exam questions

Exam CS0-002 All Questions

View all questions & answers for the CS0-002 exam

Exam CS0-002 topic 1 question 66 discussion

Actual exam question from CompTIA's CS0-002
Question #: 66
Topic #: 1
[All CS0-002 Questions]

An information security analyst on a threat-hunting team is working with administrators to create a hypothesis related to an internally developed web application.
The working hypothesis is as follows:
✑ Due to the nature of the industry, the application hosts sensitive data associated with many clients and is a significant target.
✑ The platform is most likely vulnerable to poor patching and inadequate server hardening, which expose vulnerable services.
✑ The application is likely to be targeted with SQL injection attacks due to the large number of reporting capabilities within the application.
As a result, the systems administrator upgrades outdated service applications and validates the endpoint configuration against an industry benchmark. The analyst suggests developers receive additional training on implementing identity and access management, and also implements a WAF to protect against SQL injection attacks. Which of the following BEST represents the technique in use?

  • A. Improving detection capabilities
  • B. Bundling critical assets
  • C. Profiling threat actors and activities
  • D. Reducing the attack surface area
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Practice_all
Highly Voted 3 years, 9 months ago
the hypothesis is for Attack surface so the answer should be D
upvoted 6 times
...
Yeweja
Highly Voted 3 years, 10 months ago
D is correct
upvoted 5 times
...
fuzzyguzzy
Most Recent 5 months ago
Selected Answer: D
D is the least worst answer.
upvoted 1 times
...
2Fish
2 years, 1 month ago
Selected Answer: D
D. For sure, those layers of defense put in place will shrink the attack surface.
upvoted 2 times
...
NickDrops
2 years, 3 months ago
D, but realistically the admin is performing device hardening. The admin isn't removing applications or closing ports. The attack surface is really the same.
upvoted 3 times
Sebatian20
1 year, 5 months ago
Totally agree with you. This is a terrible question
upvoted 1 times
...
...
f3lix
2 years, 4 months ago
Selected Answer: D
Apt - Attach Surface is being compressed, so Answer :D
upvoted 1 times
...
david124
2 years, 6 months ago
Selected Answer: D
d it is
upvoted 1 times
...
amateurguy
2 years, 8 months ago
Selected Answer: D
yes d is correct.
upvoted 1 times
...
miabe
2 years, 9 months ago
Selected Answer: D
looks good to me
upvoted 1 times
...
SniipZ
3 years, 10 months ago
Going for D here definitely
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago