Home
Explore
Exams
Login
Get started
Home
*cracked* comptia security plus sy0-701
*cracked* comptia security plus sy0-701
0.0
(0)
Rate it
Studied by 0 people
Call Kai
Learn
Practice Test
Spaced Repetition
Match
Flashcards
Knowt Play
Card Sorting
1/489
Earn XP
Description and Tags
might be ai generated
All Modes
Learn
Practice Test
Matching
Spaced Repetition
Call with Kai
Chats
Last updated 10:58 AM on 10/11/26
Update
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat
No analytics yet
Send a link to your students to track their progress
490 Terms
View all (490)
Star these 490
1
New cards
Secure Baseline
Approved secure configuration used as the standard for deploying systems and detecting unauthorized configuration changes.
2
New cards
Hardening
Reduces attack opportunities by removing unnecessary software, disabling unused services, and changing insecure defaults.
3
New cards
Mobile Device Management (MDM)
Centrally enforces device policies, including encryption, screen locks, application restrictions, and remote wipe.
4
New cards
Bring Your Own Device (BYOD)
Allows employees to use personal devices for work, requiring controls that protect company data without full organizational ownership.
5
New cards
Corporate-Owned, Personally Enabled (COPE)
Gives employees limited personal use of company-owned devices while retaining organizational control.
6
New cards
Choose Your Own Device (CYOD)
Lets employees select a device from an organization-approved list.
7
New cards
Wi-Fi Protected Access 2 (WPA2)
Protects wireless traffic using AES-CCMP; weak shared passwords can still be guessed offline.
8
New cards
Wi-Fi Protected Access 3 (WPA3)
Improves wireless security with SAE, which resists offline password guessing.
9
New cards
Simultaneous Authentication of Equals (SAE)
Password-based Wi-Fi authentication method used by WPA3 that makes offline password guessing harder.
10
New cards
Pre-Shared Key (PSK)
Secret configured in advance and shared by authorized users; changing it affects everyone who uses it.
11
New cards
Remote Authentication Dial-In User Service (RADIUS)
Centralizes network authentication and accounting, commonly supporting individual credentials through 802.1X.
12
New cards
Input Validation
Checks data against expected types, lengths, and formats before processing to reduce malformed input and injection risks.
13
New cards
Parameterized Queries
Separate database commands from supplied input so user data cannot be interpreted as SQL instructions.
14
New cards
Secure Cookie
Cookie configured with security attributes to reduce exposure of session data.
15
New cards
Secure Cookie Attribute
Restricts cookie transmission to HTTPS connections.
16
New cards
HttpOnly Cookie Attribute
Prevents client-side JavaScript from reading a cookie, reducing session theft through script injection.
17
New cards
SameSite Cookie Attribute
Restricts when browsers send cookies with cross-site requests, helping mitigate CSRF.
18
New cards
Static Application Security Testing (SAST)
Examines source code or compiled code without running the application to find flaws early in development.
19
New cards
Static Code Analysis
Examines code without executing it to identify potential defects and security weaknesses.
20
New cards
Dynamic Application Security Testing (DAST)
Tests a running application from the outside to identify exploitable runtime weaknesses.
21
New cards
Dynamic Analysis
Examines software behavior while it executes to reveal runtime problems.
22
New cards
Fuzzing
Feeds unexpected, random, or malformed inputs to software to uncover crashes and other defects.
23
New cards
Package Monitoring
Tracks third-party software components for known vulnerabilities, suspicious changes, and malicious updates.
24
New cards
Code Signing
Uses a digital signature to verify software origin and integrity, but does not guarantee that the software is safe.
25
New cards
Sandboxing
Runs code in an isolated environment to limit its ability to affect other systems or data.
26
New cards
Application Allow List
Permits only explicitly approved applications to run, blocking unapproved software by default.
27
New cards
Application Deny List
Blocks specified applications while allowing others, including potentially unknown malicious software.
28
New cards
Asset Inventory
Records organizational assets and their ownership, location, and classification to establish what should exist.
29
New cards
Enumeration
Actively discovers network devices, accounts, services, and other resources to identify what actually exists.
30
New cards
Shadow Information Technology (Shadow IT)
Technology used without IT approval or oversight, creating unmanaged security and compliance risks.
