All practice questions

521 questions

Question 201Question

Match each data sanitization or disposal technique to the media type and operational context where it is most appropriately applied according to CompTIA security standards.

Click a left item, then click its matching right item

Items

Degaussing
ATA Secure Erase / Drive Purging
Cryptographic Erase (CE)
Physical Shredding

Matches

Show answer & explanation

Answer

Degaussing pairs with sanitizing legacy magnetic HDDs or tape media; ATA Secure Erase pairs with sanitizing functional NVMe or SATA SSDs for reuse; Cryptographic Erase pairs with sanitizing Self-Encrypting Drives (SEDs) via key destruction; Physical Shredding pairs with disposing of non-functional SSDs.
Each disposal method matches specific physical media traits and hardware goals: Degaussing neutralizes magnetic tracks on HDDs/tapes; ATA Secure Erase uses controller commands to wipe flash blocks on working SSDs for redeployment; Cryptographic Erase zeroizes encryption keys on SEDs; Physical Shredding mechanically destroys damaged flash hardware.

Step-by-Step Solution

1
Analyze underlying storage architecture (magnetic vs. flash vs. encrypted)
Identify that magnetic media (HDDs/tapes) respond to electromagnetic fields, whereas flash drives (SSDs/NVMe) consist of solid-state ICs, and SEDs rely on onboard encryption keys.
Selecting an improper technique, such as degaussing an SSD, fails to sanitize the drive.
2
Evaluate hardware lifecycle intent (re-use vs. total physical destruction)
Functional drives scheduled for reuse require non-destructive firmware purging (ATA Secure Erase), while damaged or end-of-life drives require mechanical destruction (shredding).
Physical destruction renders hardware unusable for future deployment, whereas logical formats are required for drive repurposing.
3
Match specialized crypto-sanitization mechanisms
Destroying the key on a Self-Encrypting Drive (SED) instantly invalidates all stored ciphertext without reading or writing every sector.
Cryptographic Erase relies on hardware-level encryption key destruction for instant, secure drive decommissioning.

Key Concept

Data Destruction and Disposal Methods
Estimated Time:2m 0s
Question 202Question

A tier 2 desktop support technician is organizing documentation for junior staff regarding Windows client networking configuration utilities. Match each Windows networking utility or command switch on the left with its corresponding configuration or diagnostic function on the right.

Click a left item, then click its matching right item

Items

ipconfig /release
netsh wlan show profile
ncpa.cpl
netsh interface ip set address

Matches

Show answer & explanation

Answer

The command 'ipconfig /release' matches discarding the dynamic IPv4 address lease; 'netsh wlan show profile' matches displaying saved wireless network profiles; 'ncpa.cpl' matches launching the Network Connections Control Panel applet; and 'netsh interface ip set address' matches configuring a static IPv4 address via the command line.
Each item is mapped to its precise administrative or diagnostic function within Windows client networking environments.

Step-by-Step Solution

1
Analyze each command and control panel shortcut
Distinguish between dynamic IP management, wireless profile inspection, GUI applet execution, and static IP syntax
Windows networking configuration requires familiarity with both command-line tools and Control Panel shortcuts (.cpl).
2
Map each utility to its administrative outcome
Establish exact functional pairings for Windows client networking tasks
Accurate pairing ensures correct diagnostic tool usage during Help Desk troubleshooting.

Key Concept

Windows Client Networking Configuration Utilities and CLI Commands
Question 203Question

An IT security auditor is establishing standardized operational procedures for end-of-life media management and storage sanitization. Match each data destruction or disposition requirement on the left with the correct technique or compliance artifact on the right based on CompTIA A+ standards.

Click a left item, then click its matching right item

Items

Decommissioning legacy magnetic reel tapes to permanently eliminate magnetic domains before physical recycling.
Sanitizing healthy NVMe solid-state drives (SSDs) for internal organizational reuse while clearing over-provisioned blocks.
Purging sensitive data from Self-Encrypting Drives (SEDs) almost instantaneously by rendering existing ciphertext unrecoverable.
Establishing verifiable chain-of-custody and regulatory compliance documentation after third-party offsite physical drive shredding.

Matches

Show answer & explanation

Answer

1. Decommissioning magnetic tapes matches Degaussing.
2. Sanitizing NVMe SSDs for reuse matches NVMe Sanitize / ATA Secure Erase firmware command.
3. Purging Self-Encrypting Drives (SEDs) instantly matches Cryptographic Erase (CE).
4. Establishing compliance audit records after vendor shredding matches Certificate of Destruction.
Each requirement correctly pairs with its established industry protocol under CompTIA A+ standards: magnetic media requires degaussing; solid-state media requires firmware-based sanitization commands (NVMe Sanitize/ATA Secure Erase); hardware-encrypted drives utilize Cryptographic Erase; and outsourced destruction requires a formal Certificate of Destruction for legal compliance.

