Free CompTIA CS0-003 Exam Braindumps (page: 19)

A cybersecurity analyst notices unusual network scanning activity coming from a country that the company does not do business with.
Which of the following is the best mitigation technique?

  1. Geoblock the offending source country.
  2. Block the IP range of the scans at the network firewall.
  3. Perform a historical trend analysis and look for similar scanning activity.
  4. Block the specific IP address of the scans at the network firewall.

Answer(s): A



An analyst has received an IPS event notification from the SIEM stating an IP address, which is known to be malicious, has attempted to exploit a zero-day vulnerability on several web servers. The exploit contained the following snippet:
/wp-json/trx_addons/V2/get/sc_layout?sc=wp_insert_user&role=administrator
Which of the following controls would work best to mitigate the attack represented by this snippet?

  1. Limit user creation to administrators only.
  2. Limit layout creation to administrators only.
  3. Set the directory trx_addons to read only for all users.
  4. Set the directory V2 to read only for all users.

Answer(s): A



A penetration tester submitted data to a form in a web application, which enabled the penetration tester to retrieve user credentials.
Which of the following should be recommended for remediation of this application vulnerability?

  1. Implementing multifactor authentication on the server OS
  2. Hashing user passwords on the web application
  3. Performing input validation before allowing submission
  4. Segmenting the network between the users and the web server

Answer(s): C



A cybersecurity team lead is developing metrics to present in the weekly executive briefs. Executives are interested in knowing how long it takes to stop the spread of malware that enters the network.
Which of the following metrics should the team lead include in the briefs?

  1. Mean time between failures
  2. Mean time to detect
  3. Mean time to remediate
  4. Mean time to contain

Answer(s): C






Post your Comments and Discuss CompTIA CS0-003 exam prep with other Community members:

CS0-003 Exam Discussions & Posts