Courseiva

CompTIA Tech+ (FC0-U71) (FC0-U71) — Questions 151–225

988 questions total · 14pages · All types, answers revealed

Page 2

Page 3 of 14

Page 4
151
Multi-Selecthard

Which of the following are phases in the software development lifecycle (SDLC)?

Select 4 answers
A.Design
B.Testing
C.Deployment
D.Requirements gathering
E.Compilation
AnswersA, B, C, D

Design is a genuine SDLC phase, translating gathered requirements into architecture, interfaces and data models before implementation. It is a distinct stage in the lifecycle, preceding coding and testing, and is recognised alongside requirements gathering, implementation, testing and maintenance.

Why this answer

Option A (Design) is correct because designing the system architecture, components, interfaces, and data models is a core SDLC phase that translates requirements into a blueprint for implementation. Option B (Testing) is correct because verification and validation activities—unit, integration, system, and acceptance testing—form a recognized SDLC phase ensuring the software meets requirements and is defect-free. Option C (Deployment) is correct because releasing the built software into production or a target environment, including installation, configuration, and rollout, is a standard SDLC phase.

Option D (Requirements gathering) is correct because eliciting, analyzing, documenting, and validating stakeholder needs is the foundational SDLC phase that drives all subsequent work. Option E (Compilation) is not a phase but a build-time activity performed by a compiler within the implementation/build stage, so it does not represent a distinct SDLC phase.

Exam trap

CompTIA often tests the distinction between SDLC phases and technical activities. Candidates may mistakenly select compilation, thinking it is a phase, or incorrectly omit deployment or requirements gathering.

152
MCQeasy

A small office has five computers that need to share files and a printer. Which type of network should be set up?

A.PAN
B.LAN
C.WAN
D.MAN
AnswerB

A LAN spans a single limited area such as an office, connecting the five computers and printer so they can share files and peripherals directly. This matches the small-office scope and resource-sharing requirement stated in the scenario.

Why this answer

A LAN (Local Area Network) is designed for a single, contained environment such as a small office, home, or single building, and is exactly the right scope for five computers sharing files and a printer. It provides high-speed connectivity over short distances using Ethernet or Wi-Fi, typically through a single switch or router. This matches the requirement of a small, localized group of devices sharing resources.

Exam trap

The trap here is confusing network scope acronyms (PAN/LAN/MAN/WAN) by size rather than by purpose — candidates sometimes pick WAN or MAN thinking 'more coverage is better,' when the question is really testing whether you recognize a single-office scenario as a LAN.

How to eliminate wrong answers

Option A is wrong because a PAN (Personal Area Network) covers only a few meters around one person (e.g., Bluetooth headset to phone) and is not intended for multi-user office file and printer sharing. Option C is wrong because a WAN (Wide Area Network) spans large geographic areas like cities or countries and is far too broad and expensive for a five-computer office. Option D is wrong because a MAN (Metropolitan Area Network) covers a city or campus-sized area, which is overkill for a single small office.

153
MCQhard

A system administrator configures a server to run multiple virtual machines for testing. Which type of software enables this?

A.Backup software
B.Virtualization software
C.Remote desktop software
D.Antivirus software
AnswerB

Virtualization software provides the hypervisor layer that abstracts physical CPU, memory and storage, allowing multiple guest operating systems to run concurrently as isolated virtual machines on one physical server, which is exactly what the administrator requires for testing.

Why this answer

Virtualization software, such as VMware vSphere, Microsoft Hyper-V, or Oracle VirtualBox, creates a hypervisor layer that abstracts physical hardware resources (CPU, memory, storage) and allocates them to multiple isolated virtual machines. This allows a single physical server to run several operating systems concurrently for testing or production workloads, which is exactly what the system administrator needs.

Exam trap

The trap here is that candidates may confuse virtualization software with remote desktop software because both involve accessing multiple systems, but remote desktop only provides a connection to an already-running OS, not the ability to create and run multiple OS instances on one server.

