{"id":11573,"date":"2026-09-14T10:31:06","date_gmt":"2026-09-14T10:31:06","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=11573"},"modified":"2026-09-14T11:08:31","modified_gmt":"2026-09-14T11:08:31","slug":"comptia-security-sy0-701-practice-test-questions-and-exam-dumps-part-11-q201-220","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/comptia-security-sy0-701-practice-test-questions-and-exam-dumps-part-11-q201-220\/","title":{"rendered":"CompTIA Security+ SY0-701 Practice Test Questions and Exam Dumps \u2014 Part 11 (Q201\u2013220)"},"content":{"rendered":"<h3>View Full\u00a0<a href=\"https:\/\/www.examlabs.com\/sy0-701-exam-dumps\">CompTIA SY0-701 Exam Dumps<\/a>\u00a0and Practice Test Dumps.<\/h3>\n<p>&nbsp;<\/p>\n<h3><b>Question 201<\/b><\/h3>\n<p><b>Which security concept ensures that a user cannot deny having performed a particular action?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Availability<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Non-repudiation<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Confidentiality<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Redundancy<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Non-repudiation provides evidence that a specific party performed an action. Digital signatures are commonly used to support non-repudiation.<\/span><\/p>\n<h3><b>Question 202<\/b><\/h3>\n<p><b>Which security solution analyzes user and entity behavior to identify unusual activity?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">UEBA<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">NAC<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DLP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">FIM<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> User and Entity Behavior Analytics (UEBA) establishes normal behavioral patterns and identifies unusual activities that may indicate compromised accounts or insider threats.<\/span><\/p>\n<h3><b>Question 203<\/b><\/h3>\n<p><b>Which attack attempts to overwhelm a service by sending it an excessive amount of traffic or requests?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DDoS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Phishing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Directory traversal<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Credential stuffing<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> A Distributed Denial-of-Service (DDoS) attack uses multiple systems or sources to overwhelm a target with traffic or requests, potentially making the service unavailable to legitimate users.<\/span><\/p>\n<h3><b>Question 204<\/b><\/h3>\n<p><b>Which security practice removes unnecessary services, applications, and ports from a system to reduce its attack surface?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">System hardening<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Data masking<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Tokenization<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Federation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> System hardening reduces attack opportunities by disabling unnecessary services, removing unused software, closing unnecessary ports, and applying secure configurations.<\/span><\/p>\n<h3><b>Question 205<\/b><\/h3>\n<p><b>Which attack tricks a user into visiting a malicious website by manipulating DNS information?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DNS poisoning<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Smishing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Vishing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Shoulder surfing<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> DNS poisoning corrupts DNS information so that users can be redirected to an attacker-controlled destination instead of the legitimate website.<\/span><\/p>\n<h3><b>Question 206<\/b><\/h3>\n<p><b>Which security control can automatically block known malicious network traffic based on detected attack signatures?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">IPS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">IDS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Passive tap<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Syslog server<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> An Intrusion Prevention System (IPS) monitors traffic and can actively block malicious activity. Signature-based detection is commonly used to identify known threats.<\/span><\/p>\n<h3><b>Question 207<\/b><\/h3>\n<p><b>Which type of vulnerability occurs when an application allows a user to access resources belonging to another user by changing an identifier in a request?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">IDOR<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">XSS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SQL injection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Buffer overflow<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Insecure Direct Object Reference (IDOR) occurs when an application exposes references to objects without properly verifying authorization. An attacker may modify an identifier to access another user&#8217;s data.<\/span><\/p>\n<h3><b>Question 208<\/b><\/h3>\n<p><b>Which security mechanism uses cryptographic hashes to detect whether a file has been modified?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">File Integrity Monitoring<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Network Address Translation<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Single Sign-On<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Network Access Control<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> File Integrity Monitoring (FIM) can calculate and compare cryptographic hashes to detect unauthorized changes to files.<\/span><\/p>\n<h3><b>Question 209<\/b><\/h3>\n<p><b>Which type of encryption uses a public key to encrypt information and a corresponding private key to decrypt it?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Symmetric encryption<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Asymmetric encryption<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Hashing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Tokenization<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Asymmetric encryption uses a key pair consisting of a public key and a private key. Data encrypted with the appropriate public key can be decrypted using the corresponding private key.<\/span><\/p>\n<h3><b>Question 210<\/b><\/h3>\n<p><b>Which attack attempts to exploit a newly discovered vulnerability before a security patch is available?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Zero-day attack<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Replay attack<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Password spraying<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Phishing attack<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> A zero-day attack exploits a vulnerability before the vendor has released an effective patch or before defenders have had sufficient opportunity to address it.<\/span><\/p>\n<h3><b>Question 211<\/b><\/h3>\n<p><b>Which security control is intended to discourage attackers by making them believe that an attack will be detected or prevented?