Free CompTIA CS0-003 Exam Braindumps (page: 5)

93.3% Passing Rate DOWNLOAD PDF EXAM
473 Questions & Answers
Page 5 of 120

An analyst finds that an IP address outside of the company network that is being used to run network and vulnerability scans across external-facing assets.
Which of the following steps of an attack framework is the analyst witnessing?

  1. Exploitation
  2. Reconnaissance
  3. Command and control
  4. Actions on objectives

Answer(s): B



An incident response analyst notices multiple emails traversing the network that target only the administrators of the company. The email contains a concealed URL that leads to an unknown website in another country.
Which of the following best describes what is happening? (Choose two.)

  1. Beaconing
  2. Domain Name System hijacking
  3. Social engineering attack
  4. On-path attack
  5. Obfuscated links
  6. Address Resolution Protocol poisoning

Answer(s): C,E



During security scanning, a security analyst regularly finds the same vulnerabilities in a critical application.
Which of the following recommendations would best mitigate this problem if applied along the SDLC phase?

  1. Conduct regular red team exercises over the application in production
  2. Ensure that all implemented coding libraries are regularly checked
  3. Use application security scanning as part of the pipeline for the CI/CD flow
  4. Implement proper input validation for any data entry form

Answer(s): C



An analyst is reviewing a vulnerability report and must make recommendations to the executive team. The analyst finds that most systems can be upgraded with a reboot resulting in a single downtime window.
However, two of the critical systems cannot be upgraded due to a vendor appliance that the company does not have access to.
Which of the following inhibitors to remediation do these systems and associated vulnerabilities best represent?

  1. Proprietary systems
  2. Legacy systems
  3. Unsupported operating systems
  4. Lack of maintenance windows

Answer(s): A






Post your Comments and Discuss CompTIA CS0-003 exam prep with other Community members:

CS0-003 Exam Discussions & Posts