Step-by-Step Solution

1
Analyze magnetic storage media sanitization requirements.
Identify that magnetic tapes rely on magnetic orientation, which is permanently disrupted using a degausser.
Degaussing renders magnetic media unreadable by removing the magnetic alignment of stored data bits.
2
Determine the proper logical sanitization command for solid-state storage re-use.
Select NVMe Sanitize / ATA Secure Erase.
Standard OS formatting or degaussing does not affect solid-state drive cells; built-in controller firmware sanitize commands reset all blocks non-destructively.
3
Evaluate rapid sanitization for Self-Encrypting Drives (SEDs).
Select Cryptographic Erase (CE).
CE destroys the symmetric Media Encryption Key (MEK), converting stored data into unsolvable ciphertext instantly.
4
Identify the audit artifact for offsite drive disposition.
Select Certificate of Destruction.
Regulatory frameworks require documented proof of destruction detailing drive serial numbers and destruction methods.

Key Concept

Data Destruction and Disposal Methods
Question 204Question

An IT technician is reviewing escalated service tickets regarding specialized printer hardware failures across an organization. Match each specific printer symptom on the left with its primary underlying root cause on the right.

Click a left item, then click its matching right item

Items

A direct thermal barcode label printer produces faint, streaked labels during high-speed shipping operations.
A fused deposition modeling (FDM) 3D printer fails to adhere the initial layer of melted filament to the surface, resulting in structural warping.
A high-volume color laser printer outputs pages with recurring dark vertical lines running down the entire length of every sheet.
A office inkjet printer produces printed financial spreadsheets where vertical column borders appear jagged and misaligned.

Matches

Show answer & explanation

Answer

Thermal label faintness matches residue on the thermal printhead heating elements; 3D printer first-layer detachment matches incorrect Z-offset or an unlevel build plate; continuous laser vertical lines match a damaged photosensitive drum or cleaning blade; and inkjet line misalignments match uncalibrated printhead carriage alignment.
Each printer technology exhibits distinct physical symptom signatures: thermal printers suffer from printhead element contamination, 3D printers depend on bed leveling and Z-offset calibration for initial layer adhesion, laser printers manifest continuous full-length lines when the drum blade or surface is gouged, and inkjet printers require software-guided printhead alignment to correct jagged vertical rules.

Step-by-Step Solution

1
Analyze thermal printer symptoms
Identify that direct thermal printing uses heat elements to react with special paper, making printhead debris the primary cause of faint streaks.
Direct thermal printers do not use toner or ink ribbons, isolating thermal element contamination as the failure point.
2
Analyze 3D printer first-layer adhesion issues
Determine that Z-axis clearance (Z-offset) and bed leveling directly govern first-layer squish and bed adhesion.
If the gap between the nozzle and build plate is too wide, the plastic filament cools without bonding to the build surface.
3
Analyze laser printer vertical line defects
Associate continuous full-page longitudinal lines with physical defects on the OPC drum or drum wiper blade.
A scratch on the revolving drum surface permanently attracts or repels toner along the entire rotation length during printing.
4
Analyze inkjet vertical line misalignment
Correlate jagged spreadsheet gridlines with inkjet carriage alignment requirements.
Bidirectional ink spraying requires precise alignment calibration so print strokes line up perfectly across passes.

Key Concept

Printer Defect Identification and Cause Matching across Laser, Thermal, Inkjet, and 3D Technologies
Question 205Question

Match each remote access technology or tool to its default network port and primary operational characteristic.

Click a left item, then click its matching right item

Items

RDP (Remote Desktop Protocol)
SSH (Secure Shell)
Telnet
MSRA (Microsoft Remote Assistance)

Matches

Show answer & explanation

Answer

RDP matches TCP port 3389 (graphical session access). SSH matches TCP port 22 (encrypted command-line). Telnet matches TCP port 23 (unencrypted text-based). MSRA matches user invitation for shared desktop interaction.
Each remote access tool is correctly paired with its standard port and operational feature: RDP uses TCP port 3389 for graphical access, SSH uses TCP port 22 for encrypted command-line sessions, Telnet uses TCP port 23 for unencrypted command-line sessions, and MSRA uses user invitations for shared session support.

Step-by-Step Solution

1
Identify default transport ports and encryption for command-line protocols.
SSH runs securely on TCP port 22, whereas Telnet runs insecurely without encryption on TCP port 23.
Differentiating command-line utilities relies on knowing their encryption status and default port assignments.
2
Identify default ports and capabilities for Windows remote GUI tools.
RDP connects via TCP port 3389 to grant full graphical access.
RDP is the standard protocol integrated into Windows Professional and Enterprise editions for remote GUI management.
3
Distinguish MSRA from standard RDP functionality.
MSRA requires user authorization and invitation to view and assist in an ongoing user session.
MSRA is intended for collaborative helpdesk support rather than independent desktop login.

