
CompTIASecurity+
Domain 2Objective 4
Malicious Activity SY0-701 Practice Questions (Page 7)
Part of the Threats, vulnerabilities, and mitigations domain, which accounts for 22% of the SY0-701 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~8–13 in this domain), expect 2–3 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)
41questions here
9free pages
12concepts
22%of the exam
Questions 31–35
- 31
A web application allows users to upload profile pictures. An attacker uploads a file that contains malicious code. When another user views the profile, the code executes in their browser. Which type of attack is this?
Select an answer first - 32
Which password attack method involves trying every possible combination of characters until the correct password is found?
Select an answer first - 33
Which of the following is an effective mitigation against credential stuffing attacks?
Select an answer first - 34
Which malware analysis technique involves examining the binary code of a malicious file without executing it?
Select an answer first - 35
A company stores sensitive customer data and wants to protect it from cryptographic attacks such as brute force and cryptanalysis. Which practice is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SY0-701” is a trademark of its owner, used for identification only.