How to eliminate wrong answers

Option A is wrong because backup software (e.g., Veeam, Acronis) is designed to create copies of data for recovery purposes, not to partition hardware resources for running multiple operating systems. Option C is wrong because remote desktop software (e.g., RDP, VNC) provides graphical or command-line access to a remote computer's desktop, but it does not create or manage virtual machines. Option D is wrong because antivirus software (e.g., Norton, Windows Defender) detects and removes malicious software, but it has no capability to virtualize hardware or run multiple OS instances.

154
MCQhard

Refer to the exhibit. A security auditor reviews this application configuration. What is the most significant security concern?

A.The server name is hardcoded.
B.The log level is set to Debug.
C.The database password is stored in plaintext.
D.The database name is SalesDB.
AnswerC

Storing the database password as plaintext in a configuration file exposes credentials to anyone who reads that file, enabling direct database compromise. Hashing or using a secrets manager would remove this exposure, making plaintext storage the most significant concern.

Why this answer

Storing a database password in plaintext within an application configuration file is a critical security vulnerability. If an attacker gains access to the file, they can immediately read the credentials and connect to the database, potentially compromising all stored data. This violates fundamental security principles such as least privilege and defense in depth, and it is explicitly warned against in secure coding guidelines like OWASP's Top 10 (A07:2021 – Identification and Authentication Failures).

Exam trap

The trap here is that candidates may focus on the 'Debug' log level (Option B) as a security risk due to verbosity, but the plaintext password (Option C) represents a direct, high-impact credential exposure that is far more critical.

How to eliminate wrong answers

Option A is wrong because hardcoding the server name is a configuration management concern (e.g., lack of portability), not a security vulnerability; it does not expose sensitive data or allow unauthorized access. Option B is wrong because setting the log level to Debug increases log verbosity and may cause performance or information leakage issues, but it is not as severe as exposing a plaintext password; debug logs typically contain operational details, not authentication secrets. Option D is wrong because the database name 'SalesDB' is a logical identifier with no inherent security risk; exposing it does not grant access to the database without valid credentials.

155
Multi-Selecteasy

Which TWO of the following are key characteristics of a NoSQL database compared to a traditional relational database?

Select 2 answers
A.Strict schema enforcement
B.Uses SQL as the query language
C.ACID transactions are always guaranteed
D.Flexible schema design
E.Horizontal scalability
AnswersD, E

NoSQL stores such as document and key-value databases permit each record to carry its own fields, so schema changes need no migration or ALTER TABLE. This contrasts with the fixed, predefined columns of a relational database, satisfying the flexible schema characteristic.

Why this answer

Option D (Flexible schema design) is correct because NoSQL databases such as document stores (MongoDB), key-value stores (Redis), and wide-column stores (Cassandra) do not require a fixed, predefined table schema, allowing each record to have different fields and structures. Option E (Horizontal scalability) is correct because NoSQL systems are architecturally designed to scale out by distributing data across many commodity servers via sharding and partitioning, rather than relying on expensive vertical scaling of a single server. In contrast, option A (Strict schema enforcement) describes relational databases, which enforce a rigid schema via DDL constraints, and is not a NoSQL trait.

Option B (Uses SQL as the query language) is incorrect because NoSQL databases typically use non-SQL APIs such as JSON queries, key lookups, or CQL, though some offer SQL-like interfaces. Option C (ACID transactions are always guaranteed) is incorrect because many NoSQL databases follow the BASE model and provide only eventual consistency, with ACID guarantees limited to single-document or optional multi-document transactions rather than being always guaranteed.

156
Multi-Selecteasy

Which TWO of the following are examples of multi-factor authentication?

Select 2 answers
A.A smart card and a PIN
B.Two different passwords
C.A password and a fingerprint scan
D.A username and a password
E.A password and a security question
AnswersA, C

Combining a smart card (something you have) with a PIN (something you know) satisfies multi-factor authentication by drawing on two distinct credential categories. This pairing meets the stem's requirement for genuine MFA, unlike methods relying on a single factor repeated or two instances of the same category.

Why this answer

Option A (a smart card and a PIN) is correct because it combines two distinct authentication factors: something you have (the smart card) and something you know (the PIN), which is the definition of multi-factor authentication. Option C (a password and a fingerprint scan) is also correct because it pairs something you know (the password) with something you are (the fingerprint biometric), satisfying MFA's requirement for different factor categories. Option B (two different passwords) is not MFA because both are the same factor type—something you know—so it is merely multi-instance, not multi-factor.

