100-140 exam dumps

100-140 practice question 351 of 390

Cisco Certified Support Technician (CCST) IT Support. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-140 Question 351

Select 3

You receive an email from someone claiming to be your IT administrator, asking you to provide your login credentials to resolve an urgent system issue. How should you respond to avoid falling victim to a potential social engineering attack?

  1. A

    Verify the sender's identity by contacting your IT department directly through official channels.

  2. B

    Respond to the email and provide the requested credentials to resolve the issue quickly.

  3. C

    Check the email for spelling errors, unusual formatting, or suspicious links to identify potential phishing.

  4. D

    Ignore the email completely and delete it without taking any action.

  5. E

    Hover over any links in the email to inspect the URL and determine if it leads to a legitimate domain.

Show answer and explanation

Correct answers: A, C, E

Explanation

Social engineering attacks often involve deceptive emails or messages designed to manipulate individuals into revealing sensitive information. To avoid becoming a victim, always verify the sender's identity through official channels, check for signs of phishing, and inspect links before clicking. These practices help ensure that you do not fall prey to fraudulent attempts to compromise your account or system security.

  • A. Correct.

    Verifying the sender's identity through official channels ensures that you are not communicating with a malicious actor pretending to be your IT administrator.

  • B. Incorrect.

    Providing credentials in response to the email could lead to a security breach if the sender is a fraudster. This is not a safe choice.

  • C. Correct.

    Checking for spelling errors, unusual formatting, or suspicious links can help you identify phishing attempts and avoid falling for social engineering attacks.

  • D. Incorrect.

    Ignoring the email completely without verifying its legitimacy might result in missing a real issue if the email happens to be genuine. This is not a recommended action.

  • E. Correct.

    Hovering over links to inspect the URL is a good practice to verify if the link leads to a legitimate domain, helping you avoid accessing malicious websites.

Timed practice exam

Take a 100-140 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam