nerdexam
CompTIA

SY0-501 · Question #155

Drag and Drop Question Task: Determine the types of attacks below by selecting an option from the dropdown list. Answer:

The correct answer is Phishing; Whaling; Vishing; Spam; Social Engineering. The correct arrangement identifies the five most commonly tested, fundamental social engineering and email-based attack types in security certification exams. Phishing is deceptive email-based credential harvesting, Whaling targets high-value executives, Vishing uses…

Submitted by takeshi77· Mar 4, 2026CompTIA Security+ Domain 1: Threats, Attacks and Vulnerabilities - specifically identifying types of social engineering attacks and distinguishing them from other attack categories

Question

Drag and Drop Question Task: Determine the types of attacks below by selecting an option from the dropdown list. Answer:

Exhibits

SY0-501 question #155 exhibit 1
SY0-501 question #155 exhibit 2

Answer Area

Drag items

PhishingPharmingWhalingX-MasSpoofingHoaxSpamSocial EngineeringVishing

Correct arrangement

  • Phishing
  • Whaling
  • Vishing
  • Spam
  • Social Engineering

Explanation

The correct arrangement identifies the five most commonly tested, fundamental social engineering and email-based attack types in security certification exams. Phishing is deceptive email-based credential harvesting, Whaling targets high-value executives, Vishing uses voice/phone calls, Spam is unsolicited bulk messaging, and Social Engineering is the overarching human manipulation category. These five represent distinct, clearly defined attack vectors that appear consistently across CompTIA Security+ and similar certification objectives.

Topics

#Social Engineering#Phishing Attacks#Threat Vectors#Security Awareness

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice