exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 81 discussion

Actual exam question from CompTIA's SY0-701
Question #: 81
Topic #: 1
[All SY0-701 Questions]

An administrator is reviewing a single server's security logs and discovers the following:

Which of the following best describes the action captured in this log file?

  • A. Brute-force attack
  • B. Privilege escalation
  • C. Failed password audit
  • D. Forgotten password by the user
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Etc_Shadow28000
Highly Voted 1 year ago
Selected Answer: A
A. Brute-force attack The log shows multiple failed login attempts within a very short time frame, which is characteristic of a brute-force attack. In a brute-force attack, an attacker attempts many different passwords or passphrases with the hope of eventually guessing correctly. The pattern of frequent and continuous login failures seen in the log entries aligns with this type of attack. Therefore, the correct answer is: A. Brute-force attack
upvoted 10 times
...
PAWarriors
Most Recent 10 months ago
Selected Answer: A
A. Brute-force attack --> Event ID 4625 is logged for any logon failure. It generates on the computer where logon attempt was made. --> In this scenario we can see multiple login attempts every few seconds indicating that this is a potential brute-force attack.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...