Option D (a username and a password) is not MFA because a username is an identifier, not an authentication factor, and the password alone represents a single factor. Option E (a password and a security question) is not MFA because both are knowledge-based factors (something you know), so they belong to the same factor category.

157
MCQhard

A small business office has a network where each device is connected to a central switch. If the switch fails, all devices lose connectivity. Which network topology does this describe?

A.Bus topology
B.Mesh topology
C.Star topology
D.Ring topology
AnswerC

A star topology connects every device to a central switch, so the switch is a single point of failure: if it fails, all connected devices lose connectivity simultaneously. This directly matches the scenario's described constraint, where one switch failure disrupts the entire office network.

Why this answer

In a star topology, every device connects to a central device such as a switch or hub, and all traffic passes through that central point. If the central switch fails, every connected device loses connectivity simultaneously, which matches the scenario described. This single point of failure is the defining characteristic of a star topology.

Exam trap

The trap here is confusing the star topology's central switch with a bus topology's shared backbone, since both can cause widespread outages when the central component fails; candidates must recognize that a switch at the center defines a star, not a bus.

How to eliminate wrong answers

Option A is wrong because a bus topology uses a single shared backbone cable with terminators at each end; a failure of one device or a break in the backbone affects the segment, but there is no central switch whose failure disconnects all nodes. Option B is wrong because a mesh topology interconnects nodes with redundant paths, so a single device or link failure does not isolate all devices. Option D is wrong because a ring topology passes data token-style around a closed loop; a single node or link failure can break the ring, but there is no central switch whose failure causes total loss of connectivity.

158
MCQmedium

A program needs to display a message based on a user's age. If age is 18 or over, it displays 'Adult'; otherwise, it displays 'Minor'. Which control structure should be used?

A.If-else statement
B.For loop
C.Switch-case statement
D.While loop
AnswerA

An if-else statement evaluates a Boolean condition and selects exactly one of two branches, matching the two mutually exclusive outcomes the stem requires: 'Adult' when age is 18 or over, 'Minor' otherwise. No repetition or multi-way branching is needed, so this structure satisfies the binary decision constraint directly.

Why this answer

The if-else statement is the correct control structure because it evaluates a single condition (age >= 18) and executes one block of code if true ('Adult') and another block if false ('Minor'). This is the standard branching mechanism in most programming languages for binary decisions based on a comparison.

Exam trap

CompTIA often tests the distinction between selection (if-else) and iteration (loops), so the trap here is that candidates might confuse the 'condition' in a while loop with the conditional logic needed for a binary decision, leading them to incorrectly choose a loop structure.

How to eliminate wrong answers

Option B (For loop) is wrong because loops are designed for repetition, not conditional branching; using a loop here would repeatedly execute the display logic without a proper decision. Option C (Switch-case statement) is wrong because switch-case is intended for discrete, constant values (like integers or characters), not for range-based comparisons like 'age >= 18'. Option D (While loop) is wrong because it also repeats code based on a condition, but the requirement is a one-time decision, not iteration.

159
MCQhard

A company wants to ensure that data transmitted between its web server and clients is encrypted. Which protocol should be used?

A.TLS
B.FTP
C.SMTP
D.HTTP
AnswerA

TLS encrypts data in transit between the web server and clients, providing confidentiality and integrity over the network. This satisfies the requirement that transmitted data be encrypted, protecting credentials and content from interception during client-server communication.

Why this answer

TLS (Transport Layer Security) is the correct protocol because it provides encryption for data in transit, ensuring confidentiality and integrity between a web server and clients. It operates over TCP and is commonly used to secure HTTP traffic as HTTPS, preventing eavesdropping and tampering.

Exam trap

The trap here is that candidates often confuse HTTP with HTTPS, assuming HTTP itself provides encryption, when in fact it is the TLS layer added on top that secures the communication.

How to eliminate wrong answers

Option B (FTP) is wrong because File Transfer Protocol transmits data in plaintext, including credentials, and does not provide encryption; it would require FTPS or SFTP for secure transfers. Option C (SMTP) is wrong because Simple Mail Transfer Protocol is designed for email transmission and lacks native encryption; it relies on STARTTLS or SMTPS for security. Option D (HTTP) is wrong because Hypertext Transfer Protocol sends data as plaintext, making it vulnerable to interception; it requires TLS to become HTTPS for encryption.