Key Concept

Default network ports and primary characteristics of remote access protocols and tools.
Question 206Question

As an IT security technician conducting awareness training, match each social engineering attack vector or threat type to its corresponding security incident description.

Click a left item, then click its matching right item

Items

Dumpster Diving
Shoulder Surfing
Typosquatting
Evil Twin

Matches

Show answer & explanation

Answer

Dumpster Diving corresponds to searching physical waste receptacles for printed documents. Shoulder Surfing corresponds to viewing a user's monitor or keypad to capture credentials. Typosquatting corresponds to registering misspelled domain names to redirect users to malicious portals. Evil Twin corresponds to deploying a rogue wireless access point that mimics a legitimate SSID.
Each social engineering vector is correctly linked to its primary mechanism: Dumpster Diving targets physical garbage bins for discarded paper documents; Shoulder Surfing uses visual line-of-sight observation to steal input credentials; Typosquatting exploits browser typing mistakes to direct users to malicious domains; and an Evil Twin uses spoofed wireless SSIDs to intercept device network traffic.

Step-by-Step Solution

1
Analyze physical collection threats
Identify Dumpster Diving as the practice of sifting through physical waste and un-shredded trash for sensitive information.
Dumpster diving relies on physical access to discarded paperwork rather than digital intrusion.
2
Analyze direct visual observation threats
Identify Shoulder Surfing as visually watching someone enter data or read private information.
Shoulder surfing requires direct line of sight to a computer screen, keypad, or mobile device.
3
Analyze Web URL and DNS manipulation threats
Identify Typosquatting (URL hijacking) as leveraging common spelling mistakes in web domain names.
Typosquatting takes advantage of human typing errors to present cloned login pages.
4
Analyze wireless network security threats
Identify Evil Twin as deploying a rogue Wi-Fi access point broadcasting a trusted network SSID.
Evil Twin attacks deceive devices into connecting automatically to a malicious Wi-Fi hotspot.

Key Concept

Social Engineering Methods and Threat Classifications
Estimated Time:1m 30s
Question 207Question

A system administrator is updating the corporate wireless security baseline and guest network policies. Match each wireless security protocol or feature on the left with its correct operational description or technical requirement on the right.

Click a left item, then click its matching right item

Items

RADIUS Server
WPA3 SAE
Captive Portal
802.1X

Matches

Show answer & explanation

Answer

RADIUS Server pairs with the centralized AAA backend server; WPA3 SAE pairs with the key exchange protocol protecting against offline dictionary attacks; Captive Portal pairs with the web interface requiring user agreement or login; and 802.1X pairs with the IEEE port-based network access control framework.
Each feature is correctly matched according to standard CompTIA A+ definitions: RADIUS performs backend AAA authentication, WPA3 SAE secures personal wireless handshakes against brute-force/dictionary attacks, Captive Portals manage guest web access enforcement, and 802.1X provides port-based authentication architecture.

Step-by-Step Solution

1
Analyze backend authentication services in enterprise environments.
Pair RADIUS Server with the centralized AAA backend definition.
RADIUS handles authentication requests sent from wireless authenticators (access points).
2
Evaluate WPA3 enhancements to personal security.
Pair WPA3 SAE with protection against offline dictionary attacks.
SAE utilizes Dragonfly handshake mechanism to ensure forward secrecy and brute-force resistance.
3
Identify web redirection mechanisms for guest access control.
Pair Captive Portal with the web interface intercepting network traffic.
Captive portals restrict network browsing until the user completes the browser landing page requirements.
4
Identify port-based access standards.
Pair 802.1X with the IEEE port-based access control framework.
802.1X defines port status (authorized/unauthorized) and encapsulates EAP packets across local media.

Key Concept

Wireless Authentication Protocols and Security Architecture
Question 208Question

Match each administrative or configuration scenario on the left with the corresponding Windows Control Panel utility on the right.

Click a left item, then click its matching right item

Items

Configuring full-disk encryption, backing up recovery keys, and managing drive volume status.
Enabling High Contrast mode, setting up Sticky Keys, and configuring screen magnifier options.
Modifying local account types, changing user passwords, and adjusting UAC notification levels.
Viewing active network interfaces, configuring IP settings on network adapters, and managing network discovery.

Matches

Show answer & explanation

Answer

Each administrative task correctly maps to its respective Windows Control Panel applet based on primary functionality: full-disk encryption maps to BitLocker Drive Encryption; accessibility tools map to Ease of Access Center; local credentials and UAC settings map to User Accounts; network interfaces and adapter settings map to Network and Sharing Center.
Each scenario maps directly to the specific Control Panel utility designated for that function in Windows: BitLocker Drive Encryption handles data protection and key backups; Ease of Access Center manages accessibility tools; User Accounts handles local credentials and UAC configuration; Network and Sharing Center handles network interfaces and connection properties.

