200-201 exam dumps

200-201 practice question 171 of 405

Cisco Cybersecurity Associate. Associate level, Cisco. Free question with the correct answer and a full explanation.

200-201 Question 171

Single answer

A cybersecurity analyst is investigating a case where an outdated protocol version is suspected to be the root cause of a security vulnerability. During their analysis, the analyst discovers that an older version of TLS is being used for secure communication. Which TLS version should be immediately flagged as insecure and deprecated due to known vulnerabilities?

  1. A

    TLS 1.0

  2. B

    TLS 1.1

  3. C

    TLS 1.2

  4. D

    TLS 1.3

Show answer and explanation

Correct answer: A

Explanation

TLS 1.0 has been officially deprecated by major standards organizations such as IETF due to critical vulnerabilities. It is no longer considered secure for any application. While TLS 1.1 is also deprecated, TLS 1.0 poses a significantly greater risk and should be prioritized for immediate remediation.

  • A. Correct.

    TLS 1.0 is considered insecure and deprecated due to multiple known vulnerabilities, including susceptibility to attacks such as BEAST and POODLE.

  • B. Incorrect.

    TLS 1.1 is also deprecated, but it is not as widely exploited as TLS 1.0. While it is recommended to avoid TLS 1.1, it is not the immediate priority in this scenario.

  • C. Incorrect.

    TLS 1.2 is currently secure and widely used. It is considered a best practice for secure communications if newer versions like TLS 1.3 are not supported.

  • D. Incorrect.

    TLS 1.3 is the most secure and modern version of TLS, offering improved security and performance over previous versions.

Timed practice exam

Take a 200-201 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam