Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Support Technician (CCST) Cybersecurity

Domain 2Objective 1

Describe TCP/IP Protocol Vulnerabilities 100-160 Practice Questions (Page 2)

Part of the Basic Network Security Concepts domain, which makes up ~19% of our current practice bank. Cisco does not publish an official question count, but from its 50-minute exam (~20–35 total, ~4–7 in this domain), expect 1–1 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)

48questions here
10free pages
7concepts

Questions 6–10

  1. 6expert · hard

    A company is migrating its internal web application from HTTP to HTTPS. The security team is also concerned about DNS spoofing and ARP spoofing on the internal network. The application is accessed by employees from their workstations. Which combination of controls provides the most comprehensive protection?

    Select an answer first
  2. 7application · medium

    A security analyst is reviewing network traffic and sees a large number of UDP packets sent to a single destination IP on port 53. The packets have varying source IP addresses, and the responses are larger than the requests. The analyst also notices that the destination IP is a public DNS server. Which two protocol characteristics are being exploited?

    Select an answer first
  3. 8application · medium

    A network administrator is investigating a DDoS attack where the company's firewall is overwhelmed by a flood of ICMP echo requests. The source IP addresses are all different and appear to be legitimate. The administrator also notices that the firewall's connection table is full of TCP SYN packets. Which two attack types are being combined?

    Select an answer first
  4. 9application · medium

    A network engineer is troubleshooting a DDoS attack where the company's router is overwhelmed by a flood of ICMP echo requests. The source IP addresses in the packets are all different and appear to be legitimate IP addresses from various networks. The engineer suspects a smurf attack. Which two protocol characteristics are being exploited?

    Select an answer first
  5. 10application · medium

    A network administrator is troubleshooting intermittent connectivity issues. Users report that they sometimes get an IP address that is not in the company's DHCP scope, and they cannot reach the internet. The administrator suspects a rogue DHCP server. Which mitigation is most effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “100-160” is a trademark of its owner, used for identification only.