
CompTIACySA+
Domain 3Objective 1
Attack Methodology Frameworks CS0-003 Practice Questions (Page 4)
Part of the Incident response management domain, which accounts for 20% of the CS0-003 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~13–22 in this domain), expect 4–7 from this objective — we provide 21 practice questions to prepare you well beyond it. (estimate)
21questions here
5free pages
5concepts
20%of the exam
Questions 16–20
- 16
Which Cyber Kill Chain stage involves the attacker identifying potential targets and gathering information about them?
Select an answer first - 17
In the MITRE ATT&CK framework, what is the term for the 'why' of an attack, representing the adversary's goal?
Select an answer first - 18
Which of the following is a key component of the OWASP Testing Guide?
Select an answer first - 19
A security analyst is reviewing the timeline of a breach. The attacker first sent a phishing email to an employee, which delivered a macro-enabled document. After the employee opened it, the attacker established a command-and-control channel and began moving laterally to the database server. Which two stages of the Cyber Kill Chain does the analyst need to map the delivery of the macro document and the establishment of the command-and-control channel to, respectively?
Select an answer first - 20
Which of the following is a key characteristic of the OSSTMM?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CS0-003” is a trademark of its owner, used for identification only.