220-1102 - Security - Section 2.3

Detect, remove, and prevent malware, and explain common social-engineering attacks, threats, and vulnerabilities.

Identify malware types - ransomware, trojan, keylogger, rootkit, virus, spyware, cryptominer - and the correct tools and removal steps, including recovery console, anti-malware, and software firewalls. Explain social-engineering attacks (phishing, vishing, shoulder surfing, tailgating, impersonation) and broader threats such as DoS, DDoS, on-path attacks, spoofing, and zero-day vulnerabilities, and recognise the best mitigation for each.

RansomwarePhishingRootkitZero-daySocial engineering

More in this domain

Back to all Security objectives, or the 220-1102 cert hub.

Examworthy is not affiliated with or endorsed by CompTIA. Original, blueprint-aligned practice material only.