31
New cards
Acquisition and Procurement
Obtains hardware, software, and services while evaluating security requirements and vendor risks before purchase.
32
New cards
Sanitization
Makes stored data unrecoverable using methods that may allow the storage medium to be reused.
33
New cards
Destruction
Physically damages storage media so it cannot be reused and its data cannot practically be recovered.
34
New cards
Degaussing
Uses a strong magnetic field to erase magnetic media such as traditional hard drives and tapes; it does not sanitize SSDs.
35
New cards
Certificate of Sanitization or Destruction
Documents that storage media was sanitized or destroyed, providing evidence for audits and disposal records.
36
New cards
Data Remanence
Residual information that remains on storage media after deletion or formatting.
37
New cards
Decommissioning
Retires an asset by removing access, sanitizing or destroying data, and updating asset records.
38
New cards
Data Retention
Defines how long information must be kept and when it must be deleted to meet business and legal requirements.
39
New cards
Vulnerability Scan
Automatically checks systems for known weaknesses without attempting to exploit them.
40
New cards
Credentialed Vulnerability Scan
Uses authorized login credentials to inspect internal system details, such as missing patches and insecure settings.
41
New cards
Non-Credentialed Vulnerability Scan
Examines a system without logging in, showing externally visible weaknesses but providing less internal detail.
42
New cards
Penetration Test
Authorized security test that attempts to exploit weaknesses to demonstrate their actual impact.
43
New cards
False Positive
A finding incorrectly identifies harmless activity or a safe condition as a problem.
44
New cards
False Negative
A detection system fails to identify a real threat or vulnerability.
45
New cards
Common Vulnerabilities and Exposures (CVE)
Standard identifier assigned to a publicly documented cybersecurity vulnerability.
46
New cards
Common Vulnerability Scoring System (CVSS)
Scores a vulnerability's technical severity on a 0.0–10.0 scale; actual business risk depends on additional context.
47
New cards
Threat Feed
Supplies threat intelligence such as malicious IP addresses, domains, file hashes, and attacker techniques.
48
New cards
Open-Source Intelligence (OSINT)
Gathers information from publicly available sources for investigation, reconnaissance, and threat analysis.
49
New cards
Responsible Disclosure Program
Provides a process for researchers to report vulnerabilities privately so they can be addressed before public disclosure.
50
New cards
Bug Bounty Program
Offers rewards for qualifying vulnerability reports submitted under defined testing rules.
51
New cards
Vulnerability Remediation
Fixes or reduces a weakness through patching, reconfiguration, segmentation, or compensating controls.
52
New cards
Risk Exception
Formally approved deviation from a security requirement, usually documented with justification and compensating controls.
53
New cards
Risk Exemption
Explicit authorization to remain outside a specified security requirement under defined conditions.
54
New cards
Remediation Validation
Confirms that a security fix worked through rescanning, testing, or other verification.
55
New cards
Security Information and Event Management (SIEM)
Centralizes and correlates logs to detect suspicious activity and alert analysts.
56
New cards
Event Correlation
Links related events across systems to reveal patterns that individual alerts might not show.
57
New cards
Log Normalization
Converts differently formatted logs into a consistent structure for searching, comparison, and correlation.
58
New cards
Alert Tuning
Adjusts detection rules and thresholds to reduce false alarms without overlooking important threats.
59
New cards
Quarantine
Isolates a suspicious file, device, or message to prevent harm while it is investigated.
60
New cards
Security Content Automation Protocol (SCAP)
Standards for automating security configuration checks, vulnerability assessments, and compliance reporting.
61
New cards
Center for Internet Security (CIS) Benchmarks
Published secure-configuration recommendations for operating systems, applications, and other technologies.
62
New cards
Simple Network Management Protocol (SNMP)
Monitors and manages network devices; SNMPv3 adds authentication and encryption protections.
63
New cards
SNMP Trap
Notification sent by a managed device to report an event or condition to a monitoring system.
64
New cards
NetFlow
Records network traffic metadata, such as communicating addresses and traffic volume, without capturing packet contents.
65
New cards
Packet Capture
Records network packets, potentially including payloads, for detailed troubleshooting and security investigation.
66
New cards
Data Loss Prevention (DLP)
Detects or blocks sensitive information moving through channels such as email, removable media, and cloud uploads.
67
New cards
Firewall
Filters network traffic according to rules involving addresses, ports, protocols, or application characteristics.
68
New cards
Implicit Deny
Blocks traffic or access that has not been explicitly permitted by the applicable rules.
69
New cards
Access Control List (ACL)
Ordered rules defining which traffic or users may access a network path or resource.
70
New cards
Screened Subnet
Separates public-facing services from the internal network to limit the impact of a compromised internet-facing system.
71
New cards
Intrusion Detection System (IDS)
Monitors activity for signs of attacks and generates alerts without automatically blocking the traffic.
72
New cards
Intrusion Prevention System (IPS)
Inspects traffic and actively blocks detected malicious activity, commonly while positioned inline.
73
New cards
Host-Based Intrusion Prevention System (HIPS)
Detects and blocks suspicious activity on an individual endpoint.
74
New cards
Host-Based Firewall
Filters incoming and outgoing traffic on an individual device, including when it uses an untrusted network.
75
New cards
Web Filter
Allows or blocks web access based on URLs, categories, reputation, or organizational policy.
76
New cards
DNS Filtering
Blocks resolution of known malicious or prohibited domains before connections are established.
77
New cards
Group Policy
Centrally applies configuration and security settings to Windows users and domain-joined computers.
78
New cards
Sender Policy Framework (SPF)
Uses a DNS record to identify mail servers authorized to send email for a domain.
79
New cards
DomainKeys Identified Mail (DKIM)
Uses a digital signature to help verify an email's domain association and detect message alteration.
80
New cards
Domain-based Message Authentication, Reporting, and Conformance (DMARC)
Specifies how receivers should handle messages that fail SPF or DKIM checks and provides reporting.
81
New cards
File Integrity Monitoring (FIM)
Detects unexpected changes to important files and configurations that may indicate tampering.
82
New cards
Network Access Control (NAC)
Evaluates identity and device compliance before granting network access and may isolate noncompliant devices.
83
New cards
Endpoint Detection and Response (EDR)
Monitors endpoint behavior to detect threats and support investigation, containment, and response.
84
New cards
Extended Detection and Response (XDR)
Correlates security telemetry across multiple domains, such as endpoints, networks, cloud services, and email.
85
New cards
User and Entity Behavior Analytics (UEBA)
Detects suspicious deviations from typical user or device behavior, potentially revealing compromised accounts or insider threats.
86
New cards
87
New cards
Telnet
Provides remote command-line access over TCP port 23 without encrypting traffic, exposing credentials and commands.
88
New cards
Secure Shell (SSH)
Provides encrypted remote command-line access, commonly over TCP port 22.
89
New cards
Hypertext Transfer Protocol (HTTP)
Transfers web content over TCP port 80 without providing transport encryption by itself.
90
New cards
Hypertext Transfer Protocol Secure (HTTPS)
Protects HTTP traffic with TLS, commonly over TCP port 443.
91
New cards
File Transfer Protocol (FTP)
Transfers files using TCP ports 20 and 21 without encrypting credentials or content by default.
92
New cards
Simple Mail Transfer Protocol (SMTP)
Sends email between mail servers, commonly over TCP port 25; message submission commonly uses ports 587 or 465.
93
New cards
Lightweight Directory Access Protocol (LDAP)
Queries and manages directory information, commonly over TCP port 389 without encryption by default.
94
New cards
Lightweight Directory Access Protocol Secure (LDAPS)
Protects directory communication with TLS, commonly over TCP port 636.
95
New cards
Remote Desktop Protocol (RDP)
Provides remote graphical access to Windows systems, commonly over TCP port 3389.
96
New cards
Domain Name System (DNS)
Resolves domain names to IP addresses, commonly using port 53 over UDP or TCP.
97
New cards
Domain Name System Security Extensions (DNSSEC)
Uses digital signatures to authenticate DNS data and detect tampering, but does not encrypt DNS traffic.
98
New cards
Dynamic Host Configuration Protocol (DHCP)
Automatically supplies devices with IP addresses and network settings such as gateways and DNS servers.
99
New cards
Account Provisioning
Creates accounts and assigns appropriate permissions when access is needed.
100
New cards
Account Deprovisioning
Disables or removes accounts and access when they are no longer required.
Load more