Due to regulatory requirements, server in a global organization must use time synchronization. Which of the following represents the MOST secure method of time synchronization?
The server should connect to external Stratum 0 NTP servers for synchronization
The server should connect to internal Stratum 0 NTP servers for synchronization
The server should connect to external Stratum 1 NTP servers for synchronization

Which of the following uses precomputed hashes to guess passwords?
Rainbow tables
ARP tables
NAT tables

Which of the following are MOST susceptible to birthday attacks?
Hashed passwords
Encryption passwords
One time passwords
Digital certificates

A. administrator has configured a new Linux server with the FTP service. Upon verifying that the service was configured correctly, the administrator has several users test the FTP service. Users report that they are able to connect to the FTP service and download their personal files, however, they cannot transfer new files to the server. Which of the following will most likely fix the uploading issue for the users?
Set the Boolean selinux value to allow FTP home directory uploads
Configure the FTP daemon to utilize PAM authentication pass through user permissions
Create an ACL to allow the FTP service write access to user directories
Reconfigure the ftp daemon to operate without utilizing the PSAV mode

A. in-house penetration tester has been asked to evade a new DLP system. The tester plans to exfiltrate data through steganography. Discovery of which of the following would help catch the tester in the act?
Unusual SFTP connections to a consumer IP address
Abnormally high numbers of outgoing instant messages that contain obfuscated text
Outgoing emails containing unusually large image files
Large-capacity USB drives on the tester's desk with encrypted zip files

Which of the following network vulnerability scan indicators BEST validates a successful, active scan?
The scan data identifies the use of privileged-user credentials.
The scan results identify the hostname and IP address.
The scan output lists SQL injection attack vectors.
The scan job is scheduled to run during off-peak hours.

A user clicked an email link that led to a website than infected the workstation with a virus. The virus encrypted all the network shares to which the user had access. The virus was not deleted or blocked by the company’s email filter, website filter, or antivirus. Which of the following describes what occurred?
The user’s account was over-privileged.
Improper error handling triggered a false negative in all three controls.
The email originated from a private email server with no malware protection.
The virus was a zero-day attack.

After a recent internal breach, a company decided to regenerate and reissue all certificates used in the transmission of confidential information. The company places the greatest importance on confidentiality and non-repudiation, and decided to generate dual key pairs for each client. Which of the following BEST describes how the company will use these certificates?
One key pair will be used for internal communication, and the other will be used for external communication.
One key pair will be used for encryption. The other key pair will provide extended validation.
Data will be encrypted once by each key, doubling the confidentiality and non-repudiation strength.
One key pair will be used for encryption and decryption. The other will be used to digitally sign the data.

Without work one finishes nothing. - Ralph Waldo Emerson

