Study. uk . com
  1. Home
  2. All questions
  3. Question 440

CompTIA Security+ study material · question 440 of 611

According to CISA, which two are common ransomware initial access routes? Choose two.

  1. Physical theft of backup tapes
  2. Insider sabotage of the domain controller
  3. Phishing
  4. Exposed remote services
Show the answer

Answer: C. Phishing
D. Exposed remote services

The third common route is exploitation of internet-facing vulnerabilities; all three are reachable from outside.

Source: CISA #StopRansomware Guide (CISA) — CISA #StopRansomware Guide › Initial Access Vectors

Challenge yourself on this topic → Study as cards