312-38 Exam Questions
99 real 312-38 exam questions with expert-verified answers and explanations. Page 1 of 2.
- Question #1Network Security Threats, Attacks, and Vulnerabilities
John works as a C programmer. He develops the following C program: His program is vulnerable to a __________ attack.
buffer overflowC programmingmemory vulnerabilityapplication security - Question #2Network Security Monitoring and Analysis
Fill in the blank with the appropriate term. _______________is the complete network configuration and information toolkit that uses multi-threaded and multi-connection technologies...
NetRangernetwork toolkitnetwork monitoringconfiguration management - Question #3Network Security Controls, Protocols, and Devices
Fill in the blank with the appropriate term. A _______________device is used for uniquely recognizing humans based upon one or more intrinsic physical or behavioral traits. Answer:...
biometricsauthenticationphysical securityaccess control - Question #4Network Security Monitoring and Analysis
Which of the following analyzes network traffic to trace specific transactions and can intercept and log traffic passing over a digital network? Each correct answer represents a co...
protocol analyzerwireless snifferpacket capturenetwork traffic analysis - Question #5Network Security Threats, Attacks, and Vulnerabilities
Drag and Drop Question Drag and drop the terms to match with their descriptions. Answer:
backdoortrojan horseping sweepmalware types - Question #6Network Security Controls, Protocols, and Devices
In which of the following conditions does the system enter ROM monitor mode? Each correct answer represents a complete solution. Choose all that apply.
ROM monitorrouter boot sequenceCisco IOSnetwork device configuration - Question #7Computer Network Defense Fundamentals
Which of the following protocols is used for exchanging routing information between two gateways in a network of autonomous systems?
EGProuting protocolsautonomous systemsgateway protocols - Question #8Computer Network Defense Fundamentals
Which of the following is a 16-bit field that identifies the source port number of the application program in the host that is sending the segment?
TCP HeadersPort NumbersTransport LayerProtocol Structure - Question #9Network Security Threats, Attacks, and Vulnerabilities
Fill in the blank with the appropriate term. ______________________ is typically carried out by a remote attacker attempting to gain information or access to a network on which it...
network reconnaissanceinformation gatheringunauthorized accessthreat actors - Question #10Computer Network Defense Fundamentals
Fill in the blank with the appropriate term. The _____________is an application layer protocol that is used between workstations and routers for transporting SNA/NetBIOS traffic ov...
DCAPapplication layer protocolSNANetBIOS over TCP - Question #11Network Security Threats, Attacks, and Vulnerabilities
John works as a professional Ethical Hacker. He has been assigned the project of testing the description of the tool is as follows: Which of the following tools is John using to cr...
Wireless encryption crackingWEP attacksEthical hacking toolsWireless security testing - Question #12Incident Response and Business Continuity
Which of the following is a process that detects a problem, determines its cause, minimizes the damages, resolves the problem, and documents each step of response for future refere...
incident responseincident detectioncontainmentdocumentation - Question #13Incident Response and Business Continuity
Which of the following is designed to detect the unwanted presence of fire by monitoring environmental changes associated with combustion?
Fire Detection SystemsPhysical Security ControlsEnvironmental MonitoringBusiness Continuity - Question #14Network Security Controls, Protocols, and Devices
Which of the following is an intrusion detection system that monitors and analyzes the internals of a computing system rather than the network packets on its external interfaces?
HIDSIntrusion DetectionHost-based monitoringIDS types - Question #15Network Security Controls, Protocols, and Devices
Which of the following types of VPN uses the Internet as its main backbone, allowing users, customers, and branch offices to access corporate network resources across various netwo...
VPN architecturesExtranet VPNRemote accessCorporate network connectivity - Question #16Network Security Controls, Protocols, and Devices
Which of the following is a protocol that describes an approach to providing "streamlined" support of OSI application services on top of TCP/IP-based networks for some constrained...
