CompTIA SecurityX CAS-005 (V5) Practice Question

A security operations center (SOC) analyst is investigating a web server that has been compromised for the third time in two months. After each of the first two incidents, the response team restored the server from a clean backup and blocked the attacker's source IP address in the firewall. A deeper analysis of the latest incident reveals that a SQL injection vulnerability in the site's customer feedback form is the entry point. Which of the following actions best represents addressing the root cause of the repeated compromises?

  • Isolate the server and perform a full malware scan to identify any dormant threats.

  • Implement a more aggressive backup and restoration schedule for the web server.

  • Patch the web application to validate user input and prevent SQL injection.

  • Continue to block the attacker's source IP address after each detected incident.

CompTIA SecurityX CAS-005 (V5)
Security Operations
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $64
$529.00 $465.00
SAVE $70
CompTIA SecurityX Voucher with Retake
v5 / CAS-005
Includes Retake
$578.00 $508.00
Bash, the Crucial Exams Chat Bot
AI Bot