Inspirational journeys

Follow the stories of academics and their research expeditions

ComptiA Security+ Certification Exam Questions and answer - Part 99

Mary Smith

Wed, 15 Apr 2026

ComptiA Security+ Certification Exam Questions and answer - Part 99

1. While reviewing the security controls in place for a web-based application,a security controls assessor notices that there are no password strength requirements in place. Because of this vulnerability,passwords might be easily discovered using a brute force attack. Which of the following password requirements will MOST effectively improve the security posture of the application against these attacks? (Select two)(Select 2answers)

A) Minimum age limit
B) Minimum length
C) Maximum age limit
D) Minimum complexity
E) Minimum re-use limit
F) Maximum length

2. Which of the following penetration testing concepts is being used when an attacker uses public Internet databases to enumerate and learn more about a target?

A) Pivoting
B) Vulnerability scanning
C) Reconnaissance
D) Initial exploitation
E) White box testing


3. Which of the following techniques can be bypass a user or computer's web browser privacy settings? (Select Two)(Select 2answers)

A) Cross-site scripting
B) LDAP injection
C) SQL injection
D) Locally shared objects
E) Session hijacking


4. Which of the following solutions should an administrator use to reduce the risk from an unknown vulnerability in a third-party software application?

A) Fuzzing
B) Encryption
C) Sandboxing
D) Code signing



5. Which of the following types of attacks precedes the installation of a rootkit on a server?

A) Privilege escalation
B) Pharming
C) DDoS
D) DoS



1. Right Answer: B,D
Explanation:

2. Right Answer: C
Explanation:

3. Right Answer: A,E
Explanation:

4. Right Answer: C
Explanation:

5. Right Answer: A
Explanation:

0 Comments

Leave a comment