SSCP Exam Questions
1,274 real SSCP exam questions with expert-verified answers and explanations. Page 21 of 26.
- Question #1022Security Concepts and Practices
Which of the following virus types changes some of its characteristics as it spreads?
Polymorphic virusMalware typesAntivirus evasion - Question #1024Security Concepts and Practices
Which virus category has the capability of changing its own code, making it harder to detect by anti-virus software?
MalwarePolymorphic virusesVirus detectionAnti-virus evasion - Question #1025Security Concepts and Practices
The high availability of multiple all-inclusive, easy-to-use hacking tools that do NOT require much technical knowledge has brought a growth in the number of which type of attacker...
Threat actorsScript kiddiesAttacker typesHacking tools - Question #1026Security Concepts and Practices
Which of the following computer crime is MORE often associated with INSIDERS?
Insider threatsComputer crimeData manipulationData integrity - Question #1027Security Concepts and Practices
What do the ILOVEYOU and Melissa virus attacks have in common?
MalwareVirusAttack VectorsSocial Engineering - Question #1028Security Concepts and Practices
Crackers today are MOST often motivated by their desire to:
Threat ActorsCybercrime MotivationFinancial Gain - Question #1029Security Concepts and Practices
What best describes a scenario when an employee has been shaving off pennies from multiple accounts and depositing the funds into his own bank account?
Salami techniqueFinancial fraudInsider threatAttack methods - Question #1031Security Concepts and Practices
What is malware that can spread itself over open network connections?
MalwareWormsThreat TypesNetwork Propagation - Question #1032Systems and Application Security
Which of the following technologies is a target of XSS or CSS (Cross-Site Scripting) attacks?
Cross-Site Scripting (XSS)Web Application SecurityVulnerabilitiesClient-Side Attacks - Question #1033Network and Communications Security
Which of the following protocols is designed to send individual messages securely?
ProtocolsApplication Layer SecurityData in Transit Security - Question #1034Network and Communications Security
Secure Electronic Transaction (SET) and Secure HTTP (S-HTTP) operate at which layer of the OSI model?
OSI ModelApplication Layer ProtocolsSETS-HTTP - Question #1035Network and Communications Security
Which of the following is the core of fiber optic cables made of?
Fiber opticsCable componentsNetwork infrastructure - Question #1036Network and Communications Security
Which SSL version offers client-side authentication?
SSL/TLS versionsClient authenticationNetwork protocolsCryptographic protocols - Question #1037Network and Communications Security
Which of the following statements pertaining to IPSec is incorrect?
IPSecNetwork ProtocolsData ConfidentialityData Integrity - Question #1038Network and Communications Security
Which of the following is NOT a characteristic or shortcoming of packet filtering gateways?
Packet Filtering GatewaysFirewallsNetwork Security ArchitectureSecurity Device Capabilities - Question #1039Network and Communications Security
In order to ensure the privacy and integrity of the data, connections between firewalls over public networks should use:
VPNNetwork SecurityEncryptionData Privacy - Question #1040Network and Communications Security
The concept of best effort delivery is best associated with?
Best Effort DeliveryInternet Protocol (IP)Network LayerTCP/IP Model - Question #1041Network and Communications Security
Which layer of the OSI/ISO model handles physical addressing, network topology, line discipline, error notification, orderly delivery of frames, and optional flow control?
OSI ModelData Link LayerNetworking FundamentalsPhysical Addressing - Question #1042Network and Communications Security
The Logical Link Control sub-layer is a part of which of the following?
OSI modelData Link LayerLogical Link ControlNetwork protocols - Question #1043Network and Communications Security
Which of the following services relies on UDP?
UDPDNSNetwork ProtocolsTransport Layer - Question #1044Network and Communications Security
How many bits of a MAC address uniquely identify a vendor, as provided by the IEEE?
MAC AddressOUINetworking FundamentalsIEEE - Question #1045Network and Communications Security
Which Network Address Translation (NAT) is the most convenient and secure solution?
Network Address Translation (NAT)Port Address Translation (PAT)Network SecurityIPv4 - Question #1046Network and Communications Security
What is the primary difference between FTP and TFTP?
FTPTFTPNetwork ProtocolsAuthentication - Question #1048Network and Communications Security
Which of the following statements pertaining to PPTP (Point-to-Point Tunneling Protocol) is incorrect?
PPTPVPN ProtocolsNetwork ProtocolsTunneling - Question #1050Network and Communications Security
Which of the following rules appearing in an Internet firewall policy is inappropriate?
Firewall PolicyNetwork SecuritySecurity Best PracticesTraffic Filtering - Question #1051Network and Communications Security
SMTP can best be described as:
SMTPEmail ProtocolsNetwork Protocols - Question #1052Network and Communications Security
Which of the following statements is NOT true of IPSec Transport mode?
