
CompTIACySA+
Domain 1Objective 3
Tools and Techniques CS0-003 Practice Questions (Page 2)
Part of the Security operations domain, which accounts for 33% of the CS0-003 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~21–36 in this domain), expect 4–7 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
7concepts
33%of the exam
Questions 6–10
- 6
A security analyst is writing a Python script to parse a log file and extract IP addresses. Which Python module is most appropriate for this task?
Select an answer first - 7
A security analyst is monitoring network traffic and notices a series of DNS queries for random subdomains under a single domain. The queries are occurring at a high frequency and from multiple internal hosts. The analyst suspects DNS tunneling. Which pattern recognition technique would best confirm this suspicion?
Select an answer first - 8
An analyst is analyzing a suspicious email and wants to check if the sender's domain is legitimate. Which email header field is most important to examine for this purpose?
Select an answer first - 9
An analyst is investigating a phishing email that contains an attachment. The analyst wants to determine if the attachment is malicious without opening it. Which action should the analyst take?
Select an answer first - 10
A security analyst wants to use PowerShell to retrieve a list of all running processes on a Windows system to check for suspicious activity. Which PowerShell cmdlet should the analyst use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CS0-003” is a trademark of its owner, used for identification only.