easyMultiple SelectObjective-mapped
CV0-004 Practice Question: Which TWO of the following are common security…
Which TWO of the following are common security concerns specific to a public cloud infrastructure?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Exposure of insecure application programming interfaces (APIs).
Options A and D are correct. Insecure APIs are a top cloud security concern because they allow programmatic access and can be exploited if not properly secured. Misconfiguration of cloud resources is a leading cause of data exposure in public cloud environments. Option B is incorrect because physical theft is the provider's responsibility and is not a common customer concern. Option C is incorrect because packet sniffing on the provider's internal network is mitigated by network segmentation and encryption, and is not a typical threat in public clouds. Option E is incorrect because hypervisor-level malware is rare and providers quickly patch vulnerabilities.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Exposure of insecure application programming interfaces (APIs).
Why this is correct
APIs are often targeted by attackers if not properly secured.
- ✗
Physical theft of servers from data centers.
Why it's wrong here
Physical security is managed by the cloud provider.
- ✗
Packet sniffing on the provider's internal network.
Why it's wrong here
Cloud providers isolate tenant traffic; sniffing is not practical.
- ✓
Misconfiguration of cloud resources leading to data exposure.
Why this is correct
Misconfigured storage or permissions are frequent issues.
- ✗
Hypervisor-level malware.
Why it's wrong here
Hypervisor attacks are rare and not a common concern.
Go deeper
Related to this question
About these practice questions
This CV0-004 question is part of Courseiva's 977-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
Same concept, more angles
1 more way this is tested on CV0-004
These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.
Variation 1. Which TWO of the following are common vulnerabilities in cloud environments that can lead to unauthorized access? Select two.
medium- A.Enabling automatic patching
- ✓ B.Lack of encryption for data in transit
- C.Using multi-factor authentication
- D.Properly scoped IAM roles
- ✓ E.Misconfigured security groups allowing overly permissive inbound rules
Why B: Options B and E are correct because lack of encryption for data in transit exposes sensitive data to interception, and misconfigured security groups allowing overly permissive inbound rules can grant unauthorized access. Options A, C, and D are security best practices that help prevent vulnerabilities.
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This CV0-004 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CV0-004 exam.