Which common source of vulnerability should be addressed to BEST mitigate against URL redirection attacks?
A. Configuration files
B. Network infrastructure
C. Users
D. Application
正解:D
質問 2:
Which of the following is susceptible to a cache poisoning attack?
A. Secure Shell (SSH)
B. Hypertext Transfer Protocol (HTTP)
C. Hypertext Transfer Protocol Secure (HTTPS)
D. Domain Name System (DNS)
正解:D
質問 3:
A computer forensics analyst suspects that some of the pictures recovered from the suspect's hard drive may contain metadata pertinent to the criminal investigation. Which of the following tools is BEST suited to retrieving any available metadata?
A. Redline
B. ExifTool
C. Xplico
D. Autopsy
E. Encase
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
After imaging a disk as part of an investigation, a forensics analyst wants to hash the image using a tool that supports piecewise hashing. Which of the following tools should the analyst use?
A. md5sum
B. md5deep
C. hashdeep
D. sha256sum
正解:A
質問 5:
Which term best describes an asset's susceptibility to damage or loss due to a threat?
A. Threat
B. Exposure
C. Breach
D. Attack
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
As part of an organization's regular maintenance activities, a security engineer visits the Internet Storm Center advisory page to obtain the latest list of blacklisted host/network addresses. The security engineer does this to perform which of the following activities?
A. Update access control list (ACL) rules for network devices
B. Monitor the organization's network for suspicious traffic
C. Monitor the organization's sensitive databases
D. Update the latest proxy access list
正解:A
質問 7:
A security investigator has detected an unauthorized insider reviewing files containing company secrets.
Which of the following commands could the investigator use to determine which files have been opened by this user?
A. ps
B. ls
C. lsof
D. netstat
正解:C
質問 8:
A company website was hacked via the following SQL query:
email, passwd, login_id, full_name FROM members
WHERE email = "[email protected]"; DROP TABLE members; -"
Which of the following did the hackers perform?
A. Deleted the entire members table
B. Performed a cross-site scripting (XSS) attack
C. Cleared tracks of [email protected] entries
D. Deleted the email password and login details
正解:D
1110 お客様のコメント





Pirates -
CFR-410合格できてとても嬉しいです。
Pass4Testさんありがとうございました。