最新的CertNexus CyberSec First Responder (CFR) - CFR-310免費考試真題
問題1
An automatic vulnerability scan has been performed. Which is the next step of the vulnerability assessment process?
正確答案: D
問題2
Malicious code designed to execute in concurrence with a particular event is BEST defined as which of the following?
正確答案: B
問題3
A company website was hacked via the following SQL query:
email, passwd, login_id, full_name FROM members
WHERE email = "[email protected]"; DROP TABLE members; -"
Which of the following did the hackers perform?
email, passwd, login_id, full_name FROM members
WHERE email = "[email protected]"; DROP TABLE members; -"
Which of the following did the hackers perform?
正確答案: C
問題4
An incident at a government agency has occurred and the following actions were taken:
-Users have regained access to email accounts
-Temporary VPN services have been removed
-Host-based intrusion prevention system (HIPS) and antivirus (AV) signatures have been updated
-Temporary email servers have been decommissioned
Which of the following phases of the incident response process match the actions taken?
-Users have regained access to email accounts
-Temporary VPN services have been removed
-Host-based intrusion prevention system (HIPS) and antivirus (AV) signatures have been updated
-Temporary email servers have been decommissioned
Which of the following phases of the incident response process match the actions taken?
正確答案: B
問題5
A security administrator needs to review events from different systems located worldwide. Which of the following is MOST important to ensure that logs can be effectively correlated?
正確答案: B
說明:(僅 VCESoft 成員可見)
問題6
A company that maintains a public city infrastructure was breached and information about future city projects was leaked. After the post-incident phase of the process has been completed, which of the following would be PRIMARY focus of the incident response team?
正確答案: A
問題7
During which of the following attack phases might a request sent to port 1433 over a whole company network be seen within a log?
正確答案: C
問題8
Tcpdump is a tool that can be used to detect which of the following indicators of compromise?
正確答案: D
問題9
Network infrastructure has been scanned and the identified issues have been remediated. What is the next step in the vulnerability assessment process?
正確答案: B
問題10
An administrator investigating intermittent network communication problems has identified an excessive amount of traffic from an external-facing host to an unknown location on the Internet. Which of the following BEST describes what is occurring?
正確答案: D

