210-250 Practice Questions
198 real 210-250 exam questions with expert-verified answers and explanations. Page 4 of 4.
- Question #154
What phase of the TCP communication process is attacked during a TCP SYN flood attack?
- Question #155
What two are examples of UDP-based attacks? (Choose two.)
- Question #156
What best describes an attack vector?
- Question #157
What best describes an attack surface?
- Question #158
What is an example of a reconnaissance attack tool that will cycle through all well-known ports to provide a complete list of all services that are running on the hosts?
- Question #159
Which two are software vulnerability scanners? (Choose two.)
- Question #160
What best describes an amplification attack?
- Question #161
What best describes a DoS attack?
- Question #162
What type of attack occurs when the attacker spoofs the IP address of the victim, sending a continuous stream of small requests, which produce a continuous stream of much larger re...
- Question #163
What type of attack occurs when an attacker sends a flood of protocol request packets to various IP hosts and the attacker spoofs the source IP address of the packets, such that ea...
- Question #164
What type of spoofing attack uses fake source IP addresses that are different than their real IP addresses?
- Question #165
Which two attacks can be caused by a rogue DHCP server? (Choose two.)
- Question #166
A ping attack that exploits the broadcast IP address in a subnet is referred to as what type of attack?
- Question #167
Which protocol or diagnostic tool helps you determine how many hops away a network is and can be exploited by an attacker?
- Question #168
Which part of the UDP header would attackers replace if they change the data payload to prevent the receiver from identifying the change?
- Question #169
Which two methods might be used by an analyst to detect SSL/TLS encrypted command-and- control communication? (Choose two.)
- Question #170
What are two examples of the impacts of cryptography on security investigations that an analyst must know? (Choose two.)
- Question #171
Which type of ciphers rearrange or permute letters?
- Question #172
In which technology is network level encrypted not natively incorporated?
- Question #173
Which one of the following algorithms is most susceptible to collision when hashing different data sets?
- Question #174
What is the primary purpose for using a hash algorithm for a message?
- Question #175
Which one of the following options is used to determine the strength of a modern encryption algorithm?
- Question #176
What is the primary purpose for using an encryption algorithm on a message?
- Question #177
After encryption has been applied to a message, what is the message identified as?
- Question #178
Which type of encryption algorithm uses the same key to encrypt and decrypt data?
- Question #179
Which type of encryption algorithm uses the different but related keys to encrypt and decrypt data?
- Question #180
One cryptanalysis method that is used to defeat a multi-step encryption process uses both the original clear text to work forward toward an intermediate value, and the ending ciphe...
- Question #181
Which one of the following statements best describes crypto analysis?
- Question #182
Of the following, in which type of an attack does the attacker try every possible key with the decryption algorithm, knowing that eventually one of the keys will work?
- Question #183
Which one of the following options is the block cipher mode that uses an encryption method which has a feedback mechanism where each plaintext block is XORed with the previously en...
- Question #184
Which one of the following encryption algorithms is the preferred symmetrical algorithm that is intended to replace 3DES?
- Question #185
Which one of the following encryption methodologies allows you to maintain the privacy of an email communication, and ensure the origin of the message using PGP?
- Question #186
To provide origin authentication, the sender encrypts the message using an asymmetric encryption algorithm. In this case, the receiver of the message must use what to decrypt the m...
- Question #187
Which one of the following parts of the Diffie-Hellman calculation is an arbitrary item that is agreed upon by both parties before any mathematical calculations?
- Question #188
Which statement about the Diffie-Hellman Key Agreement is true?
- Question #189
Which one of the following is the first exchange during SSHv1 authentication negotiation?
- Question #190
To communicate that a document is using a digital signature, which one of the following is the next step in the process after a hash of the document is calculated by the sender?
- Question #191
Which three security services do digital signatures provide? (Choose three.)
- Question #192
When using PKI which two of the following are true? (Choose two.)
- Question #193
Which five of the following options are components of the X.509 v3 certificate standard? (Choose five.)
- Question #194
Which one of the following actions should be taken by a client to verify the entity that they received a certificate from is the entity that should be using the certificate?
- Question #195
Which two of the following statements are true regarding the CA in a PKI deployment? (Choose two.)
- Question #196
Which two of the following options must be included in the CSR that is to be signed by a CA? (Choose two.)
- Question #197
To facilitate encrypted bulk data transfer using the TLS protocol, the shared secret key that is sent from the client to the server is encrypted with which key?
- Question #198
What TCP port does SSL/TLS use for HTTPS communications?
- Question #199
The ECDHE_ECDSA part of the cipher list identifies which one of the following algorithms?
- Question #200
Which four of the following information is included in sets of cryptographic algorithms that are defined by an SSL/TLS cipher suite? (Choose four.)
- Question #201
Many legacy cipher suites available in TLS are deemed insecure. Which three of the following traits make them insecure? (Choose three.)