CAS-004 Exam Question 221

A penetration tester is trying to gain access to a remote system. The tester is able to see the secure login page and knows one user account and email address, but has not yet discovered a password.
Which of the following would be the EASIEST method of obtaining a password for the known account?
  • CAS-004 Exam Question 222

    A large number of emails have been reported, and a security analyst is reviewing the following information from the emails:

    As part of the image process, which of the following is the FIRST step the analyst should take?
  • CAS-004 Exam Question 223

    A security analyst is reviewing the following output:

    Which of the following would BEST mitigate this type of attack?
  • CAS-004 Exam Question 224

    An organization is preparing to migrate its production environment systems from an on-premises environment to a cloud service. The lead security architect is concerned that the organization's current methods for addressing risk may not be possible in the cloud environment.
    Which of the following BEST describes the reason why traditional methods of addressing risk may not be possible in the cloud?
  • CAS-004 Exam Question 225

    A company wants to protect its intellectual property from theft. The company has already applied ACLs and DACs.
    Which of the following should the company use to prevent data theft?