Tüm alıştırma soruları

521 soru

Soru 181Soru

Match each administrative maintenance scenario to the correct Windows Control Panel utility used to perform the configuration.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Configuring database driver connections and Data Source Names (DSNs) for a legacy 32-bit enterprise accounting client.
Rebuilding the system search catalog, specifying custom file extension indexing rules, and toggling full-text content search.
Viewing, modifying, or removing stored Windows Vault authentication tokens and saved domain/network share credentials.
Managing offline network folder cache settings, viewing file synchronization logs, and resolving file version conflicts.

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

The correct pairings are: 32-bit database driver configuration matches ODBC Data Sources; search catalog and file content indexing matches Indexing Options; managing vault network credentials matches Credential Manager; and managing offline folder conflicts matches Sync Center.
Each Control Panel utility performs a distinct system management role: ODBC Data Sources manages database connection DSNs; Indexing Options controls search scope, rebuilds, and file content parsing; Credential Manager oversees saved network and web authentication tokens; and Sync Center administers offline network files and synchronization conflict resolution.

Adım Adım Çözüm

1
Analyze the database configuration requirement.
Connecting legacy 32-bit applications to databases via DSNs requires the ODBC Data Sources applet.
ODBC (Open Database Connectivity) is the standard Windows interface for database connectivity management.
2
Analyze the search catalog and file extension requirement.
Configuring search behavior, file content indexing, and rebuilding catalogs is handled by Indexing Options.
Indexing Options directly controls Windows Search service targets and file property vs. content search rules.
3
Analyze stored authentication credentials.
Viewing and removing cached network share and web login tokens requires Credential Manager.
Credential Manager is the Windows Control Panel applet dedicated to managing saved Windows and Web credentials.
4
Analyze offline file cached paths and conflict resolution.
Handling Offline Files status and synchronization conflicts is performed in Sync Center.
Sync Center provides centralized control over network share caching, sync schedules, and conflict logs.

Anahtar Kavram

Windows Control Panel Administrative Utilities
Soru 182Soru

A cybersecurity technician is reviewing various security incident reports across an enterprise network. Match each threat type or social engineering vector on the left to its corresponding real-world incident description on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Typosquatting
Dumpster Diving
Logic Bomb
Smishing

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Typosquatting corresponds to registering lookalike web domains to exploit typing mistakes. Dumpster Diving corresponds to searching physical waste bins for un-shredded internal documents. Logic Bomb corresponds to dormant malicious code designed to execute upon specific system events or triggers. Smishing corresponds to using deceptive SMS text messages for phishing attacks.
Each attack vector accurately aligns with its defining operation: Typosquatting exploits browser address mistyping using lookalike domains; Dumpster Diving extracts physical papers from refuse areas; Logic Bombs run code conditionally upon specified triggers; and Smishing delivers phishing lures via mobile SMS messages.

Adım Adım Çözüm

1
Analyze the attack vectors to distinguish digital communication vectors from physical vectors and program logic threats.
Identify physical data retrieval (waste inspection), mobile messaging (SMS), web domain manipulation (URL mistyping), and automated code execution conditions.
CompTIA threat taxonomy categorizes social engineering and malware based on their delivery mechanism and target.
2
Associate each term with its primary delivery mechanism.
Typosquatting targets URL typing errors; Dumpster Diving targets physical disposal areas; Logic Bomb relies on conditional software triggers; Smishing relies on cellular text messages.
Accurate alignment ensures proper selection of security controls for remediation.

Anahtar Kavram

Social Engineering Techniques and Threat Classifications
Tahmini Süre:2m 0s
Soru 183Soru

Match each macOS feature or Linux command-line tool to its primary administrative function.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Time Machine
Spotlight
sudo
grep

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Time Machine pairs with automated native backup utility; Spotlight pairs with system-wide indexing search; sudo pairs with elevated administrative privilege execution; grep pairs with searching text patterns.
Each feature or tool is matched directly to its primary function: Time Machine handles automated backups in macOS; Spotlight provides desktop search and file indexing; sudo runs commands with root administrative rights; grep searches text for specified matching patterns.

Adım Adım Çözüm

1
Identify the purpose of the native macOS features.
Time Machine is responsible for incremental disk backups, while Spotlight serves as the desktop search and system indexing tool.
These are primary GUI-based administrative features specific to macOS.
2
Identify the purpose of the CLI utilities shared across Unix-like systems.
The sudo command elevates permissions to root level, while grep searches files and terminal streams for matching text strings.
These standard CLI utilities are essential for macOS and Linux administration.