IPSecTransport ModeTunnel ModeNetwork Security Protocols - Question #1053Network and Communications Security
All following observations about IPSec are correct except:
IPSecNetwork Security ProtocolsSymmetric CryptographyAsymmetric Cryptography - Question #1054Network and Communications Security
Which of the following statements pertaining to firewalls is incorrect?
FirewallsNetwork Security DevicesOSI ModelNetwork Layers - Question #1055Network and Communications Security
Which of the following ports does NOT normally need to be open for a mail server to operate?
Network PortsEmail ProtocolsMail Server OperationsSMTP/POP3/IMAP/NNTP - Question #1056Network and Communications Security
Which of the following is an extension to Network Address Translation that permits multiple devices providing services on a local area network (LAN) to be mapped to a single public...
Network Address Translation (NAT)Port Address Translation (PAT)IP AddressingNetwork Protocols - Question #1057Network and Communications Security
At which OSI/ISO layer is an encrypted authentication between a client software package and a firewall performed?
OSI ModelTLS/SSLNetwork Security ProtocolsAuthentication - Question #1058Security Operations and Administration
Which of the following is the primary reason why a user would choose a dial-up modem connection to the Internet when they have a faster, secure Internet connection through the orga...
Security Policy EnforcementUser AwarenessCircumventionUnauthorized Connection - Question #1059Network and Communications Security
Which of the following can best eliminate dial-up access through a Remote Access Server as a hacking vector?
Remote Access SecurityNetwork ArchitectureFirewall ConfigurationThreat Mitigation - Question #1060Network and Communications Security
Which of the following was designed to support multiple network types over the same serial link?
PPPSerial LinksNetwork ProtocolsWAN Protocols - Question #1061Network and Communications Security
Before the advent of classless addressing, the address 128.192.168.16 would have been considered part of:
IP AddressingClassful AddressingIPv4Network Basics - Question #1062Network and Communications Security
What is an IP routing table?
IP RoutingNetworking FundamentalsNetwork Protocols - Question #1063Network and Communications Security
Which of the following was developed as a simple mechanism for allowing simple network terminals to load their operating system from a server over the LAN?
BootPNetwork ProtocolsNetwork Booting - Question #1064Network and Communications Security
Which of the following protocols operates at the session layer (layer 5)?
OSI ModelNetwork ProtocolsSession LayerRPC - Question #1065Network and Communications Security
Which layer of the TCP/IP protocol stack corresponds to the ISO/OSI Network layer (layer 3)?
TCP/IP modelOSI modelNetwork layersProtocol stacks - Question #1066Network and Communications Security
What attack involves the perpetrator sending spoofed packet(s) wich contains the same destination and source IP address as the remote host, the same port for the source and destina...
Denial of ServiceNetwork AttacksIP SpoofingTCP/IP Vulnerabilities - Question #1067Network and Communications Security
Which of the following firewall rules found on a firewall installed between an organization's internal network and the Internet would present the greatest danger to the internal ne...
Firewall rulesNetwork securityPerimeter defenseInbound traffic - Question #1068Network and Communications Security
Which of the following statements pertaining to link encryption is false?
Link EncryptionNetwork SecurityData in TransitEncryption Types - Question #1069Network and Communications Security
Which of the following statements pertaining to packet filtering is incorrect?
Packet filteringFirewallsNetwork securityStateless vs Stateful - Question #1070Network and Communications Security
Which of the following best defines source routing?
Source RoutingNetwork ProtocolsPacket Forwarding - Question #1071Network and Communications Security
Which of the following is a method of multiplexing data where a communication channel is divided into an arbitrary number of variable bit-rate digital channels or data streams. Thi...
MultiplexingStatistical MultiplexingNetwork ProtocolsData Transmission - Question #1072Network and Communications Security
Which of the following is NOT a defined ISO basic task related to network management?
Network managementISO FCAPSNetwork operationsSecurity standards - Question #1073Network and Communications Security
Why is infrared generally considered to be more secure to eavesdropping than multidirectional radio transmissions?
Wireless SecurityInfrared TechnologyEavesdropping PreventionLine-of-Sight - Question #1074Network and Communications Security
Authentication Headers (AH) and Encapsulating Security Payload (ESP) protocols are the driving force of IPSec. Authentication Headers (AH) provides the following service except:
IPSecAuthentication Header (AH)Network ProtocolsConfidentiality - Question #1075Cryptography
DES - Data Encryption standard has a 128 bit key and is very difficult to break.
DESKey lengthSymmetric cryptography