← All CCT Flashcard Decks

Mixed Deck — All CCT Topics Flashcards

100 cards from real CCT practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 20 Mixed Deck — All CCT Topics flashcards as text
  1. Which of the following is the best defense against CSRF attacks?

    Answer: Implementing anti-CSRF tokens in forms

    Anti-CSRF tokens are unique, secret, and unpredictable values tied to a user's session that must be included in state-changing requests, making forged requests from other sites invalid.

  2. What is the relationship between Cloud Computing & Virtualization and ethical professional conduct?

    Answer: Ethical considerations are integrated into all aspects of professional practice in this area

    Ethical considerations are deeply integrated into Cloud Computing & Virtualization, as professional conduct and integrity underpin all aspects of practice in this field.

  3. What is the correct order of volatility when collecting digital evidence, starting with the most volatile?

    Answer: CPU registers, RAM, network traffic, hard disk

    CPU registers and cache are lost instantly on power-off, followed by RAM, then active network connections, with persistent disk storage being least volatile.

  4. What is a common method of detecting vulnerabilities in a network?

    Answer: Performing vulnerability scanning

    Vulnerability scanning is an automated process that identifies known security weaknesses in systems, applications, and networks. This proactive approach helps organizations discover potential entry points for attackers and address them before they can be exploited.

  5. What is the recommended approach to staying current in Operating Systems & Platforms?

    Answer: Regular professional development, industry publications, and peer collaboration

    Staying current in Operating Systems & Platforms requires ongoing professional development, reading industry publications, and collaborating with peers to share knowledge and best practices.

  6. What is the primary objective of network security?

    Answer: To protect the network from unauthorized access

    Network security's primary objective is to safeguard the integrity, confidentiality, and availability of network resources and data. This involves implementing measures like firewalls, encryption, and access controls to prevent unauthorized users from gaining entry or tampering with the network.

  7. What does the term 'scope' define in a penetration testing engagement?

    Answer: The specific systems, networks, applications, and methods that are authorized for testing

    Scope defines the boundaries of the test — which IP ranges, domains, and applications are in-scope versus out-of-scope — ensuring testers stay within authorized limits and avoid disrupting unintended systems.

  8. What common challenge do professionals face when applying Cryptography & Data Protection principles?

    Answer: Balancing theoretical best practices with practical constraints and real-world conditions

    Professionals commonly face the challenge of adapting theoretical best practices in Cryptography & Data Protection to the practical constraints and varying conditions encountered in real-world settings.

  9. What is the most important competency assessed in Automation & Scripting for professionals in this field?

    Answer: Applied knowledge and practical problem-solving ability

    Automation & Scripting assessment focuses on applied knowledge and practical problem-solving ability, ensuring professionals can effectively perform in real-world situations.

  10. What is privilege escalation in the context of a penetration test?

    Answer: Increasing access rights from a lower-privileged account to a higher-privileged one

    Privilege escalation involves exploiting vulnerabilities or misconfigurations to gain higher-level permissions (e.g., moving from a standard user account to administrator or root).

  11. A forensic examiner recovers a deleted file from an NTFS partition. Which condition must be true for full recovery to be possible?

    Answer: The file's data clusters have not been overwritten by new data

    When a file is deleted, NTFS marks its clusters as available but does not erase them; if those clusters haven't been reallocated, the file content remains recoverable.

  12. Which OWASP Top 10 vulnerability occurs when untrusted data is sent to an interpreter as part of a command or query?

    Answer: Injection

    Injection flaws, such as SQL injection, occur when untrusted data is sent to an interpreter as part of a command or query, allowing attackers to execute unintended commands.

  13. What does 'security by obscurity' mean and why is it considered insufficient?

    Answer: Relying on secrecy of design or implementation as the main security mechanism, which fails once the secret is exposed

    Security by obscurity relies on hiding how a system works rather than using genuine security controls, which provides no protection once an attacker discovers or leaks the design.

  14. Which best describes the scope of Cryptography & Data Protection in professional practice?

    Answer: A comprehensive area covering both theoretical foundations and practical applications

    Cryptography & Data Protection encompasses both theoretical foundations and practical applications that are essential to professional practice in this field.

  15. What is a vulnerability assessment?

    Answer: A detailed process of identifying vulnerabilities in a system

    A vulnerability assessment is a systematic examination of an information system or network to identify security weaknesses. It involves using various tools and techniques to discover flaws that could be exploited by attackers, providing a comprehensive overview of potential risks.

  16. What is a common consequence of non-compliance with security policies?

    Answer: Data breaches and penalties

    Non-compliance with security policies can lead to severe consequences, including significant data breaches where sensitive information is exposed or stolen. Such breaches often result in substantial financial penalties imposed by regulatory bodies, legal liabilities, and severe damage to an organization's reputation. Adhering to policies is crucial for protecting assets and avoiding these detrimental outcomes.

  17. What is the purpose of risk assessment in cybersecurity?

    Answer: To identify, assess, and prioritize risks

    Risk assessment in cybersecurity is the process of identifying potential threats and vulnerabilities, evaluating the likelihood and impact of their exploitation, and then prioritizing these risks. This allows organizations to make informed decisions about where to allocate resources for security measures.

  18. Why is threat intelligence important for risk assessment?

    Answer: It helps organizations proactively mitigate threats

    Threat intelligence provides organizations with timely and relevant information about current and emerging cyber threats, including attacker tactics, techniques, and procedures. This knowledge allows for a more informed risk assessment, enabling proactive implementation of defenses and mitigation strategies before an attack occurs.

  19. Which best describes the scope of Automation & Scripting in professional practice?

    Answer: A comprehensive area covering both theoretical foundations and practical applications

    Automation & Scripting encompasses both theoretical foundations and practical applications that are essential to professional practice in this field.

  20. What is a 'zero-day' vulnerability?

    Answer: A vulnerability that is unknown to the vendor and has no official patch available

    A zero-day vulnerability is a security flaw unknown to the software vendor, meaning zero days have passed since the vendor became aware, so no patch or official mitigation exists.