Step-by-Step Solution

1
Identify the primary system administrative objective described in each scenario.
Categorize the four scenarios into storage security, accessibility, user account management, and network interface management.
Control Panel applets in Windows are grouped logically by function.
2
Match storage security operations (volume encryption and recovery key management) to BitLocker Drive Encryption.
Pair 1 corresponds to BitLocker Drive Encryption.
BitLocker is the dedicated Windows Control Panel applet for volume-level data protection.
3
Match accessibility tools (High Contrast, Sticky Keys, Magnifier) to Ease of Access Center.
Pair 2 corresponds to Ease of Access Center.
Ease of Access Center serves as the central hub for configuring assistive technology options.
4
Match local user options (account permissions, UAC slider) to User Accounts and network properties (IP setup, adapter configuration) to Network and Sharing Center.
Pair 3 corresponds to User Accounts, and Pair 4 corresponds to Network and Sharing Center.
User Accounts manages local identities and UAC, while Network and Sharing Center manages adapter profiles and connectivity.

Key Concept

Windows Control Panel Applets and Administrative Utilities
Question 209Question

A technician is updating an enterprise data disposition policy for retired equipment. Match each data destruction method to its correct operational application and effect.

Click a left item, then click its matching right item

Items

Degaussing
ATA Secure Erase
Physical Shredding
Drive Overwriting

Matches

Show answer & explanation

Answer

Degaussing corresponds to neutralizing magnetic domains on HDDs/tapes; ATA Secure Erase corresponds to firmware-level purging of SSD storage blocks; Physical Shredding corresponds to mechanical destruction of drive substrates; Drive Overwriting corresponds to replacing logical sectors with zero patterns for drive reuse.
Each disposal technique is properly aligned with its underlying storage technology and operational goals: Degaussing destroys magnetic alignment on magnetic media; ATA Secure Erase triggers onboard controller sanitization for flash media; Physical Shredding provides unrecoverable hardware destruction; and Drive Overwriting cleans magnetic media sectors while preserving hardware functionality for reuse.

Step-by-Step Solution

1
Identify magnetic-only destruction techniques.
Degaussing requires magnetic media (HDDs, tapes) and renders the drive inoperable by destroying its magnetic alignment and tracks.
Solid-state media does not use magnetic storage, so degaussing has no effect on SSDs.
2
Identify sanitization techniques specific to solid-state storage.
ATA Secure Erase reaches controller-level blocks on SSDs, clearing wear-leveled sectors that standard overwriting tools cannot access.
Standard wiping utilities cannot guarantee complete erasure on SSDs due to wear-leveling algorithms.
3
Differentiate reusable logical sanitization from non-reusable physical destruction.
Drive overwriting permits device reuse, whereas physical shredding destroys hardware completely.
CompTIA standards classify overwriting as sanitization for media reuse, while physical destruction is required for end-of-life disposal under stringent security requirements.

Key Concept

Data Destruction and Disposal Methods
Question 210Question

A field technician is diagnosing several video display and projector issues across an office site. Match each reported display symptom on the left to its correct hardware cause or corrective troubleshooting action on the right.

Click a left item, then click its matching right item

Items

A conference room projector shuts down unexpectedly after 10 minutes of operation and displays a flashing thermal indicator LED.
A laptop display remains dark during startup, but desktop icons can be dimly seen when a bright flashlight is pointed directly at the panel.
A ceiling-mounted projector displays an image that is noticeably wider at the top of the projection screen than at the bottom.
A graphics workstation displays persistent, multi-colored checkerboard patterns and rendering glitches across the screen during 3D applications.

Matches

Show answer & explanation

Answer

Each display symptom matches its respective root cause: 1) Thermal shutdown maps to clogged dust filters or blocked vents; 2) Faint image under flashlight light maps to a failed backlight inverter or illumination circuit; 3) Uneven top/bottom image width maps to keystone distortion needing alignment; 4) Graphical checkerboard artifacts map to failing VRAM or GPU hardware.
Each pair reflects an established hardware symptom-to-cause relationship in CompTIA A+ troubleshooting: thermal LED shutdowns correlate to blocked airflow; faint image under flashlight corresponds to inverter/backlight failure; unequal horizontal edges point to keystone distortion; and screen artifacting points to VRAM or GPU hardware fault.

Step-by-Step Solution

1
Analyze thermal shutdown symptom on the projector.
Identify that automatic power-offs paired with a thermal light stem from poor heat dissipation due to clogged dust filters or obstructed cooling vents.
Projectors contain internal thermal sensors that trigger an emergency shutdown to prevent lamp and chip damage when airflow is constricted.
2
Analyze the dark laptop screen with faint image visible under external lighting.
Determine that the liquid crystal display generates pixels correctly, but the backlight system (inverter/backlight) lacks power or has failed.
Shining a light directly onto the screen bypasses the defective internal backlight to reveal the functioning LCD screen contents underneath.
3
Analyze the trapezoidal distortion on the projector output.
Recognize that geometric distortion where top and bottom widths differ is fixed via keystone adjustment.
Keystone distortion occurs when the projector lens is not perfectly perpendicular to the projection surface.
4
Analyze graphical artifacts such as checkerboard patterns during graphics rendering.
Attribute persistent visual corruption to failing VRAM or an overheating GPU.
Hardware-level video memory corruption directly distorts rendered framebuffers stored on the expansion card.

