Act now and download your today! Do not waste time for the worthless tutorials. Download with real questions and answers and begin to learn with a classic professional.
CompTIA SY0-501 Free Dumps Questions Online, Read and Test Now.
NEW QUESTION 1
Which of the following is commonly done as part of a vulnerability scan?
- A. Exploiting misconfigured applications
- B. Cracking employee passwords
- C. Sending phishing emails to employees
- D. Identifying unpatched workstations
Answer: D
NEW QUESTION 2
An external attacker can modify the ARP cache of an internal computer. Which of the following types of attacks is described?
- A. Replay
- B. Spoofing
- C. DNS poisoning
- D. Client-side attack
Answer: B
NEW QUESTION 3
As part of a new BYOD rollout, a security analyst has been asked to find a way to securely store company data on personal devices. Which of the following would BEST help to accomplish this?
- A. Require the use of an eight-character PIN.
- B. Implement containerization of company data.
- C. Require annual AUP sign-off.
- D. Use geofencing tools to unlock devices while on the premises.
Answer: B
NEW QUESTION 4
A vice president at a manufacturing organization is concerned about desktops being connected to the network. Employees need to log onto the desktops' local account to verify that a product is being created within specifications; otherwise, the desktops should be as isolated as possible. Which of the following is the BEST way to accomplish this?
- A. Put the desktops in the DMZ.
- B. Create a separate VLAN for the desktops.
- C. Air gap the desktops.
- D. Join the desktops to an ad-hoc network.
Answer: C
NEW QUESTION 5
When it comes to cloud computing, if one of the requirements for a project is to have the most control over the systems in the cloud, which of the following is a service model that would be BEST suited for this goal?
- A. Infrastructure
- B. Platform
- C. Software
- D. Virtualization
Answer: A
NEW QUESTION 6
A systems administrator wants to protect data stored on mobile devices that are used to scan and record assets in a warehouse. The control must automatically destroy the secure container of mobile devices if they leave the warehouse. Which of the following should the administrator implement? (Select two.)
- A. Geofencing
- B. Remote wipe
- C. Near-field communication
- D. Push notification services
- E. Containerization
Answer: AE
NEW QUESTION 7
Audit logs from a small company’s vulnerability scanning software show the following findings: Destinations scanned:
-Server001- Internal human resources payroll server
-Server101-Internet-facing web server
-Server201- SQL server for Server101
-Server301-Jumpbox used by systems administrators accessible from the internal network Validated vulnerabilities found:
-Server001- Vulnerable to buffer overflow exploit that may allow attackers to install software
-Server101- Vulnerable to buffer overflow exploit that may allow attackers to install software
-Server201-OS updates not fully current
-Server301- Accessible from internal network without the use of jumpbox
-Server301-Vulnerable to highly publicized exploit that can elevate user privileges
Assuming external attackers who are gaining unauthorized information are of the highest concern, which of the following servers should be addressed FIRST?
- A. Server001
- B. Server101
- C. Server201
- D. Server301
Answer: B
NEW QUESTION 8
Which of the following types of cloud infrastructures would allow several organizations with similar structures and interests to realize the benefits of shared storage and resources?
- A. Private
- B. Hybrid
- C. Public
- D. Community
Answer: D
NEW QUESTION 9
Which of the following types of attacks precedes the installation of a rootkit on a server?
- A. Pharming
- B. DDoS
- C. Privilege escalation
- D. DoS
Answer: C
NEW QUESTION 10
A security engineer is configuring a system that requires the X.509 certificate information to be pasted into a form field in Base64 encoded format to import it into the system. Which of the following certificate formats should the engineer use to obtain the information in the required format?
- A. PFX
- B. PEM
- C. DER
- D. CER
Answer: B
NEW QUESTION 11
Which of the following can be used to control specific commands that can be executed on a network
infrastructure device?
- A. LDAP
- B. Kerberos
- C. SAML
- D. TACACS+
Answer: D
NEW QUESTION 12
When trying to log onto a company’s new ticketing system, some employees receive the following message: Access denied: too many concurrent sessions. The ticketing system was recently installed on a small VM with only the recommended hardware specifications. Which of the following is the MOST likely cause for this error message?
- A. Network resources have been exceeded.
- B. The software is out of licenses.
- C. The VM does not have enough processing power.
- D. The firewall is misconfigured.
Answer: C
NEW QUESTION 13
A system administrator needs to implement 802.1x whereby when a user logs into the network, the authentication server communicates to the network switch and assigns the user to the proper VLAN. Which of the following protocols should be used?
- A. RADIUS
- B. Kerberos
- C. LDAP
- D. MSCHAP
Answer: A
NEW QUESTION 14
An actor downloads and runs a program against a corporate login page. The program imports a list of usernames and passwords, looking for a successful attempt.
Which of the following terms BEST describes the actor in this situation?
- A. Script kiddie
- B. Hacktivist
- C. Cryptologist
- D. Security auditor
Answer: A
NEW QUESTION 15
A security analyst captures forensic evidence from a potentially compromised system for further investigation. The evidence is documented and securely stored to FIRST:
- A. maintain the chain of custody.
- B. preserve the data.
- C. obtain a legal hold.
- D. recover data at a later time.
Answer: B
NEW QUESTION 16
A technician suspects that a system has been compromised. The technician reviews the following log entry: WARNING- hash mismatch: C:WindowSysWOW64user32.dll
WARNING- hash mismatch: C:WindowSysWOW64kernel32.dll
Based solely ono the above information, which of the following types of malware is MOST likely installed on the system?
- A. Rootkit
- B. Ransomware
- C. Trojan
- D. Backdoor
Answer: A
Recommend!! Get the Full SY0-501 dumps in VCE and PDF From 2passeasy, Welcome to Download: https://www.2passeasy.com/dumps/SY0-501/ (New 540 Q&As Version)