Anahtar Kavram

macOS native tools and standard Linux command-line utilities
Soru 184Soru

Match each enterprise wireless security role to its correct function within an 802.1X network infrastructure.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Supplicant
Authenticator
Authentication Server

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Supplicant matches Client software or endpoint requesting access; Authenticator matches Wireless Access Point (WAP) relaying EAP messages; Authentication Server matches RADIUS server validating user credentials.
In an 802.1X architecture, the Supplicant requests network access, the Authenticator (WAP) relays authentication traffic, and the Authentication Server (RADIUS) evaluates credentials against the centralized database.

Adım Adım Çözüm

1
Identify the endpoint requesting connectivity.
The client device operating on the wireless network is defined as the Supplicant.
In the 802.1X standard, the device seeking network admission is the supplicant.
2
Identify the intermediary network device controlling access.
The Wireless Access Point serves as the Authenticator.
The access point acts as a gatekeeper, relaying EAPOL packets from the client to RADIUS format for the server.
3
Identify the database authority issuing authentication decisions.
The central server running RADIUS functions as the Authentication Server.
The AAA/RADIUS server compares submitted credentials against directory services like Active Directory to grant or deny access.

Anahtar Kavram

802.1X Wireless Framework Roles
Soru 185Soru

A system administrator is reviewing recent security incident reports involving distinct social engineering tactics across different corporate departments. Match each specific incident scenario on the left with the correct social engineering threat classification on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

An adversary injects malicious client-side code into a niche regional trade publication website routinely visited by the company's research team, causing visitors' browsers to silently download a payload.
An adversary contacts a database engineer via telephone while assuming a fabricated identity as a third-party compliance auditor, using fake audit ticket numbers to persuade the engineer to provide internal schema details.
An adversary registers a web domain that replaces the letter 'o' with a '0' in the company's Single Sign-On (SSO) login portal URL, successfully capturing credentials from employees who miskey the address.
An adversary sends a tailored, highly specific email to the Chief Financial Officer's executive assistant, referencing an ongoing confidential acquisition to trick the assistant into opening a weaponized file attachment.

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Watering Hole Attack matches the trade publication injection scenario; Pretexting matches the phone call with a fabricated auditor identity; Typosquatting matches the slightly miskeyed SSO portal domain; Spear Phishing matches the highly targeted email to the executive assistant.
Each attack scenario aligns with a specific CompTIA A+ threat definition based on its vector and mechanism: watering hole attacks leverage compromised frequented websites; pretexting relies on a invented background/persona; typosquatting relies on domain mistyping; and spear phishing uses customized targeted email content.

Adım Adım Çözüm

1
Analyze the trade publication injection scenario.
Identified as a Watering Hole Attack because the attacker compromised a trusted third-party website frequently visited by a specific targeted demographic.
Watering hole attacks target specific groups by infecting websites they naturally frequent rather than targeting them directly.
2
Analyze the phone call scenario involving the fake auditor identity.
Identified as Pretexting because the attacker created a complex scenario and fake persona to build trust and extract internal data.
Pretexting relies on crafting a deceptive story or persona to manipulate someone into releasing information.
3
Analyze the misspelled SSO portal domain scenario.
Identified as Typosquatting (URL hijacking) due to deliberate domain registration matching common typing errors.
Typosquatting exploits human typographical errors when entering web addresses into browsers.
4
Analyze the customized email scenario sent to the executive assistant.
Identified as Spear Phishing because it is a tailored email attack targeted at a specific individual using specific internal context.
Spear phishing differs from mass phishing by customizing content for high-value individuals or specific personnel within an organization.

Anahtar Kavram

Distinguishing distinct social engineering vector characteristics and attack methodologies in corporate IT environments.
Tahmini Süre:2m 0s
Soru 186Soru

A network administrator is evaluating authentication methods and security protocols for a corporate wireless network deployment. Match each wireless security protocol or framework on the left with its defining technical requirement or operational feature on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

EAP-TLS
PEAP / EAP-TTLS
WPA3-Personal (SAE)
802.1X with RADIUS

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

EAP-TLS matches mutual certificate authentication; PEAP / EAP-TTLS matches tunneled authentication with server-side certificates; WPA3-Personal (SAE) matches key exchange resistant to offline dictionary attacks; 802.1X with RADIUS matches centralized port-based access control.
Each protocol or framework is accurately paired with its primary technical requirement: EAP-TLS relies on mutual certificates, PEAP/EAP-TTLS tunnels password authentication via a server certificate, WPA3-Personal employs SAE to protect against dictionary attacks, and 802.1X with RADIUS provides centralized port-based network authentication.

Adım Adım Çözüm

1
Identify the authentication requirements for mutual certificate-based EAP frameworks.
EAP-TLS requires certificates installed on both the client and server for mutual authentication.
EAP-TLS is uniquely defined by dual-sided certificate verification.
2
Differentiate tunneled EAP methods that simplify client onboarding.
PEAP and EAP-TTLS require only a server certificate to establish a secure tunnel for user credentials.
This avoids managing client-side certificates while securing password transmission.
3
Analyze key authentication mechanisms in modern WPA3 standards.
WPA3-Personal uses SAE (Simultaneous Authentication of Equals) to protect pre-shared key exchanges.
SAE provides forward secrecy and protects against offline password guessing.
4
Determine the overarching access control architecture for enterprise wireless networks.
802.1X with RADIUS handles port-based access control and relays EAP packets to a centralized directory server.
802.1X acts as the authentication framework transport mechanism.

Anahtar Kavram

Wireless Authentication Frameworks and Protocol Characteristics
Soru 187Soru

Match each Windows administrative scenario with the most appropriate management utility or snap-in used to accomplish the task.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Configuring account lockout policies, group memberships, and password expiration settings for local accounts on a standalone workstation.
Reviewing system stability trends, application crashes, and Windows update history over a chronological timeline.
Creating a system Data Source Name (DSN) to connect a database application to a local SQL engine.
Configuring an automated script to execute automatically whenever a specific system Event ID occurs.

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Local account administration maps to Local Users and Groups (lusrmgr.msc); reviewing historical stability trends maps to Reliability Monitor; database connection DSN configuration maps to ODBC Data Sources (odbcad32.exe); and event-triggered task automation maps to Task Scheduler (taskschd.msc).
Each scenario maps precisely to its dedicated administrative tool: Local Users and Groups controls local user security properties, Reliability Monitor charts historical stability trends, ODBC Data Sources configures application database connection strings, and Task Scheduler automates tasks based on time or event conditions.

Adım Adım Çözüm

1
Identify the primary administrative objective for each listed scenario.
Categorize tasks into user account management, stability analysis, database connection provisioning, and task automation.
Windows separates management functionality across dedicated consoles and tools.
2
Match user management tasks to local security utilities.
Configuring local accounts and group membership maps directly to Local Users and Groups snap-in.
Local Users and Groups controls local user properties and rights on non-domain Windows Professional/Enterprise installations.
3
Match diagnostic and troubleshooting scenarios to appropriate performance/stability utilities.
Timeline-based stability and crash history reviews map to Reliability Monitor.
Reliability Monitor consolidates event logs into a daily stability index and graphical trend chart.
4
Match database and automation requirements to specialized utilities.
DSN configuration maps to ODBC Data Sources, while Event ID-triggered execution maps to Task Scheduler.
ODBC manages database connection drivers, while Task Scheduler automates operations based on event triggers.

Anahtar Kavram

Windows Administrative Consoles and System Management Utilities
Soru 188Soru

Match each macOS system feature or Linux/macOS command-line tool to its primary administrative function.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

df -h
sudo chown -R
FileVault
SMC reset

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

'df -h' matches displaying file system disk space in human-readable units; 'sudo chown -R' matches recursively changing file/directory ownership under superuser rights; 'FileVault' matches enabling full-disk encryption on macOS volumes; 'SMC reset' matches resolving low-level hardware power and thermal fan issues.
Each tool matches its definitive system administration role: 'df -h' displays storage volume usage in human-readable format; 'sudo chown -R' recursively modifies file ownership across directory trees under superuser permissions; 'FileVault' provides native macOS full-disk encryption; and an SMC reset restores low-level power and thermal management functions.

Adım Adım Çözüm

1
Analyze storage monitoring CLI tools
Map 'df -h' to the display of mounted file system disk utilization formatted in human-readable sizes (GB/MB).
The 'df' (disk free) utility checks overall volume utilization, and the '-h' flag converts raw block counts to human-readable units.
2
Analyze file system administrative CLI utilities
Map 'sudo chown -R' to recursively modifying file and directory ownership.
The 'chown' utility alters user/group ownership, the '-R' option traverses directories recursively, and 'sudo' ensures execution with elevated administrative rights.
3
Analyze macOS native security tools
Map 'FileVault' to full-disk volume encryption.
FileVault is the native macOS feature that encrypts the system disk to protect stored data from unauthorized access.
4
Analyze macOS hardware troubleshooting utilities
Map 'SMC reset' to restoring low-level power and thermal management features.
The System Management Controller (SMC) manages physical subsystem controls including thermal cooling fans, power button responsiveness, and battery charging logic.

Anahtar Kavram

macOS features and Linux command-line tools for storage management, security, file administration, and hardware troubleshooting.
Soru 189Soru

Match each security incident description on the left with the corresponding social engineering or threat type on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

An unauthorized individual carrying heavy equipment boxes asks an authorized employee to hold open a secure badge-access entrance.
A technician receives an email directing them to a malicious administrative portal featuring a domain name with a transposed character.
A remote worker receives a phone call from an attacker impersonating internal IT helpdesk staff requesting credential verification to resolve a pending ticket.
A malicious script installed on a database server is configured to execute and wipe records if a specific employee user account remains inactive for 30 days.

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Holding a door open with permission describes Piggybacking. A spoofed URL with a transposed character describes Typosquatting. Impersonating IT personnel over the phone describes Pretexting. Code triggered by account inactivity describes a Logic bomb.
Each attack scenario matches its specific threat classification based on method and vector: Piggybacking relies on social courtesy for physical access, Typosquatting exploits web address spelling mistakes, Pretexting creates a fake persona/scenario to manipulate targets, and a Logic bomb executes malicious payloads when specific logical conditions occur.

Adım Adım Çözüm

1
Analyze physical entry vectors.
Identified physical entry where the attacker uses a fake reason (holding heavy boxes) to obtain consent to enter past a badge reader as Piggybacking.
Unlike tailgating, piggybacking relies on the explicit cooperation or courtesy of an authorized user.
2
Analyze domain-based attack vectors.
Identified domain misspelling intended to deceive users into visiting a fake login page as Typosquatting.
Typosquatting relies on user typographical mistakes when typing web addresses.
3
Analyze phone-based social engineering scenarios.
Identified credential solicitation under the guise of an IT support technician resolving a ticket as Pretexting.
Pretexting involves establishing a believable pretext or fake identity to elicit confidential data.
4
Analyze programmatic threat execution conditions.
Identified dormant malicious code set to execute under specific logical conditions as a Logic bomb.
Logic bombs execute payload actions only when predetermined criteria (e.g., time elapsed, missing account activity) are met.

Anahtar Kavram

Social Engineering Tactics and Threat Vectors
Soru 190Soru

A corporate IT technician is reviewing several recent security incident logs and employee reports across different departments. Match each security incident scenario on the left with its corresponding social engineering or threat classification on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

A targeted email sent specifically to the Chief Financial Officer containing personalized information to trick them into approving an urgent wire transfer.
An attacker compromises a niche industry news portal regularly visited by the company's software engineers to quietly infect their systems with malware.
A fake company-wide alert email claiming a severe zero-day vulnerability exists and instructing employees to manually delete a vital operating system file.
Infected USB flash drives labeled 'Executive Compensation Review' left in the company breakroom to entice curious employees to plug them into workstation computers.

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

The targeted email to the CFO matches Whaling; the compromised industry portal matches Watering hole attack; the fake alert urging deletion of system files matches Security hoax; and leaving labeled USB drives in the breakroom matches Baiting.
Each attack vector relies on distinct delivery mechanisms and victim targets. Whaling targets high-profile executives like the CFO. Watering hole attacks infect popular third-party sites used by target employees. Security hoaxes trick users into taking self-destructive actions via false alarms. Baiting uses physical objects like flash drives to entice user interaction.

Adım Adım Çözüm

1
Analyze the target and vector of the first scenario involving the CFO.
Identified high-level executive targeting for financial wire transfer fraud.
Whaling specifically describes phishing aimed at high-ranking executives (C-level officers).
2
Examine the compromised third-party news portal scenario.
Identified strategic web compromise of a site frequently visited by target staff.
Watering hole attacks infect trusted websites commonly frequented by a target group rather than attacking the company network directly.
3
Evaluate the fake security email instructing file deletion.
Identified psychological manipulation leading to intentional user self-harm.
Security hoaxes create false sense of urgency to trick users into harming their own systems.
4
Review the physical USB flash drive scenario in the breakroom.
Identified physical media baiting attempting to exploit curiosity.
Baiting involves leaving malware-laden physical media in accessible places to lure targets into connecting them.

