Which of the following is a type of injection attack that leverages a user’s browser to execute malicious code that can access sensitive information in the user’s browser, such as passwords and session information?
The latest changes and updates from the administration for this exam.
Latest Update: Jun 10 2026
All questions are working fine.
Which of the following is a type of injection attack that leverages a user’s browser to execute malicious code that can access sensitive information in the user’s browser, such as passwords and session information?
Which of the following forms of segmentation involves a specially configured machine that serves as an entry point for external users to access protected parts of a network?
Analysis of any potential evidence must establish a timeline for the events you are investigating. Which of the following involve a threat actor modifying the system clock to hide the true timeline of their actions?
Which of the following forms of segmentation is created by using network switches to apply a tag to each frame received at a port and assigning it to a specified logical local area network?
Which Windows 10 account by default enables unauthenticated network users to log on without a password and should be configured to be disabled with a set password for security purposes?
Which of the following terms best describes the efforts to integrate multiple automation tools, processes, and activities into a unified whole using a single management layer?
Which of the following terms is used to describe in-memory malware and is not written to disk, but is directly executed in volatile memory?
Which of the following types of scans is used to limit network traffic during the scan?
You are a cybersecurity analyst engaging in long-term threat hunting on your infrastructure. As you perform a threat-hunting methodology, you notice vulnerabilities that should be mitigated and weak areas that must be addressed in the infrastructure. Which of the following will likely assist you the most in locating threats on your infrastructure?
Which of the following are viable options for containment during the incident response lifecycle?