Threat actors
Recognise motives, capabilities, insider threats, nation-state activity, and organised crime clues.
SecurePlus | CompTIA Security+™ Prep
Domain 2 focuses on threats, vulnerabilities, and mitigations. Practise threat actors, malware, social engineering, vulnerability types, and the controls that reduce risk.
Recognise motives, capabilities, insider threats, nation-state activity, and organised crime clues.
Compare phishing, credential attacks, injection, ransomware, spyware, worms, trojans, and botnets.
Choose patching, hardening, segmentation, allow lists, secure configuration, and user training.
Use active recall to separate similar web, network, malware, social-engineering, and cloud attacks.
Practise by identifying the threat, the weakness it uses, and the mitigation that best reduces the risk.
Question: An attacker sends a fake delivery message that tricks a user into entering credentials. Which attack category is most relevant?
A. Phishing
B. Load balancing
C. Hashing
D. Tokenization
Answer: A. Phishing
SY0-701 Domain 2 covers threats, vulnerabilities, and mitigations, including social engineering and malware scenarios.
Yes. SecurePlus uses original study material aligned to SY0-701. It is an independent Security+ study tool and is not affiliated with or endorsed by CompTIA.
Use it to review Domain 2 topics, then practise that domain in SecurePlus until weak areas become clearer.