Lightweight ProtocolsOSI ModelTCP/IP StackConstrained Environments - Question #17Network Security Monitoring and Analysis
You are an Administrator for a network at an investment bank. You are concerned about individuals breeching your network and being able to steal data before you can detect their pr...
HoneypotsIntrusion DetectionNetwork MonitoringDetective Controls - Question #18Network Security Threats, Attacks, and Vulnerabilities
Which of the following is the practice of sending unwanted e-mail messages, frequently with commercial content, in large quantities to an indiscriminate set of recipients? Each cor...
Email spamUnsolicited mailEmail threatsNetwork security - Question #19Network Security Policy and Management
Fill in the blank with the appropriate word. The ____________________risk analysis process analyzes the effect of a risk event deriving a numerical value. Answer: quantitative
quantitative risk analysisrisk managementnumerical risk assessment - Question #20Network Security Monitoring and Analysis
Which of the following is a tool that runs on the Windows OS and analyzes iptables log messages to detect port scans and other suspicious traffic?
Port Scan DetectionFirewall Log AnalysisIntrusion DetectionNetwork Monitoring - Question #21Computer Network Defense Fundamentals
Which of the following is a distributed multi-access network that helps in supporting integrated communications using a dual bus and distributed queuing?
DQDBMulti-access networksDual bus architectureNetwork access methods - Question #22Computer Network Defense Fundamentals
Which of the following is a distributed application architecture that partitions tasks or work loads between service providers and service requesters?Each correct answer represents...
client-server architecturedistributed computingnetwork architectureservice models - Question #23Network Security Threats, Attacks, and Vulnerabilities
Which of the following is an attack on a website that changes the visual appearance of the site and seriously damages the trust and reputation of the website?
website defacementweb attacksattack typesreputation damage - Question #24Computer Network Defense Fundamentals
Which of the following cables is made of glass or plastic and transmits signals in the form of light?
Fiber opticsCable typesNetwork mediaTransmission media - Question #25Computer Network Defense Fundamentals
Which of the following is a network that supports mobile communications across an arbitrary number of wireless LANs and satellite coverage areas?
Network TypesGlobal Area NetworkWireless NetworksSatellite Coverage - Question #26Computer Network Defense Fundamentals
Fill in the blank with the appropriate term. A______________________ network is a local area network (LAN) in which all computers are connected in a ring or star topology and a bit...
Token RingLAN topologytoken passingnetwork architecture - Question #27Network Security Threats, Attacks, and Vulnerabilities
Which of the following techniques is used for drawing symbols in public places for advertising an open Wi-Fi wireless network?
WarchalkingWireless reconnaissanceWi-Fi networksNetwork mapping - Question #28Network Security Controls, Protocols, and Devices
Which of the following is a standard protocol for interfacing external application software with an information server, commonly a Web server?
CGIWeb protocolsServer-application interfaceHTTP mechanisms - Question #29Computer Network Defense Fundamentals
Which of the following honeypots provides an attacker access to the real operating system without any restriction and collects a vast amount of information about the attacker?
HoneypotsThreat DetectionDeception TechnologyDefense Controls - Question #30Incident Response and Business Continuity
Which of the following representatives of the incident response team takes forensic backups of systems that are the focus of an incident?
Incident Response RolesForensic BackupsIR Team StructureEvidence Preservation - Question #31Network Security Controls, Protocols, and Devices
Which of the following devices allows wireless communication devices to connect to a wireless network using Wi-Fi, Bluetooth, or related standards?
Wireless access pointsWi-Fi standardsNetwork infrastructureWireless connectivity - Question #32Network Security Controls, Protocols, and Devices
Which of the following protocols uses a control channel over TCP and a GRE tunnel operating to encapsulate PPP packets?
PPTPVPN ProtocolsGRE TunnelingProtocol Specifications - Question #33Incident Response and Business Continuity
Which of the following procedures is designed to enable security personnel to identify, mitigate, and recover from malicious computer incidents, such as unauthorized access to a sy...
Incident ResponseIncident IdentificationIncident RecoveryCyber Incidents - Question #34Computer Network Defense Fundamentals
Which of the following TCP commands is used to allocate a receiving buffer associated with the specified connection?
