CompTIA
SY0-501 · Question #330
A security analyst has received the following alert snippet from the HIDS appliance: Given the above logs, which of the following is the cause of the attack?
Sign in or unlock SY0-501 to reveal the answer and full explanation for question #330. The question stem and answer options stay visible for context.
Submitted by cyberguy42· Mar 4, 2026Threats, vulnerabilities, and mitigations
Question
A security analyst has received the following alert snippet from the HIDS appliance:
Given the above logs, which of the following is the cause of the attack?
Exhibit
Options
- AThe TCP ports on destination are all open
- BFIN, URG, and PSH flags are set in the packet header
- CTCP MSS is configured improperly
- DThere is improper Layer 2 segmentation
Unlock SY0-501 to see the answer
You've previewed enough free SY0-501 questions. Unlock SY0-501 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#TCP flags#packet analysis#HIDS#network attack detection