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Deterrent control<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Corrective control<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Recovery control<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Detective control<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Deterrent controls discourage unwanted behavior. Warning signs, security cameras, and visible security personnel can discourage potential attackers.<\/span><\/p>\n<h3><b>Question 212<\/b><\/h3>\n<p><b>Which type of control restores a system to normal operation after a security incident?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Preventive<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Detective<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Corrective<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Deterrent<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Corrective controls are designed to fix or restore systems after an incident. Examples include restoring data from backups and removing malware from affected systems.<\/span><\/p>\n<h3><b>Question 213<\/b><\/h3>\n<p><b>Which cloud security model requires the customer to secure their data, identities, and configurations while the provider secures the underlying infrastructure?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Shared responsibility model<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Zero trust model<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Bell-LaPadula model<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Open access model<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> The shared responsibility model divides security responsibilities between the cloud provider and customer. The exact responsibilities vary depending on the cloud service being used.<\/span><\/p>\n<h3><b>Question 214<\/b><\/h3>\n<p><b>Which wireless security standard provides stronger protection than WPA and uses AES-based encryption?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">WEP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">WPA2<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Open authentication<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">TKIP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> WPA2 uses the stronger AES-based CCMP encryption mechanism and provides significantly better security than older WEP and WPA configurations.<\/span><\/p>\n<h3><b>Question 215<\/b><\/h3>\n<p><b>Which attack occurs when malicious input is inserted into an operating system command executed by an application?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Command injection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SQL injection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">XSS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Pharming<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Command injection occurs when an attacker manipulates application input so that unintended operating system commands are executed by the underlying system.<\/span><\/p>\n<h3><b>Question 216<\/b><\/h3>\n<p><b>Which authentication method requires a user to provide two or more different types of authentication factors?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SSO<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">MFA<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Federation<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">LDAP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Multi-Factor Authentication (MFA) requires multiple authentication factors, such as a password combined with a hardware security key or biometric factor.<\/span><\/p>\n<h3><b>Question 217<\/b><\/h3>\n<p><b>Which attack captures valid authentication data and later retransmits it to gain unauthorized access?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Replay attack<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DDoS<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Tailgating<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Dumpster diving<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> A replay attack captures valid authentication information, such as a session token or authentication exchange, and retransmits it later in an attempt to gain access.<\/span><\/p>\n<h3><b>Question 218<\/b><\/h3>\n<p><b>Which security technique isolates potentially malicious software from the rest of a system while it executes?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Sandboxing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Port forwarding<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Tokenization<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Data classification<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Sandboxing runs applications or files in an isolated environment. This limits their ability to affect the underlying operating system or other resources.<\/span><\/p>\n<h3><b>Question 219<\/b><\/h3>\n<p><b>Which process involves reviewing system configurations to ensure they remain consistent with approved security settings?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Configuration monitoring<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Password spraying<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Data destruction<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Credential stuffing<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Configuration monitoring checks systems against approved baselines and can identify unauthorized or potentially insecure configuration changes.<\/span><\/p>\n<h3><b>Question 220<\/b><\/h3>\n<p><b>Which security principle requires an organization to maintain multiple independent layers of protection?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Defense in depth<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Least privilege<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Separation of duties<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Need to know<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><b><br \/>\n<\/b><span style=\"font-weight: 400;\"> Defense in depth uses multiple security layers, such as firewalls, endpoint protection, access controls, monitoring, and encryption, so that failure of one control does not completely compromise the environment.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full\u00a0CompTIA SY0-701 Exam Dumps\u00a0and Practice Test Dumps. &nbsp; Question 201 Which security concept ensures that a user cannot deny having performed a particular action? Availability Non-repudiation Confidentiality Redundancy Correct Answer: 2 Explanation Non-repudiation provides evidence that a specific party performed an action. Digital signatures are commonly used to support non-repudiation. Question 202 Which security [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/11573"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=11573"}],"version-history":[{"count":3,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/11573\/revisions"}],"predecessor-version":[{"id":11633,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/11573\/revisions\/11633"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=11573"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=11573"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=11573"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}