Key Concept

Video, Display, and Projector Troubleshooting
Estimated Time:1m 30s
Question 211Question

A system administrator is auditing remote management capabilities and network protocols across a corporate environment. Match each remote access technology or protocol to its correct primary technical characteristic or default network port specification.

Click a left item, then click its matching right item

Items

Remote Desktop Protocol (RDP)
Secure Shell (SSH)
Microsoft Remote Assistance (MSRA)
Telnet

Matches

Show answer & explanation

Answer

Remote Desktop Protocol (RDP) pairs with TCP port 3389 and Windows Pro/Enterprise hosting requirements; Secure Shell (SSH) pairs with encrypted command-line access over TCP port 22; Microsoft Remote Assistance (MSRA) pairs with interactive desktop session sharing via user invitation; Telnet pairs with unencrypted clear-text terminal sessions over TCP port 23.
Each technology is correctly paired with its specific security features, network ports, and OS constraints: Remote Desktop Protocol (RDP) uses port 3389 and requires Windows Pro/Enterprise/Education for incoming host sessions; Secure Shell (SSH) encrypts terminal access on port 22; Microsoft Remote Assistance (MSRA) allows interactive user-invited desktop sharing across Windows editions; Telnet operates unencrypted over port 23.

Step-by-Step Solution

1
Identify the port and Windows edition requirements for Remote Desktop Protocol (RDP).
RDP uses TCP port 3389 and requires a Windows Pro, Enterprise, or Education edition to host incoming connections.
Windows Home edition can initiate RDP outbound connections but lacks the host service component to accept incoming RDP connections.
2
Determine the secure command-line administration protocol.
SSH provides encrypted shell traffic operating over TCP port 22.
SSH replaces unencrypted management protocols to protect administrative credentials across remote shell connections.
3
Differentiate MSRA from traditional incoming RDP host sessions.
MSRA allows interactive screen sharing with user invitation on all Windows editions, including Home.
MSRA relies on explicit user authorization and session sharing rather than establishing an unattended host session.
4
Identify the unencrypted legacy terminal protocol.
Telnet operates on TCP port 23 without encryption.
Telnet transmits all traffic, including username and password credentials, in plain text.

Key Concept

Remote Access Protocols, Port Numbers, and OS Edition Restrictions
Question 212Question

Match each mobile device or embedded system security control on the left with its corresponding technical implementation objective or enforcement capability on the right.

Click a left item, then click its matching right item

Items

MAM Application Containerization
MDM Sideloading Restriction Policy
Embedded Hardware Root of Trust
Full Device Remote Wipe

Matches

Show answer & explanation

Answer

MAM Application Containerization matches with corporate data segregation on BYOD hardware; MDM Sideloading Restriction Policy matches with blocking installation of unverified third-party app packages; Embedded Hardware Root of Trust matches with cryptographic validation of firmware signatures during boot; Full Device Remote Wipe matches with erasing all flash storage partitions to factory default state.
Each security control aligns directly with its primary technical role: Containerization isolates corporate data on BYOD hardware to enable targeted wipes; sideloading policies block unvetted third-party installation packages; hardware roots of trust cryptographically measure and verify embedded bootloader firmware before boot; and full remote wipes revert lost corporate hardware back to clean factory default states.

Step-by-Step Solution

1
Analyze BYOD security controls for enterprise app isolation
Identify MAM Application Containerization as the mechanism created to separate corporate data from personal data without full device erasure.
Containerization creates a logically isolated, encrypted storage area for corporate apps.
2
Determine mobile app distribution and execution policies
Map the MDM Sideloading Restriction Policy to blocking unverified third-party software packages.
Disabling sideloading prevents users from manually deploying unapproved or malicious APK/IPA installation files.
3
Examine low-level firmware and boot integrity controls for embedded systems
Link Embedded Hardware Root of Trust to signature validation of bootloader firmware during RTOS boot.
Hardware security modules establish an immutable chain of trust during system startup.
4
Evaluate enterprise response options for lost or stolen assets
Match Full Device Remote Wipe to the complete sanitation of flash storage partitions back to factory settings.
When a corporate-owned asset is compromised, a complete reset ensures no cached encryption keys or data remain.

Key Concept

Mobile Device and Embedded System Security Controls
Estimated Time:1m 30s
Question 213Question

Match each workstation hardening policy or control on the left to its corresponding primary risk mitigation objective on the right.