Anahtar Kavram

Social Engineering Tactics and Threat Classifications
Soru 191Soru

Match each physical security control mechanism on the left with its primary protective function or implementation objective on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Air gap
Security guard
Bollard
Smart card reader with PIN pad

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Air gap matches physical isolation from network connections; Security guard matches providing real-time human discretion against tailgating; Bollard matches preventing vehicular impact; Smart card reader with PIN pad matches multi-factor physical entry authentication.
Air gaps enforce absolute physical network isolation; security guards offer dynamic human judgment to stop tailgating and monitor entry points; bollards physically obstruct vehicle ramming attempts; and smart card readers combined with PIN pads enforce multi-factor authentication (something you have plus something you know) for secure area access.

Adım Adım Çözüm

1
Identify the primary threat vector or physical barrier mechanism for each mechanism on the left.
Air gap deals with network isolation; Security guard provides human monitoring; Bollards address vehicle threats; Smart card + PIN provides two-factor access control.
Each physical security control target matches a distinct physical or operational vulnerability.
2
Match each physical control to its exact protective function.
Pair Air gap to total network disconnection, Security guard to active human anti-tailgating enforcement, Bollard to vehicle defense, and Smart card with PIN pad to multi-factor entry control.
Accurate pairing ensures correct mapping of physical controls to enterprise security goals.

Anahtar Kavram

Physical Security Controls
Soru 192Soru

Match each storage data destruction or sanitization method on the left with its corresponding operational description on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Degaussing
Cryptographic Erase
Physical Shredding
Standard Overwriting

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Degaussing matches applying magnetic fields to magnetic drives; Cryptographic Erase matches deleting the encryption key on self-encrypting storage; Physical Shredding matches mechanically cutting media into fragments; Standard Overwriting matches replacing sectors with non-sensitive data for media reuse.
Each data disposal technique matches its specific media and operational mechanism: Degaussing disrupts magnetic domains on HDDs; Cryptographic Erase destroys decryption keys on self-encrypting solid-state drives; Physical Shredding mechanically pulverizes storage devices; and Standard Overwriting replaces readable sectors with non-sensitive patterns for device reuse.

Adım Adım Çözüm

1
Identify magnetic-specific sanitization techniques
Degaussing relies on electromagnetic forces to sanitize magnetic HDDs and tapes.
Degaussing disrupts magnetic domains and is only effective on magnetic media, not solid-state storage.
2
Identify solid-state sanitization methods
Cryptographic Erase destroys the decryption key on self-encrypting SSDs.
Erasing the key instantly invalidates the encrypted ciphertext stored on flash chips.
3
Distinguish physical destruction from logical clearing
Physical shredding destroys hardware to prevent reuse, while standard overwriting replaces sector data so media can be reused.
Shredding is a physical disposal method, whereas overwriting is a logical clearing method.

Anahtar Kavram

Data Destruction and Disposal Methods
Soru 193Soru

A network technician is performing routine maintenance and connectivity troubleshooting on Windows 11 client workstations. Match each Windows networking command-line tool or applet shortcut on the left to its correct administrative function on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

ipconfig /flushdns
netsh wlan show profiles
ncpa.cpl
ipconfig /release

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

The correct pairings are: 'ipconfig /flushdns' matches clearing the local DNS client resolver cache; 'netsh wlan show profiles' matches listing saved wireless network profiles; 'ncpa.cpl' matches launching the Network Connections Control Panel applet; and 'ipconfig /release' matches sending a DHCPRELEASE message to forfeit the active IP address lease.
Each item corresponds to a specific Windows client network management feature: 'ipconfig /flushdns' purges cached DNS name resolutions; 'netsh wlan show profiles' displays configured wireless networks; 'ncpa.cpl' opens the legacy Network Connections applet directly; and 'ipconfig /release' informs the DHCP server that the client is relinquishing its active IPv4 lease.

Adım Adım Çözüm

1
Analyze each Windows CLI switch and Control Panel applet name.
Identify the distinct networking sub-system targeted by each tool (DNS cache, Wi-Fi profiles, adapter GUI management, DHCP leasing).
Windows networking utilities serve specific, non-overlapping roles during configuration and diagnostics.
2
Pair each command with its administrative function.
Match ipconfig /flushdns to DNS clearing, netsh wlan show profiles to wireless profile enumeration, ncpa.cpl to Network Connections, and ipconfig /release to DHCP lease forfeiture.
Accurate tool identification is necessary for effective network troubleshooting and administration.

