exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 10 discussion

Actual exam question from CompTIA's SY0-701
Question #: 10
Topic #: 1
[All SY0-701 Questions]

An employee receives a text message that appears to have been sent by the payroll department and is asking for credential verification. Which of the following social engineering techniques are being attempted? (Choose two.)

  • A. Typosquatting
  • B. Phishing
  • C. Impersonation
  • D. Vishing
  • E. Smishing
  • F. Misinformation
Show Suggested Answer Hide Answer
Suggested Answer: CE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Etc_Shadow28000
Highly Voted 6 months, 1 week ago
Selected Answer: CE
In this scenario, where an employee receives a text message appearing to be from the payroll department asking for credential verification, the following social engineering techniques are being attempted: C. Impersonation - The attacker is pretending to be a trusted entity (the payroll department) to gain the employee's trust and obtain their credentials. E. Smishing - Smishing (SMS phishing) involves sending fraudulent text messages to trick individuals into revealing personal information, such as credentials, by clicking on a link or responding to the message.
upvoted 15 times
...
FennecLola
Highly Voted 4 months, 2 weeks ago
Selected Answer: CE
Vishing = voice Phishing = email Smishing = text
upvoted 8 times
...
IT_dude_in_training
Most Recent 3 weeks, 3 days ago
Selected Answer: BE
Although impersonation is indeed a tactic used in the attack (the attacker is impersonating the payroll department), the key focus of the attack is the method used (a fraudulent text message aimed at credential theft) rather than simply the act of pretending to be someone else. That is why the answers phishing (B) and smishing (E) are more precise for this scenario.
upvoted 1 times
...
JackExam2025
1 month, 3 weeks ago
Selected Answer: CE
Given that the employee only receives a text message (not a phone call), the correct answers would be: E. Smishing C. Impersonation
upvoted 1 times
...
oldbutgold
2 months ago
Selected Answer: BE
CompTIA's official guide states: "Smishing: A phishing attack that uses SMS text communications as the vector."​ and "Phishing: "Persuades or tricks the target into interacting with a malicious resource disguised as a trusted one, traditionally using email as the vector."​ It is not impersonation because the Comptia Official guide specifically associates impersonation with direct engagement and persuasion techniques rather than mass communication tactics like smishing or phishing​
upvoted 3 times
Elyo
5 days, 23 hours ago
I agree 100%
upvoted 1 times
...
...
Hasss
2 months ago
Selected Answer: CE
impersonation and smishing
upvoted 1 times
...
Cyborg1407
6 months, 1 week ago
Selected Answer: CE
Impersonation is a technique Smishing is a technique while Phishing which is also close is a Form. Impersonation and Smishing are under the category of Phishing
upvoted 1 times
...
dbrowndiver
6 months, 1 week ago
Selected Answer: CE
Answer C: Pretending to Be Payroll: The text message claims to be from the payroll department, a trusted entity within the company. This impersonation aims to create a sense of urgency and legitimacy, convincing the employee to comply with the request for credential verification. The attacker is leveraging the employee's trust in the payroll department to obtain sensitive information, which is a classic example of impersonation in social engineering. Answer E: The attack occurs through a text message, making it a clear case of smishing. The attacker uses SMS to deliver the deceptive message, which asks for credential verification under the guise of being from a legitimate source. Why it is important, since the message is delivered via text and is attempting to harvest credentials, it aligns perfectly with the definition of smishing.
upvoted 1 times
...
pedrwc7
6 months, 3 weeks ago
Selected Answer: CE
A. Typosquatting (Impersonation of legitimate URL) B. Phishing (Emails) C. Impersonation (Acting as someone) D. Vishing (Voice Phishing) E. Smishing (Message Phishing or Text Phishing) F. Misinformation (Providing wrong information or fake information or news)
upvoted 6 times
...
Markeze
6 months, 4 weeks ago
Selected Answer: CE
The attacker is likely using a combination of C. Impersonation and E. Smishing to trick the employee into revealing their credentials.
upvoted 2 times
...
kimitsuki
9 months, 1 week ago
Selected Answer: CE
C.Impersonation and E.Smishing
upvoted 1 times
...
emputu22
9 months, 4 weeks ago
the answer is C.Impersonation and E.Smishing
upvoted 1 times
...
c80f5c5
10 months, 2 weeks ago
phishing by classic definition is over email. Its a similar idea but going strictly by textbook definition it doesn't apply
upvoted 2 times
...
f26ddcd
10 months, 3 weeks ago
Selected Answer: CE
Smishing & Impersonate
upvoted 1 times
...
The_Body
10 months, 3 weeks ago
Phishing = email Vishing = voice / phone call Smishing = SMS / Tex messages
upvoted 3 times
...
shady23
11 months ago
Selected Answer: BE
B. PhishingE. Smishing
upvoted 3 times
...
hasquaati
11 months ago
Selected Answer: CE
This one is tricky, because Smishing is a part of Phishing. Its one of those annoying questions that Vendors like to throw at exam takers. Smishing is the most specific and direct answer to this question. Answer is CE.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago