Ethernet port using a single connection. Which of the following BEST describes the purpose of this device?

    A. loT sensor

    B. Evil twin

    C. Rogue access point

    D. On-path attack

  • Question 1170:

    A customer has reported that an organization's website displayed an image of a smiley (ace rather than the expected web page for a short time two days earlier. A security analyst reviews log tries and sees the following around the lime of the incident:

    Which of the following is MOST likely occurring?

    A. Invalid trust chain

    B. Domain hijacking

    C. DNS poisoning

    D. URL redirection

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.