Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIASecurity+

Domain 2Objective 4

Malicious Activity SY0-701 Practice Questions (Page 7)

Part of the Threats, vulnerabilities, and mitigations domain, which accounts for 22% of the SY0-701 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~8–13 in this domain), expect 2–3 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)

41questions here
9free pages
12concepts
22%of the exam

Questions 31–35

  1. 31application · medium

    A web application allows users to upload profile pictures. An attacker uploads a file that contains malicious code. When another user views the profile, the code executes in their browser. Which type of attack is this?

    Select an answer first
  2. 32foundation · easy

    Which password attack method involves trying every possible combination of characters until the correct password is found?

    Select an answer first
  3. 33foundation · easy

    Which of the following is an effective mitigation against credential stuffing attacks?

    Select an answer first
  4. 34foundation · easy

    Which malware analysis technique involves examining the binary code of a malicious file without executing it?

    Select an answer first
  5. 35application · medium

    A company stores sensitive customer data and wants to protect it from cryptographic attacks such as brute force and cryptanalysis. Which practice is most effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SY0-701” is a trademark of its owner, used for identification only.