CompTIA Security+ SY0-601 – Question399

A company wants to deploy PKI on its internet-facing website. The applications that are currently deployed are:
www.company.com (main website)
contactus.company.com (for locating a nearby location)
quotes.company.com (for requesting a price quote)
The company wants to purchase one SSL certificate that will work for all the existing applications and any future
applications that follow the same naming conventions, such as store.company.com. Which of the following
certificate types would BEST meet the requirements?


A.
SAN
B. Wildcard
C. Extended validation
D. Self-signed

Correct Answer: B

CompTIA Security+ SY0-601 – Question396

A host was infected with malware. During the incident response, Joe, a user, reported that he did not receive
any emails with links, but he had been browsing the internet all day. Which of the following would MOST likely
show where the malware originated?


A.
The DNS logs
B. The web server logs
C. The SIP traffic logs
D. The SNMP logs

Correct Answer: B

Explanation:

Reference: https://www.crowdstrike.com/cybersecurity-101/observability/web-ser…
20server%20log%20is,a%20defined%20period%20of%20time

CompTIA Security+ SY0-601 – Question394

Which of the following would MOST likely be identified by a credentialed scan but would be missed by an
uncredentialed scan?


A.
Vulnerabilities with a CVSS score greater than 6.9.
B. Critical infrastructure vulnerabilities on non-IP protocols.
C. CVEs related to non-Microsoft systems such as printers and switches.
D. Missing patches for third-party software on Windows workstations and servers.

Correct Answer: D

CompTIA Security+ SY0-601 – Question392

An organization's Chief Information Security Officer is creating a position that will be responsible for
implementing technical controls to protect data, including ensuring backups are properly maintained. Which of
the following roles would MOST likely include these responsibilities?


A.
Data protection officer
B. Data owner
C. Backup administrator
D. Data custodian
E. Internal auditor

Correct Answer: C

CompTIA Security+ SY0-601 – Question391

A security engineer obtained the following output from a threat intelligence source that recently performed an attack on the company's server:

Which of the following BEST describes this kind of attack?

A.
Directory traversal
B. SQL injection
C. API
D. Request forgery

Correct Answer: A