Click a left item, then click its matching right item

Items

Disabling unneeded services and open ports
Configuring screensaver password lock with timeout
Enforcing account lockout threshold policy
Disabling AutoRun and AutoPlay features

Matches

Show answer & explanation

Answer

Disabling unneeded services and ports reduces the system attack surface by removing active listening points. Setting a screensaver password lock protects against physical access on unattended systems. Enforcing account lockout threshold mitigates online brute-force password attacks. Disabling AutoRun and AutoPlay prevents malicious script execution from inserted USB drives.
Each hardening control directly addresses a distinct operational vulnerability: disabling unused services reduces attack surface, screensaver lock secures physical access, account lockout mitigates brute-force attacks, and disabling AutoRun blocks malicious removable media execution.

Step-by-Step Solution

1
Identify the primary threat vector targeted by disabling unused services and listening ports.
Disabling unneeded network protocols and background services directly minimizes unnecessary attack surface.
Fewer listening ports mean fewer entry points for network vulnerabilities.
2
Identify the primary threat vector targeted by password-protected screensaver timeouts.
Locks the interactive user session automatically after inactivity.
Prevents unauthorized physical users from accessing logged-in resources.
3
Identify the primary threat vector targeted by account lockout policies.
Limits maximum consecutive failed login attempts.
Blocks automated scripts trying thousands of password combinations.
4
Identify the primary threat vector targeted by disabling AutoRun/AutoPlay.
Prevents Windows from executing default autorun files on removable media.
Stops malicious drives from executing payload code without user intervention.

Key Concept

Workstation Hardening and Best Practices
Question 214Question

An IT administrator is preparing a security reference guide for mobile devices. Match each mobile security term on the left with its corresponding operational description on the right.

Click a left item, then click its matching right item

Items

Geofencing
Containerization
Sideloading
Remote Wipe

Matches

Show answer & explanation

Answer

Geofencing matches with restricting device access based on physical location boundaries; Containerization matches with separating enterprise data and applications from personal user storage; Sideloading matches with installing applications from third-party sources outside official app stores; Remote Wipe matches with sending a network signal to erase stored data on a missing or stolen device.
Each security term is paired with its precise industry-standard definition: Geofencing enforces location limits, Containerization segregates business assets, Sideloading describes untrusted app installation, and Remote Wipe executes data sanitization commands remotely.

Step-by-Step Solution

1
Identify the definition of Geofencing.
Matches location-based access control.
Geofencing relies on geographic coordinates to enable or restrict device features.
2
Identify the definition of Containerization.
Matches data separation on mobile devices.
Containerization isolates work profile data from personal data, which is essential for BYOD environments.
3
Identify the definition of Sideloading.
Matches non-official app store installations.
Sideloading bypasses standard vendor application stores, posing security risks.
4
Identify the definition of Remote Wipe.
Matches over-the-air device sanitization.
Remote wipe commands clear data to prevent unauthorized access to missing devices.

Key Concept

Mobile Device Security Controls
Estimated Time:1m 0s
Question 215Question

A network security administrator is standardizing wireless access controls across corporate headquarters and remote locations. Match each wireless security control or protocol to its primary operational feature.

Click a left item, then click its matching right item

Items

WPA3-Personal
WPA3-Enterprise
802.1X / RADIUS
Captive Portal

Matches

Show answer & explanation

Answer

WPA3-Personal matches Simultaneous Authentication of Equals (SAE); WPA3-Enterprise matches 192-bit cryptographic strength options; 802.1X / RADIUS matches centralized AAA authentication via EAP; Captive Portal matches web traffic interception for guest authentication/AUP acceptance.
Each wireless security mechanism is correctly paired to its underlying protocol or operational behavior: WPA3-Personal uses SAE to defend against offline dictionary attacks; WPA3-Enterprise provides optional 192-bit cryptographic mode; 802.1X/RADIUS supplies centralized AAA authentication using EAP; Captive Portal handles guest traffic redirection and policy acceptance.

Step-by-Step Solution

1
Analyze the personal vs enterprise authentication standards
Identify WPA3-Personal as utilizing SAE and WPA3-Enterprise as offering optional 192-bit cryptographic suites.
SAE provides robust protection against password cracking for shared passphrases, while Enterprise mode focuses on high-grade cryptographic suites.
2
Evaluate enterprise central authentication infrastructure
Associate 802.1X / RADIUS with centralized account management using EAP protocols.
802.1X provides port-based access control authenticating individual domain users against a central RADIUS server.
3
Determine guest access and policy enforcement methods
Link Captive Portal to web redirection for guest user authentication and AUP consent.
Captive portals manage guest access by intercepting HTTP/HTTPS traffic until access conditions are fulfilled.

Key Concept

Wireless Security Protocols and Authentication Frameworks
Question 216Question

An IT security analyst is cataloging recent security incident reports across different departments. Match each security threat scenario to its corresponding social engineering vector or attack classification.