160
MCQhard

A memory address is displayed as 0x1A3F. What is the correct base of this representation?

A.Hexadecimal
B.Decimal
C.Octal
D.Binary
AnswerA

The `0x` prefix explicitly denotes hexadecimal, a base-16 system using digits 0–9 and letters A–F. In `0x1A3F`, the characters A and F are only valid in base 16, directly satisfying the stem's requirement to identify the representation's base.

Why this answer

The prefix '0x' is the standard notation used to indicate a hexadecimal (base-16) number in programming and networking contexts. Hexadecimal uses digits 0-9 and letters A-F, so the presence of 'A' and 'F' in 0x1A3F confirms it cannot be decimal, octal, or binary. Therefore, the correct base is hexadecimal.

Exam trap

The trap is assuming any alphanumeric string is decimal or that '0x' is just a random label — candidates who don't recognize the 0x prefix as the universal hexadecimal indicator will guess wrong even though the letters A-F alone should give it away.

How to eliminate wrong answers

Option B is wrong because decimal (base-10) uses only digits 0-9 and would never contain letters like 'A' or 'F', nor would it use the '0x' prefix. Option C is wrong because octal (base-8) uses only digits 0-7 and is typically denoted with a leading '0' or '0o', not '0x'. Option D is wrong because binary (base-2) uses only 0 and 1, and would be far longer than four characters for the same value.

161
MCQeasy

Which of the following is the strongest password?

A.12345678
B.P@ssw0rd
C.MyD0g!sF1d0
D.password
AnswerC

MyD0g!sF1d0 combines upper and lower case letters, digits and a symbol across twelve characters, giving far greater brute-force resistance than shorter or single-character-class alternatives. Length plus mixed character classes directly increases the search space an attacker must exhaust.

Why this answer

MyD0g!sF1d0 is the strongest because it is the longest option (11 characters) and combines uppercase, lowercase, digits, and special characters in a non-dictionary phrase. Length is the primary driver of password strength, and this password avoids common words or predictable substitutions like 'P@ssw0rd'. It would take significantly longer to crack via brute force or dictionary attacks than the other options.

Exam trap

FC0-U71 often tests the misconception that adding a symbol or number to a common word (like 'P@ssw0rd') makes it strong, when in fact length and randomness are more critical.

How to eliminate wrong answers

Option A is wrong because '12345678' is a sequential numeric string that appears in every common password list and is instantly cracked. Option B is wrong because 'P@ssw0rd' is a dictionary word with predictable leetspeak substitutions, making it highly vulnerable to rule-based cracking. Option D is wrong because 'password' is the single most common password and is cracked immediately.

162
MCQmedium

A small design studio needs a central device so five wired workstations and two networked printers can exchange data with each other on the same local network. The studio does not need any routing between separate networks. Which device is the best choice?

A.A wireless access point
B.A router
C.A firewall
D.A switch
AnswerD

A switch provides multiple wired ports and forwards frames between devices on the same local network, which is exactly what the studio needs for workstations and printers to exchange data. It does not route between separate networks, matching the stated requirement that no routing is necessary.

Why this answer

A switch is the appropriate central device for a single local network with multiple wired endpoints. It forwards frames between connected devices and provides enough ports for the workstations and printers. A router, firewall, or access point does not fulfill the role of aggregating several wired devices on one segment.

Exam trap

The trap here is assuming any central network box will work, when a router or access point does not provide the multiple LAN ports a wired-only local segment requires.

163
MCQmedium

A developer is debugging a script that calculates the average of a list of numbers. The output is always incorrect. Which type of error is most likely the cause?

A.Runtime error
B.Logic error
C.Syntax error
D.Compile error
AnswerB

A logic error means the code runs without crashing but the algorithm or formula is wrong, so the average is computed incorrectly every time. Syntax and runtime errors would halt or throw, whereas the stem describes consistently wrong output.

Why this answer

A logic error occurs when the code runs without crashing but produces incorrect results due to a flaw in the algorithm or calculations. In this case, the script calculates the average incorrectly, such as dividing by the wrong count or summing incorrectly, which is a classic logic error.