TCP CommandsReceive BufferProtocol MechanicsTransport Layer - Question #35Incident Response and Business Continuity
You work as a professional Computer Hacking Forensic Investigator for DataEnet Inc. You want to investigate e-mail information of an employee of the company. The suspected employee...
email forensicsbrowser artifactsdigital forensicsartifact location - Question #36Network Security Controls, Protocols, and Devices
Which of the following layers of the TCP/IP model maintains data integrity by ensuring that messages are delivered in the order in which they are sent and that there is no loss or...
TCP/IP model layersTransport layerData integrityOrdered delivery - Question #37Network Security Controls, Protocols, and Devices
Which of the following is a telecommunication service designed for cost-efficient data transmission for intermittent traffic between local area networks (LANs) and between end-poin...
Frame RelayWAN protocolsData transmissionCircuit-switching alternatives - Question #38Network Security Policy and Management
Which of the following policies is a set of rules designed to enhance computer security by encouraging users to employ strong passwords and use them properly?
password policyaccess controlauthenticationsecurity policies - Question #39Network Security Controls, Protocols, and Devices
Which of the following biometric devices is used to take impressions of the friction ridges of the skin on the underside of the tip of the fingers?
Biometric authenticationFingerprint recognitionPhysical securityAccess control - Question #40Network Security Threats, Attacks, and Vulnerabilities
Peter, a malicious hacker, obtains e-mail addresses by harvesting them from postings, blogs, DNS listings, and Web pages. He then sends a large number of unsolicited commercial e-m...
email spamunsolicited communicationsemail attacksmalicious activities - Question #41Network Security Threats, Attacks, and Vulnerabilities
Which of the following refers to the exploitation of a valid computer session to gain unauthorized access to information or services in a computer system?
Session HijackingSession ExploitationUnauthorized AccessAttack Vectors - Question #42Network Security Threats, Attacks, and Vulnerabilities
Which of the following are the common security problems involved in communications and email? Each correct answer represents a complete solution. Choose all that apply.
Email security threatsMessage authenticationNon-repudiationIdentity threats - Question #43Network Security Controls, Protocols, and Devices
George works as a Network Administrator for Blue Soft Inc. The company uses Windows Vista operating system. The network of the company is continuously connected to the Internet. Wh...
firewallintrusion protectionperimeter securitynetwork security devices - Question #44Computer Network Defense Fundamentals
Which of the following layers of TCP/IP model is used to move packets between the Internet Layer interfaces of two different hosts on the same link?
TCP/IP ModelLink LayerNetwork InterfacesPacket Movement - Question #45Incident Response and Business Continuity
Fill in the blank with the appropriate term. ________________ is the process, policies, and procedures related to preparing for recovery or continuation of technology infrastructur...
disaster recoverybusiness continuityDR planninginfrastructure recovery - Question #46Network Security Policy and Management
You are advising a school district on disaster recovery plans. In case a disaster affects the main IT centers for the district they will need to be able to work from an alternate l...
disaster recovery planningrecovery site typesbusiness continuitycost optimization - Question #47Network Security Threats, Attacks, and Vulnerabilities
Which of the following techniques uses a modem in order to automatically scan a list of telephone numbers?
war dialingreconnaissancenetwork scanningPSTN enumeration - Question #48Computer Network Defense Fundamentals
Fill in the blank with the appropriate file system. Alternate Data Streams (ADS) is a feature of the______________ file system, allowing more than one data stream to be associated...
NTFSAlternate Data Streamsfile systemdata hiding - Question #49Network Security Policy and Management
Which of the following policies is used to add additional information about the overall security posture and serves to protect employees and organizations from inefficiency or ambi...
Security Policy TypesIssue-Specific PoliciesSecurity PosturePolicy Documentation - Question #50Incident Response and Business Continuity
Which of the following statements best describes the consequences of the disaster recovery plan test?
disaster recovery planningtesting and validationplan assessmentgap identification