Click a left item, then click its matching right item

Items

Whaling
Piggybacking
Hoax
Logic Bomb

Matches

Show answer & explanation

Answer

Whaling matches the executive-targeted phishing scenario; Piggybacking matches entry into a secured room with employee consent; Hoax matches the false security alert instructing users to delete files; Logic Bomb matches dormant malicious code waiting for a specific trigger condition.
Each attack type matches its defined characteristic operational behavior. Whaling targets top leadership; Piggybacking exploits physical entry courtesy with mutual knowledge; Hoaxes trick personnel using deceptive false warnings; Logic Bombs execute code based on specified temporal or logic triggers.

Step-by-Step Solution

1
Identify digital social engineering targeted by role.
Recognize that targeting C-level executives specifically for financial or corporate data theft is termed Whaling.
Whaling is a specialized sub-category of spear phishing designed to compromise high-value executive targets.
2
Analyze physical security social engineering vectors.
Differentiate Piggybacking (gaining access with consent/courtesy) from Tailgating (gaining access without consent/unnoticed).
Holding a door open intentionally for someone carrying boxes with their consent fits the exact definition of piggybacking.
3
Evaluate social engineering tactics leveraging false panic.
Identify that misleading users into causing self-harm to systems via fake warnings is classified as a Hoax.
Hoaxes exploit fear and urgency to manipulate personnel into deleting files or disrupting operations without using technical exploits.
4
Categorize software threat execution triggers.
Associate dormant code activated by event conditions (like employee status change or specific date) with a Logic Bomb.
Logic bombs execute malicious payloads based on boolean logical triggers built into the codebase.

Key Concept

Classification of Social Engineering and Threat Types
Question 217Question

Match each macOS system feature or Linux/macOS command-line utility to its primary administrative function.

Click a left item, then click its matching right item

Items

dd
NVRAM
lsof
Disk Utility

Matches

Show answer & explanation

Answer

dd matches low-level raw data copying and bootable media creation; NVRAM matches storing persistent macOS system configuration settings across reboots; lsof matches listing all active open files and associated process IDs; Disk Utility matches repairing file systems, partitioning drives, and managing disk images in macOS.
Each feature or utility is matched to its true function: dd is a low-level raw copying tool, NVRAM stores non-volatile system settings in macOS, lsof lists open files and process ties, and Disk Utility is the native macOS storage maintenance app.

Step-by-Step Solution

1
Identify the command-line utility for raw block copy tasks.
dd is recognized as the utility for bit-by-bit raw data copying.
Technicians use dd to write ISO images directly to USB drives or clone storage blocks.
2
Identify the persistent hardware memory area in macOS.
NVRAM holds low-level system configuration settings.
Resetting NVRAM resolves issues related to boot device selection, screen resolution, and audio settings.
3
Identify the process monitoring CLI command related to open handles.
lsof outputs active files opened by processes.
The name lsof stands for 'list open files', allowing technicians to identify locked files or active network sockets.
4
Identify the primary macOS GUI storage management application.
Disk Utility provides drive partitioning, wiping, and First Aid functionality.
It is the standard built-in GUI utility in macOS for drive diagnostics and volume formatting.

Key Concept

macOS and Linux Operating System Features and Tools
Question 218Question

Match each Windows administrative requirement or configuration task on the left with its corresponding Control Panel utility on the right.

Click a left item, then click its matching right item

Items

Configure LAN proxy settings and adjust security zone levels for web communication.
Set the default playback device and configure automatic audio attenuation during communication calls.
Access management consoles such as Component Services, Event Viewer, and Performance Monitor.
Configure user environment variables, virtual memory paging file sizes, and visual performance effects.

Matches

Show answer & explanation

Answer

Matching pairs: Configuring proxy settings matches Internet Options; Audio device and attenuation settings match Sound; Accessing MMC management consoles matches Windows Tools / Administrative Tools; Setting environment variables and virtual memory matches System.
Each task matches its correct Control Panel applet based on Windows OS architecture: Internet Options handles proxy server and security zone configurations; Sound manages playback, recording, and communication audio attenuation; Windows Tools (Administrative Tools) contains shortcuts to system administrative consoles like Event Viewer and Component Services; System provides access to advanced parameters including user environment variables and virtual memory allocation.

Step-by-Step Solution

1
Analyze each administrative requirement to determine its administrative scope within Windows.
Requirement 1 relates to web/LAN network connection settings; Requirement 2 controls audio hardware and communications attenuation; Requirement 3 involves administrative management shortcuts; Requirement 4 modifies core system performance and environment parameters.
Control Panel utilities are organized by distinct system management functions.
2
Associate each requirement with the governing Control Panel applet.
LAN proxy configuration belongs to Internet Options. Audio playback and attenuation belong to Sound. Administrative MMC consoles belong to Windows Tools / Administrative Tools. Virtual memory pagefile and environment variable configurations belong to System (Advanced System Settings).
Each utility hosts specific tabs and dialog boxes dedicated to its administrative domain.