Anahtar Kavram

Windows Client Networking Diagnostic Tools and Command-Line Switches
Soru 194Soru

A network security administrator is standardizing wireless security protocols and access controls across corporate offices, remote sites, and guest facilities. Match each wireless security protocol or access control mechanism on the left with its primary technical function on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

EAP-TLS
SAE (Simultaneous Authentication of Equals)
RADIUS Server
Captive Portal

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

EAP-TLS matches with enforcing mutual authentication via digital certificates on both client and server; SAE matches with replacing pre-shared key handshakes in WPA3 to protect against offline dictionary attacks; RADIUS Server matches with acting as the central authentication authority in an 802.1X enterprise framework; Captive Portal matches with intercepting unauthenticated web traffic on guest networks to present a web login or acceptance page.
Each protocol or mechanism directly corresponds to its core functional purpose: EAP-TLS leverages dual X.509 certificates for mutual authentication; SAE uses the Dragonfly protocol in WPA3-Personal to resist dictionary attacks; RADIUS provides backend authentication services in 802.1X deployment models; and a Captive Portal redirects unauthenticated browser traffic to a web landing page.

Adım Adım Çözüm

1
Analyze enterprise EAP methods
Identify EAP-TLS as requiring digital certificates installed on both the client device and server for mutual authentication.
Unlike PEAP which only mandates server-side certificates, EAP-TLS strictly enforces dual-sided certificate validation.
2
Evaluate WPA3 personal authentication advancements
Map SAE (Simultaneous Authentication of Equals) to WPA3-Personal security enhancements.
SAE replaces the vulnerable WPA2 4-way PSK handshake with a zero-knowledge proof method that resists offline passphrase cracking.
3
Distinguish central AAA infrastructure from guest network access controls
Identify RADIUS as the central AAA backend for 802.1X user verification and Captive Portal as the web redirection control for guest access.
RADIUS handles centralized credential lookups, while Captive Portals isolate unauthenticated web sessions prior to internet access.

Anahtar Kavram

Wireless Authentication Protocols and Enterprise Security Controls
Soru 195Soru

Match each observed printer defect or operational symptom on the left to its most probable underlying hardware cause on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

A laser printer produces faint, evenly spaced repeated images of previously printed text down the length of each page.
A thermal receipt printer feeds paper normally during a transaction but outputs completely blank receipts.
An inkjet printer outputs documents with missing horizontal lines and distorted colors despite full ink cartridges.
An impact dot-matrix printer produces clear print on the left margin, but text progressively fades toward the right margin.

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Laser ghosting matches worn wiper blade / drum charge issue; blank thermal receipts match paper installed backwards; inkjet missing lines match clogged printhead nozzles; dot-matrix horizontal fading matches uneven platen gap distance.
Each printer technology exhibits distinct failure signatures: laser ghosting indicates drum clearing issues; blank thermal receipts point to reversed media installation; horizontal streaks on inkjet point to clogged nozzles; and progressive fading on dot-matrix pages indicates uneven platen spacing.

Adım Adım Çözüm

1
Analyze repeating ghosting on laser printouts.
Link repeating faint artifacts to photosensitive drum clearing failure (wiper blade / primary charge roller).
Repeated text matching the circumference of the drum means previous charge or toner wasn't fully cleared.
2
Analyze blank output on thermal receipt printers.
Link total lack of print marks to paper orientation.
Thermal paper requires direct contact between the chemically coated side and the thermal printhead.
3
Analyze missing horizontal lines on inkjet output.
Link line dropouts to printhead nozzle obstruction.
Dried ink blocks nozzle openings, preventing liquid ink droplets from reaching paper evenly.
4
Analyze left-to-right print density degradation on impact printers.
Link gradient fading to mechanical platen gap misalignment.
Impact print pins rely on consistent physical proximity to the ribbon and platen across the entire width of the carriage rod.

Anahtar Kavram

Identifying symptom-to-component mappings across laser, thermal, inkjet, and impact printer technologies.
Soru 196Soru

An IT technician is updating the company's storage media disposition policy to ensure compliance with NIST data security standards across different drive types and physical conditions. Match each data destruction method on the left with its appropriate operational description on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Degaussing
Cryptographic Erase
Industrial Shredding
Overwriting (Zero-Fill)

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Degaussing matches exposing magnetic media to electromagnetic fields. Cryptographic Erase matches deleting the media encryption key on self-encrypting SSDs/NVMe drives. Industrial Shredding matches mechanically cutting storage media into minute particles. Overwriting matches writing continuous patterns of zeroes across addressable sectors for safe drive redeployment.
Each data destruction method directly corresponds to its target mechanism: Degaussing disrupts magnetic domain alignment on magnetic drives; Cryptographic Erase destroys internal decryption keys on encrypted flash storage; Industrial Shredding physically pulverizes media; and Overwriting replaces data blocks with zeroes on working drives intended for reuse.

Adım Adım Çözüm

1
Identify the underlying technology of the storage media (magnetic vs. flash storage).
Recognize that magnetic drives (HDDs, tapes) respond to electromagnetic fields, whereas flash drives (SSDs, NVMe) utilize semiconductor transistors unaffected by magnetic force.
Matching degaussing specifically to magnetic media and cryptographic erase to encrypted flash storage prevents invalid sanitization selections.
2
Evaluate hardware lifecycle goals (device reuse versus physical destruction).
Determine that functional drives intended for redeployment require non-destructive sanitization such as zero-fill overwriting or cryptographic erase, while defective drives require physical shredding.
Ensures data security compliance while optimizing hardware asset disposal policies.
3
Pair each destruction technique with its primary operational mechanism.
Link Degaussing to electromagnetic domain neutralization, Cryptographic Erase to key purging, Shredding to particle disintegration, and Overwriting to sector zero-filling.
Establishes accurate alignment with CompTIA A+ guidelines for data destruction and disposal.

Anahtar Kavram

Selecting proper data sanitization and physical disposal methods based on media architecture (magnetic vs. solid-state) and functional state.
Soru 197Soru

As an IT security technician reviewing recently logged security events across the organization, match each security incident scenario to its corresponding social engineering or threat classification.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Shoulder Surfing
Dumpster Diving
Watering Hole Attack
Typosquatting

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Shoulder Surfing matches the observation of PIN entry. Dumpster Diving matches searching un-shredded trash bins. Watering Hole Attack matches compromising a heavily visited industry website. Typosquatting matches mistyping a domain URL to land on a spoofed site.
Each attack vector accurately maps to its defined operation: shoulder surfing focuses on visual observation of data input; dumpster diving searches physical waste for information; watering hole attacks compromise trusted third-party sites; and typosquatting leverages common domain name spelling errors.

Adım Adım Çözüm

1
Analyze physical observation threat vectors
Secretly observing credential input from across the room describes direct visual observation, which is shoulder surfing.
Recognizing physical visibility vulnerabilities.
2
Identify physical paper document theft methods
Searching through un-shredded corporate waste containers outside a facility fits the definition of dumpster diving.
Differentiating physical disposal security breaches from digital attacks.
3
Evaluate web-based targeted infection strategies
Compromising a third-party site known to be visited by targets to deliver malware is a strategic web compromise (watering hole attack).
Distinguishing strategic target compromise from mass phishing.
4
Evaluate domain mistyping attacks
Relying on user typing mistakes to present fake sites is typosquatting.
Connecting URL input errors with spoofing mechanisms.

Anahtar Kavram

Classification of physical and digital social engineering threat vectors
Soru 198Soru

Match each physical security control mechanism on the left with its primary protective objective on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Access control vestibule
Privacy filter
Vehicle bollard
Cable lock

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Access control vestibule matches with mitigating tailgating via interlocking doors. Privacy filter matches with narrowing screen viewing angles to prevent shoulder surfing. Vehicle bollard matches with preventing vehicular ramming attacks. Cable lock matches with anchoring hardware to immovable fixtures to prevent physical equipment theft.
Each physical security control serves a specific defense objective: access control vestibules prevent tailgating by enforcing single-person entry through interlocking doors; privacy filters block shoulder surfing by narrowing monitor viewing angles; vehicle bollards absorb vehicle impacts to protect building structures; and cable locks physically secure hardware assets to permanent fixtures to prevent physical equipment theft.

Adım Adım Çözüm

1
Identify the primary protective function of an access control vestibule
Access control vestibules utilize dual interlocking doors to allow access to only one person at a time.
This directly mitigates tailgating (piggybacking) by unauthorized personnel into sensitive areas.
2
Identify the primary protective function of a privacy filter
Privacy filters polarize or restrict screen light output to narrow viewing angles.
This prevents visual eavesdropping or shoulder surfing by passersby.
3
Identify the primary protective function of a vehicle bollard
Bollards act as heavy vertical perimeter barriers engineered to withstand kinetic impact.
They protect building entrances and exterior walls from vehicle ramming attacks.
4
Identify the primary protective function of a cable lock
Cable locks secure computing hardware to sturdy, stationary objects.
They inhibit opportunistic physical theft of portable or stationary hardware assets.

Anahtar Kavram

Physical Security Controls
Tahmini Süre:1m 30s
Soru 199Soru

Match each workstation security hardening requirement or administrative objective to the most appropriate Windows configuration control or security feature that implements it.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Prevent users from mounting external USB mass storage drives while continuing to allow USB mice and keyboards to function
Mitigate OS-level credential harvesting and memory scraping techniques targeting LSASS secrets
Automatically lock an unattended user workstation when a paired mobile device leaves the immediate physical area
Prevent unauthenticated code execution triggered automatically upon inserting optical or flash media

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

The hardening requirements map directly to their corresponding controls: prohibiting USB mass storage while retaining human interface devices corresponds to configuring Removable Storage Access policies in GPO; protecting LSASS from memory scraping corresponds to enabling Credential Guard with VBS; automatically locking an unattended desktop via Bluetooth proximity corresponds to Dynamic Lock; and disabling automated code launch from inserted media corresponds to disabling AutoPlay and AutoRun policies.
Each security requirement aligns with its specific technical implementation. Denying USB storage access while preserving keyboards/mice relies on GPO Removable Storage Access restrictions. Protecting LSASS memory from administrative privilege abuse requires Credential Guard with VBS. Proximity-based session locking uses Bluetooth Dynamic Lock. Preventing automatic binary launch on volume mount is accomplished by disabling AutoPlay and AutoRun.

Adım Adım Çözüm

1
Analyze USB mass storage blocking requirements vs peripheral functionality
Disabling device driver installation entirely would break mice and keyboards. Removable Storage Access GPOs target specific device classes, denying storage access while leaving HIDs operational.
Granular policy enforcement allows administrators to restrict removable storage without impairing standard USB input peripherals.
2
Analyze LSASS memory protection techniques
Standard access control lists do not stop elevated processes from reading LSASS memory. Credential Guard employs Virtualization-based Security (VBS) to isolate LSASS tokens outside the standard OS kernel.
VBS isolates secrets in a hardware-secured environment, rendering memory scraping tools ineffective even when running with administrative rights.
3
Evaluate automated physical walk-away locking options
Dynamic Lock uses paired Bluetooth device RSSI signal attenuation to detect user absence and trigger a lock command.
This provides defense-in-depth for physical security when users fail to manually lock their desktops.
4
Evaluate automatic media execution controls
Disabling AutoPlay and AutoRun globally stops automatic parsing and launching of scripts or binaries embedded in newly inserted media.
AutoRun and AutoPlay policies directly govern automatic file handler triggers upon drive volume mounting.

Anahtar Kavram

Workstation Hardening and Best Practices
Tahmini Süre:3m 0s
Soru 200Soru

Match each mobile device and embedded system security feature on the left with its correct operational description or purpose on the right.

Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın

Öğeler

Containerization
Remote Wipe
Geofencing
Sideloading

Eşleşmeler

Cevabı ve açıklamayı göster

Cevap

Containerization matches with isolating corporate data from personal data. Remote Wipe matches with remotely erasing sensitive company information. Geofencing matches with using location services to enforce security policies. Sideloading matches with installing applications from sources outside official app stores.
Each feature corresponds to its specific mobile device management function: Containerization provides storage separation, Remote Wipe provides loss response security, Geofencing provides location-aware security rules, and Sideloading represents untrusted application installation.

Adım Adım Çözüm

1
Identify the primary purpose of Containerization.
Matches with isolating corporate data and applications from personal data.
Containerization isolates work assets within a secure, encrypted sandbox on mobile devices.
2
Identify the primary function of Remote Wipe.
Matches with remotely erasing sensitive company information or restoring factory settings.
Remote wipe prevents data breaches when mobile hardware is lost or stolen.
3
Identify the primary function of Geofencing.
Matches with using location services to enforce security policies based on physical boundaries.
Geofencing dynamically enables or disables features depending on geographical coordinates.
4
Identify the definition of Sideloading.
Matches with installing applications directly from sources outside official app stores.
Sideloading introduces security risks by circumventing official app vetting processes.

Anahtar Kavram

Mobile Device Security Management Features
Tahmini Süre:1m 0s
ÖncekiSayfa 10 / 27Sonraki
Tüm alıştırma soruları — CompTIA A+ (Core 1 & Core 2) | Examkin