nerdexam
CompTIA

SY0-701 · Question #650

A systems administrator just purchased multiple network devices. Which of the following should the systems administrator perform to prevent attackers from accessing the devices by using publicly…

The correct answer is C. Change default passwords. Changing default passwords (C) directly addresses the threat of attackers using publicly available information - manufacturers publish default credentials in their documentation, and attackers routinely exploit unchanged defaults to gain access to new devices. Why the…

Submitted by eva_at· Mar 6, 2026Threats, vulnerabilities, and mitigations

Question

A systems administrator just purchased multiple network devices. Which of the following should the systems administrator perform to prevent attackers from accessing the devices by using publicly available information?

Options

  • AInstall endpoint protection.
  • BDisable ports/protocols.
  • CChange default passwords.
  • DRemove unnecessary software.

How the community answered

(39 responses)
  • B
    3% (1)
  • C
    92% (36)
  • D
    5% (2)

Explanation

Changing default passwords (C) directly addresses the threat of attackers using publicly available information - manufacturers publish default credentials in their documentation, and attackers routinely exploit unchanged defaults to gain access to new devices.

Why the distractors are wrong:

  • A (Endpoint protection) guards against malware on hosts, not unauthorized device login via known credentials.
  • B (Disable ports/protocols) reduces attack surface but doesn't address the specific risk of publicly known default credentials.
  • D (Remove unnecessary software) is good hardening practice but is irrelevant to the credential-based threat described.

Memory tip: The phrase "publicly available information" is your key clue - default credentials are literally published in vendor manuals and searchable online. When you see that phrase in a question, think default passwords.

Topics

#Default credentials#Network device security#Security configuration#Password management

Community Discussion

No community discussion yet for this question.

Full SY0-701 Practice