CompTIA Security+ SY0-701 (V7) Practice Question

During an incident response investigation, analysts discover Cyrillic comments and Russian-language debug paths embedded in the source code of malware used in a sophisticated breach. Which of the following BEST explains why this evidence alone cannot be taken as definitive proof that a Russian government agency conducted the attack?

  • Nation-state attackers always encrypt their production builds, so any readable strings must come from reuse by third-party developers.

  • Open-source libraries automatically remove national language clues, so variable names are never reliable for attribution.

  • Threat actors can deliberately embed linguistic and cultural markers as false flags to mislead investigators.

  • Russian is the default language in most compiler environments, so these markers are inserted automatically during compilation.

CompTIA Security+ SY0-701 (V7)
Threats, Vulnerabilities, and Mitigations
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA Security+ Voucher with Retake
v7 / SY0-701
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot