ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 273 - SY0-601 discussion

Report
Export

A company recently implemented a patch management policy; however, vulnerability scanners have still been flagging several hosts, even after the completion of the patch process. Which of the following is the most likely cause of the issue?

A.
The vendor firmware lacks support.
Answers
A.
The vendor firmware lacks support.
B.
Zero-day vulnerabilities are being discovered.
Answers
B.
Zero-day vulnerabilities are being discovered.
C.
Third-party applications are not being patched.
Answers
C.
Third-party applications are not being patched.
D.
Code development is being outsourced.
Answers
D.
Code development is being outsourced.
Suggested answer: C

Explanation:

Third-party applications are applications that are developed and provided by external vendors or sources, rather than by the organization itself. Third-party applications may introduce security risks if they are not properly vetted, configured, or updated. One of the most likely causes of vulnerability scanners flagging several hosts after the completion of the patch process is that third-party applications are not being patched. Patching is the process of applying updates or fixes to software to address bugs, vulnerabilities, or performance issues. Patching third-party applications is essential for maintaining their security and functionality, as well as preventing attackers from exploiting known flaws.

Reference: https://www.comptia.org/certifications/security#examdetails https://www.comptia.org/content/guides/comptia-security-sy0-601-exam-objectives https://www.csoonline.com/article/2124681/why-third-party-security-is-your-security.html

asked 02/10/2024
Damir Stojsic
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first