exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 437 discussion

Actual exam question from CompTIA's SY0-701
Question #: 437
Topic #: 1
[All SY0-701 Questions]

A user's workstation becomes unresponsive and displays a ransom note demanding payment to decrypt files. Before the attack, the user opened a resume they received in a message, browsed the company's website, and installed OS updates. Which of the following is the most likely vector of this attack?

  • A. Spear-phishing attachment
  • B. Watering hole
  • C. Infected website
  • D. Typosquatting
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Fourgehan
5 months ago
Selected Answer: A
The most likely vector in this scenario is the resume the user opened from a message. This strongly suggests a spear-phishing attack, where attackers send a targeted email with a malicious attachment (in this case, the resume). Once opened, the attachment likely executed malware that encrypted the user's files and displayed the ransom note
upvoted 1 times
...
saba263
5 months ago
Selected Answer: A
The most likely vector of the ransomware attack is the spear-phishing attachment from the resume the user opened in a message. Spear-phishing is a targeted attack where attackers send malicious attachments or links that appear legitimate. In this case, the resume attachment likely contained malicious code that executed the ransomware when opened. Why Not the Other Options? B. Watering hole: A watering hole attack compromises a trusted website that the target frequently visits. While the user browsed the company's website, there’s no evidence that the website itself was infected or used as the attack vector.
upvoted 4 times
...
fd4ea1a
5 months, 1 week ago
Selected Answer: B
Watering holes are usually set up somewhere that you know people will go and set a trap there. he went to the companys website, and installed the OS update. It would be a sprear phissing incident if the email he recieved had the attachment, but instead he went to the watering hole. there is a case for both.
upvoted 1 times
fc040c7
2 months, 4 weeks ago
I think that resume had malware. thats why I went with spear phishing. I do see a case for water hole, if they mentioned others having problems too. Got to love these questions
upvoted 1 times
...
...
s_plus
5 months, 1 week ago
What is it: A type of social engineering attack, Spear Phishing is a more targeted version of phishing, where the attacker researches their target and makes the scam appear more legitimate. How it works: It usually starts with the attacker researching the target(s), then crafting an email (disguised as a trustworthy entity) tailored to the target's interests or habits, leading them to click on malicious links or attachments.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago