QuiztudyPREMIUM
CompTIA Security+ (SY0-701) • STUDY MODE
Security+ Practice Quiz 1
QUESTION 1 OF 2
A security analyst discovers an employee fell for an email claiming to be from HR requesting urgent password verification via a fake login link. Which type of social engineering attack occurred?
A
Spear PhishingCorrect AnswerB
VishingC
WhalingD
SmishingExplanation:
Spear phishing is a targeted phishing attack aimed at specific individuals or roles within an organization using tailored contextual information (like impersonating HR).
QUESTION 2 OF 2
Which access control model grants user permissions based strictly on job roles and defined responsibilities within an organization?
A
DAC (Discretionary Access Control)B
RBAC (Role-Based Access Control)Correct AnswerC
MAC (Mandatory Access Control)D
ABAC (Attribute-Based Access Control)Explanation:
Role-Based Access Control (RBAC) assigns security permissions to predefined organizational roles (e.g. Accountant, Admin) rather than individual user accounts.
Ready to test your recall?
A security analyst discovers an employee fell for an email claiming to be from HR requesting urgent password verification via a fake login link. Which type of social engineering attack occurred?
A
Spear Phishing
B
Vishing
C
Whaling
D
Smishing
How confident are you in this answer?