Key Concept

Windows Control Panel Utilities navigation and functional scope
Question 219Question

An IT security analyst is updating compliance documentation across corporate mobile endpoints and industrial IoT deployment sites. Match each security mechanism on the left with its corresponding technical objective or operational enforcement capability on the right.

Click a left item, then click its matching right item

Items

Geofencing configuration
Mobile Application Management (MAM) containerization
Embedded IoT system hardening
Embedded Secure Element (eSE) hardware storage

Matches

Show answer & explanation

Answer

Geofencing configuration matches location-based trigger profile adjustments; MAM containerization matches enterprise app data isolation for selective wiping; Embedded IoT system hardening matches disabling unnecessary services and changing default credentials on micro-controllers; Embedded Secure Element hardware storage matches dedicated hardware coprocessor storage for cryptographic keys and biometrics.
Each concept correctly aligns with its core security objective: Geofencing automates policy changes using geographic location; MAM containerization segregates enterprise assets for targeted selective wiping; Embedded IoT system hardening mitigates vulnerability exposure on lightweight controllers by stripping default settings; and an Embedded Secure Element provides hardware-isolated cryptoprocessing.

Step-by-Step Solution

1
Analyze location-specific security enforcement features.
Identify that dynamic profile changes based on physical GPS coordinates define geofencing.
Geofencing uses positioning services to enforce security policies strictly within designated geographic boundaries.
2
Evaluate data protection strategies for BYOD environment app management.
Identify that isolating business data inside an encrypted sandbox for selective wipe matches MAM containerization.
Containerization separates work environments from personal data on mobile endpoints.
3
Examine device hardening steps unique to resource-constrained IoT/embedded hardware.
Identify that removing unneeded protocols, changing default passwords, and segmenting traffic via VLANs matches embedded IoT hardening.
Embedded systems often lack full OS security tools, requiring service reduction and credential management.
4
Review hardware-level root-of-trust components for mobile biometrics and encryption.
Identify that isolated tamper-proof chips for key and biometric storage match the embedded Secure Element (eSE).
Dedicated hardware coprocessors prevent key extraction even if the primary mobile OS is compromised.

Key Concept

Mobile Device and Embedded System Security
Question 220Question

A desktop technician is diagnosing several display and projector issues reported by users across an enterprise site. Match each reported display symptom on the left with its most likely root cause or required troubleshooting action on the right.

Click a left item, then click its matching right item

Items

A ceiling-mounted projector displays a trapezoidal image that is significantly wider at the top than at the bottom.
A gaming workstation display exhibits random colored blocks and screen tearing specifically during heavy 3D GPU rendering workloads.
A laptop screen appears totally dark, but faint desktop images become visible when a flashlight is aimed directly at the glass panel.
A desktop monitor displays a floating 'Input Signal Out of Range' message immediately after booting into the operating system.

Matches

Show answer & explanation

Answer

1. Projector trapezoidal distortion matches Keystone correction adjustment. 2. Workstation rendering artifacts match Overheating or failing video RAM (VRAM). 3. Faint laptop image under flashlight matches Failed backlight bulb or malfunctioning backlight inverter circuit. 4. 'Input Signal Out of Range' matches Operating system resolution or refresh rate set higher than supported limits.
Each display symptom maps directly to its hardware or configuration root cause: trapezoidal image distortion requires keystone alignment; load-dependent rendering artifacts are caused by failing or overheating GPU VRAM; faint screen imagery visible under flashlight light indicates a broken backlight or inverter; and floating out-of-range warnings occur when the OS applies an unsupported resolution or refresh rate.

Step-by-Step Solution

1
Analyze projector image geometry issue.
Identify that trapezoidal distortion stems from physical angle misalignment corrected via keystone adjustment.
Keystone correction digitally or mechanically reshapes the projected frame into a rectangular output.
2
Diagnose rendering artifacts occurring during GPU workload.
Correlate colored blocks and rendering glitches with GPU video memory overheating or degradation.
VRAM holds frame buffer data; corrupted video memory directly manifests as rendering artifacts.
3
Identify the cause of an unlit LCD screen displaying faint content.
Recognize that functional liquid crystals lacking screen illumination indicate a backlight or inverter circuit failure.
The backlight illuminates the LCD layer; without it, image details are only legible under direct external light.
4
Interpret the 'Input Signal Out of Range' monitor OSD warning.
Match the error to invalid OS display output parameters (excessive refresh rate or unsupported resolution).
The monitor scaler raises an out-of-range exception when pixel clock frequency exceeds built-in hardware specifications.

Key Concept

Video, Display, and Projector Troubleshooting
PreviousPage 11 / 27Next
All practice questions — CompTIA A+ (Core 1 & Core 2) | Examkin