exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 137 discussion

Actual exam question from CompTIA's CS0-003
Question #: 137
Topic #: 1
[All CS0-003 Questions]

A recent penetration test discovered that several employees were enticed to assist attackers by visiting specific websites and running downloaded files when prompted by phone calls. Which of the following would best address this issue?

  • A. Increasing training and awareness for all staff
  • B. Ensuring that malicious websites cannot be visited
  • C. Blocking all scripts downloaded from the internet
  • D. Disabling all staff members’ ability to run downloaded applications
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
throughthefray
Highly Voted 1 year, 4 months ago
While I agree that A should be the answer as a whole. I must point out a flaw in the question itself. I hate to go all "english major" on this question, but the use of the word "entice" actually implies that the employees are being attracted or tempted by an offering of "pleasure, wealth, or advantage" in order to help the attackers. (im using the dictionary definition of entice in this case) The use of the word "entice" denotes that the employee is AWARE that they are helping an attacker in that moment. Based on how the question is worded, they are NOT being tricked.
upvoted 8 times
throughthefray
1 year, 4 months ago
Had to break the comment into two parts since it wouldnt let me post it all as one. To continue my previous thought, even if you train someone, if the person is the type that is going to be tempted to download something for monetary and run it for significant moneratary gain, theyre going to do it anyway, regardless of sufficient training or not. A strong arguement could be made for B because of the fact that the question implies that the employees are being bribed into assisting the attacker. Thus if the main problem is that the company cant trust the integrity of their employees they should block the malicious website. Perhaps the writer of this question didnt know what the word "enticed" means.
upvoted 4 times
...
...
[Removed]
Highly Voted 1 year, 5 months ago
Selected Answer: A
A) increasing training and awareness for all staff We do this every year as part of our Penetration Testing as the Social Engineering part of it. Exact same scenario. PenTester calls our employees at random. "Hey, I'm working with so and so. Can you click this link and go to this website?" When we have users click and the report comes back, we assign remedial training. At the heart of this, the issue isn't a lack of technical control, but the human aspect of it. Social engineering is the culprit, and more training is the solution.
upvoted 5 times
...
cy_analyst
Most Recent 7 months ago
Selected Answer: A
The other answers don't address the root cause: employees being tricked into helping attackers.
upvoted 1 times
...
Narobi
1 year, 4 months ago
Selected Answer: A
Can't patch a human unfortunately
upvoted 3 times
...
chaddman
1 year, 6 months ago
Selected Answer: A
Increasing training and awareness for all staff (A): The root issue is human behavior—employees being susceptible to social engineering attacks. Training and awareness programs can educate staff on how to recognize and respond to such attempts, making this the most effective solution.
upvoted 2 times
...
kmordalv
1 year, 8 months ago
Selected Answer: A
Correct. It seems the most logical answer
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago