CertNexus CyberSec First Responder - CFR-410 Exam Practice Test
Which of the following should normally be blocked through a firewall?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
The NIST framework 800-137 breaks down the concept of continuous monitoring into which system of tiers?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Network infrastructure has been scanned and the identified issues have been remediated. What is the next step in the vulnerability assessment process?
Correct Answer: B
An administrator believes that a system on VLAN 12 is Address Resolution Protocol (ARP) poisoning clients on the network. The administrator attaches a system to VLAN 12 and uses Wireshark to capture traffic. After reviewing the capture file, the administrator finds no evidence of ARP poisoning. Which of the following actions should the administrator take next?
Correct Answer: B
After successfully enumerating the target, the hacker determines that the victim is using a firewall. Which of the following techniques would allow the hacker to bypass the intrusion prevention system (IPS)?
Correct Answer: B
A company website was hacked via the following SQL query:
email, passwd, login_id, full_name FROM members
WHERE email = "[email protected]"; DROP TABLE members; -"
Which of the following did the hackers perform?
email, passwd, login_id, full_name FROM members
WHERE email = "[email protected]"; DROP TABLE members; -"
Which of the following did the hackers perform?
Correct Answer: A
Which of the following would MOST likely make a Windows workstation on a corporate network vulnerable to remote exploitation?
Correct Answer: D
When performing an investigation, a security analyst needs to extract information from text files in a Windows operating system. Which of the following commands should the security analyst use?
Correct Answer: B
An organization recently suffered a data breach involving a server that had Transmission Control Protocol (TCP) port 1433 inadvertently exposed to the Internet. Which of the following services was vulnerable?
Correct Answer: A
A security operations center (SOC) analyst observed an unusually high number of login failures on a particular database server. The analyst wants to gather supporting evidence before escalating the observation to management. Which of the following expressions will provide login failure data for 11/24/2015?
Correct Answer: A
Which of the following can increase an attack surface?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which approach to cybersecurity involves a series of defensive mechanisms that are layered to protect valuable data and information?
Correct Answer: A
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
In which of the following attack phases would an attacker use Shodan?
Correct Answer: D
Which of the following is the BEST way to prevent social engineering attacks?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).