โ† All COMPTIA Flashcard Decks

Security Fundamentals Flashcards

7 cards from real COMPTIA practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Security Fundamentals flashcards as text
  1. What is the main goal of a penetration test?

    Answer: Simulate real-world attacks to identify vulnerabilities before malicious actors do

    A penetration test ethically simulates attacks on a system to discover exploitable vulnerabilities before real attackers find them.

  2. Which of the following BEST describes multi-factor authentication (MFA)?

    Answer: Requiring authentication from two or more different factor categories

    MFA requires two or more factors from different categories (something you know, have, or are) to verify identity.

  3. What does a hash function produce when applied to a file?

    Answer: A fixed-size digest that uniquely represents the file's contents

    A hash function produces a fixed-length digest (fingerprint) of data; even a small change in input produces a completely different hash.

  4. An attacker gains unauthorized physical access to a secure area by following an authorized employee through a door. This is called:

    Answer: Tailgating (piggybacking)

    Tailgating (or piggybacking) involves an unauthorized person following an authorized individual through a secured physical access point.

  5. What is the purpose of patch management in an organization?

    Answer: Regularly apply updates to fix vulnerabilities and keep software secure

    Patch management ensures systems are kept up to date with security fixes to reduce the risk of exploitation through known vulnerabilities.

  6. Which of the following is an example of physical security control?

    Answer: Badge access reader on a server room door

    A badge access reader is a physical security control that restricts unauthorized individuals from entering sensitive areas.

  7. What is the difference between a vulnerability and an exploit?

    Answer: A vulnerability is a weakness; an exploit is the code or technique used to take advantage of it

    A vulnerability is a security weakness or flaw, while an exploit is the specific method or tool used to leverage that weakness for an attack.