Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIACySA+

Domain 1Objective 4

Threat Intelligence and Hunting CS0-003 Practice Questions (Page 2)

Part of the Security operations domain, which accounts for 33% of the CS0-003 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~21–36 in this domain), expect 4–7 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)

29questions here
6free pages
6concepts
33%of the exam

Questions 6–10

  1. 6application · medium

    A security analyst is investigating a breach where the attacker used a previously unknown vulnerability in a web server to gain initial access, then moved laterally using legitimate administrative tools, and finally exfiltrated data via encrypted channels. The analyst wants to categorize the attacker's behavior using a common framework. Which framework should the analyst use?

    Select an answer first
  2. 7foundation · easy

    A threat hunter wants to proactively search for signs of a specific known adversary group's activity by looking for the unique file hashes and command-line arguments that the group is known to use. Which threat hunting technique does this describe?

    Select an answer first
  3. 8foundation · easy

    An analyst finds a post on an obscure forum claiming that a specific vulnerability is being actively exploited. The post is anonymous and has no technical details or evidence. No other sources mention this exploitation. How should the analyst rate the confidence of this intelligence?

    Select an answer first
  4. 9foundation · easy

    A threat intelligence report states that a specific adversary group uses PowerShell scripts for execution and often exploits the EternalBlue vulnerability for lateral movement. Which component of the TTP framework does the use of PowerShell scripts represent?

    Select an answer first
  5. 10application · medium

    A security operations team wants to improve its threat intelligence collection by incorporating both open-source and proprietary sources. They have limited budget and need to prioritize. Which combination of sources would provide the most balanced and cost-effective intelligence?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CS0-003” is a trademark of its owner, used for identification only.