Security
442 questions
Match each social engineering threat or attack vector on the left with its corresponding attack description on the right.
Click a left item, then click its matching right item
Items
Matches
While working on a company laptop in a public cafe, a remote employee notices an unfamiliar individual standing nearby and looking directly over their shoulder to observe credentials as they are typed. Which of the following social engineering threat types is occurring in this scenario?
Match each physical security control mechanism on the left with its primary protective function or implementation purpose on the right.
Click a left item, then click its matching right item
Items
Matches
A technician is installing a new wireless access point in a small home office that lacks a centralized RADIUS authentication server. The client requires a wireless security configuration that utilizes Advanced Encryption Standard (AES) for data privacy while authenticating users via a shared passphrase. Which of the following wireless security standards should the technician select?
A security engineer is hardening a pool of shared workstation computers running Windows 11 Enterprise. To mitigate insider threats, management mandates that standard users must never be allowed to elevate privileges or be presented with an administrator login prompt when executing unauthorized software. Which Security Options policy setting within the Security Settings node should the engineer configure to fulfill this requirement?
A cybersecurity technician is reviewing various security incident reports across an enterprise network. Match each threat type or social engineering vector on the left to its corresponding real-world incident description on the right.
Click a left item, then click its matching right item
Items
Matches
An IT technician is troubleshooting a newly deployed guest Wi-Fi network in a medical clinic. Guests are able to connect to the WPA3-Personal wireless network using a shared passphrase, but several patients report that their mobile devices can discover and attempt to access local network resources, including shared medical printer queues and other connected guest devices. Which of the following configurations should the technician enable on the wireless access point to isolate guest traffic and limit their access strictly to the internet?
A user logged into a Windows workstation attempts to install a signed device driver for a new peripheral. Before the installation script executes, the screen dims and a pop-up window appears requesting explicit confirmation to allow the app to make changes to the device. Which of the following Windows security features is responsible for generating this elevation prompt?
A network administrator is hardening Windows 11 Enterprise desktop images for a public library computer lab. The organization's security policy mandates two strict requirements: standard user accounts must be blocked from initiating any privilege elevation requests (preventing credential prompt pop-ups), and local administrators performing maintenance must receive a consent prompt on an isolated screen before executing elevated tasks. Which TWO policy settings under Local Security Policy (`secpol.msc`) should the administrator configure to satisfy these security requirements?
Select all that apply
A security technician is investigating a series of compromised user credentials in the accounting department. The investigation reveals that affected employees attempted to navigate to the corporate vendor portal at `vendorportal.com`, but accidentally mistyped the web address as `venderportal.com`. The misspelled website presented an identical mirrored login interface that captured the employees' domain credentials. Which of the following social engineering attack types best describes this threat?
Match each enterprise wireless security role to its correct function within an 802.1X network infrastructure.
Click a left item, then click its matching right item
Items
Matches
A system administrator is reviewing recent security incident reports involving distinct social engineering tactics across different corporate departments. Match each specific incident scenario on the left with the correct social engineering threat classification on the right.
Click a left item, then click its matching right item
Items
Matches
During a security audit at a financial consulting firm, a technician discovers that multiple workstations in the payroll department were infected with stealth malware. Logs show that all compromised users routinely visit an obscure, third-party state tax regulation portal to verify daily compliance updates. An attacker secretly compromised this trusted external portal and injected code that automatically redirects visiting payroll staff to a server hosting an exploit kit, executing malicious code on unpatched web browsers without requiring any user interaction or email link clicks. Which of the following attack vectors best describes this incident?
A helpdesk technician has successfully scanned and removed a malware infection from a user's Windows workstation. Which TWO actions should the technician perform next to complete the final steps of the CompTIA standard malware remediation process? (Select TWO.)
Select all that apply
A field technician is setting up network equipment inside an Intermediate Distribution Frame (IDF) closet located in a public hallway of a multi-tenant facility. Because the closet door must remain unlocked during business hours to comply with local building regulations, the technician needs to secure the physical hardware itself from unauthorized physical extraction and prevent unauthorized Ethernet connections. Which of the following physical security controls should the technician implement?
A desktop technician is hardening standalone Windows 11 Pro workstations. The security policy mandates that administrative users must explicitly re-enter their credentials on the Secure Desktop whenever an application requests elevated privileges. In what sequence should the technician perform the steps to configure this behavior via Local Security Policy?
Drag items to arrange them in the correct order
A network administrator is evaluating authentication methods and security protocols for a corporate wireless network deployment. Match each wireless security protocol or framework on the left with its defining technical requirement or operational feature on the right.
Click a left item, then click its matching right item
Items
Matches
A technician is reviewing incident reports following a security breach at a branch office. According to the investigation, an attacker called several employees pretending to be internal IT support to solicit user credentials over the telephone. Later that afternoon, the attacker entered the restricted server facility without a badge by closely following a worker who held the door open out of courtesy. Which of the following social engineering threat types were directly demonstrated in this scenario? (Select TWO).
Select all that apply
A network technician is configuring a wireless network for a corporate office. Company policy mandates that each employee must authenticate using their own individual domain credentials via a centralized RADIUS server, rather than sharing a pre-shared passphrase. Which of the following wireless security standards should the technician implement?
A systems administrator suspects that a Windows workstation on the corporate network is infected with a trojan after observing suspicious background network traffic. The administrator has already disconnected the workstation from the network to quarantine it and has disabled System Restore. According to the standard CompTIA malware remediation procedure, which of the following actions should the administrator take NEXT?