Exam trap

The ITF+ exam often tests the distinction between syntax errors (which prevent execution) and logic errors (which allow execution but yield wrong results), so candidates may mistakenly choose syntax error when the script runs but outputs incorrect values.

How to eliminate wrong answers

Option A is wrong because a runtime error would cause the script to crash or throw an exception during execution, not simply produce an incorrect output. Option C is wrong because a syntax error would prevent the script from running at all due to invalid code structure. Option D is wrong because compile errors occur during compilation (e.g., in compiled languages like C++ or Java), but the question involves a script, which is typically interpreted, and a compile error would stop execution before any output.

164
MCQmedium

An organization requires employees to use a password and a one-time code sent to their mobile phone when logging into the network. Which security principle is being implemented?

A.Least privilege
B.Biometrics
C.Single sign-on
D.Multi-factor authentication
AnswerD

Multi-factor authentication combines two distinct credential categories: something the employee knows (the password) and something they possess (the one-time code delivered to their phone). This directly satisfies the stem's requirement for both a password and a phone-based code at login, since possession of the registered device supplies the second, independent authentication factor.

Why this answer

Multi-factor authentication (MFA) requires two or more factors: something you know (password) and something you have (phone).

165
MCQmedium

Which coding best practice improves code readability and maintainability?

A.Using global variables for all data
B.Using meaningful variable names
C.Hard-coding values whenever possible
D.Writing long, single functions
AnswerB

Descriptive identifiers such as customerTotal or calculateTax let other developers infer a variable's purpose without tracing its assignments, directly improving readability. Because intent stays visible, later modifications are safer and faster, satisfying the maintainability requirement in the stem.

Why this answer

Using meaningful variable names (option B) is a core coding best practice because it makes the code self-documenting, allowing other developers (or the original author after time) to quickly understand the purpose of each variable without needing extensive comments. This directly improves both readability and maintainability, as changes can be made with lower risk of misinterpretation. In contrast, practices like using global variables or hard-coding values obscure logic and create dependencies that are difficult to manage.

Exam trap

A common misconception is that using global variables simplifies data sharing or that hard-coding values makes code faster. In reality, these practices severely degrade maintainability and are universally discouraged in professional software development.

How to eliminate wrong answers

Option A is wrong because using global variables for all data creates tight coupling and side effects, making the code unpredictable and extremely difficult to debug or maintain; it violates the principle of encapsulation. Option C is wrong because hard-coding values whenever possible reduces flexibility and forces code changes for every environment or requirement shift, violating the DRY (Don't Repeat Yourself) principle and making maintenance error-prone. Option D is wrong because writing long, single functions violates the Single Responsibility Principle, making the code hard to read, test, and reuse; it also increases the risk of unintended side effects.

166
MCQmedium

A company stores customer data in a flat file. Which of the following is a disadvantage of using a flat file compared to a relational database?

A.Flat files are slower for sequential reads
B.Flat files support complex queries
C.Flat files do not support concurrent multi-user access
D.Flat files enforce referential integrity
AnswerC

Flat files lack a database engine to manage row-level locking and transaction isolation, so simultaneous writes from multiple users risk overwriting each other's changes. A relational database enforces concurrency control, which this scenario's multi-user access constraint requires.

Why this answer

Flat files store data as a single sequential stream of records with no built-in locking, transaction manager, or record-level access control, so two users writing at the same time can overwrite each other's changes or corrupt the file. A relational database management system (RDBMS) provides concurrency control through locking, MVCC, and transactions, allowing many users to read and write safely. This makes concurrent multi-user access the classic disadvantage of flat files.

Exam trap

The trap here is confusing 'simple' with 'limited' — candidates assume flat files are slow or lack features, but the exam is testing the specific concurrency limitation that only an RDBMS solves.

How to eliminate wrong answers

Option A is wrong because flat files are actually very fast for sequential reads — reading a contiguous byte stream is one of their strengths, and the slowness appears with random access and updates. Option B is wrong because flat files have no query engine, no joins, and no indexes; complex queries require an RDBMS with SQL. Option D is wrong because flat files have no schema constraints or foreign keys, so they cannot enforce referential integrity — that is a relational database feature.

167
MCQmedium

A user is compiling a report and needs to combine text, a chart, and a table from three separate files into one document while preserving the original formatting of each element. Which productivity application feature is designed for this task?

A.Macros
B.Mail merge
C.Object linking and embedding (OLE)
D.Track Changes
AnswerC

OLE allows a document to contain objects such as charts and tables created by other applications, and the embedded object retains its original formatting and can often be edited in place. This directly supports combining text, a chart, and a table from separate files into one report, making OLE the correct feature.

Why this answer

Object linking and embedding lets a document host content created in other applications while preserving that content's original formatting, which is exactly what combining a chart and a table from separate files requires. Mail merge, Track Changes, and macros serve different purposes and do not provide embedded, format-preserving objects.

Exam trap

The trap here is choosing an automation feature like macros when the requirement is a native capability for embedding external content with its formatting intact.

168
MCQmedium

An IT professional is explaining to a client the difference between an HDD and an SSD. Which statement best describes a key advantage of an SSD over an HDD?

A.SSDs require a constant power supply to retain data.
B.SSDs provide larger storage capacities at a lower cost per gigabyte.
C.SSDs are more resilient to physical shock because they have no moving parts.
D.SSDs use laser technology to read and write data.
AnswerC

SSDs store data in flash memory with no spinning platters or actuator arms, so there is nothing mechanical to damage during drops or vibration. This directly satisfies the stem's requirement to describe a key advantage over HDDs.

Why this answer

SSDs store data in NAND flash memory with no moving mechanical parts, so they tolerate drops, vibration, and shock far better than HDDs, whose spinning platters and moving read/write heads are vulnerable to physical damage. This durability advantage is a direct consequence of the solid-state design and is a key differentiator in mobile and ruggedized environments.

Exam trap

FC0-U71 often tests the misconception that SSDs are volatile or use optical/laser technology, catching candidates who confuse SSD characteristics with RAM or optical drives.

How to eliminate wrong answers

Option A is wrong because SSDs are non-volatile — they retain data without power, just like HDDs; the statement describes volatile memory (RAM), not SSDs. Option B is wrong because HDDs, not SSDs, currently offer larger capacities at lower cost per gigabyte; SSDs remain more expensive per GB despite falling prices. Option D is wrong because SSDs use electrical charge in flash cells, not laser technology; lasers are used in optical media like CDs/DVDs/Blu-ray.

169
MCQeasy

A technician is upgrading a desktop computer's memory. Which component would the technician most likely replace to improve system performance using dual-channel architecture?

A.GPU
B.Storage drive
C.CPU
D.RAM
AnswerD

Dual-channel architecture requires matched memory modules installed in paired slots, so adding or replacing RAM in the correct slot pairs doubles the memory bus width. The technician therefore replaces RAM, not the CPU or storage.

Why this answer

RAM is correct because dual-channel architecture requires installing memory modules in matched pairs in specific slots on the motherboard, which doubles the memory bandwidth. Upgrading RAM by adding a second matching module enables dual-channel operation, improving system performance for memory-intensive tasks. The question asks which component to replace to improve performance using dual-channel architecture, and RAM is the only component that directly relates to dual-channel memory.

Exam trap

The trap is that candidates may think any upgrade improves performance, but the question specifically mentions dual-channel architecture, which is a RAM feature, not a CPU or GPU feature.

How to eliminate wrong answers

Option A is wrong because the GPU is a graphics processor and does not participate in dual-channel memory architecture; upgrading it improves graphics performance, not memory bandwidth. Option B is wrong because the storage drive affects data storage and retrieval speed, not memory channel architecture. Option C is wrong because the CPU is the central processor and does not determine dual-channel memory operation, although it supports it.

170
MCQmedium

A user's home wireless network is experiencing interference. Which frequency band is more prone to interference from devices like microwaves and cordless phones?

A.60 GHz
B.5 GHz
C.900 MHz
D.2.4 GHz
AnswerD

The 2.4 GHz band shares spectrum with microwaves, cordless phones and Bluetooth, so these devices emit radio waves on overlapping frequencies and disrupt Wi-Fi transmissions. Its narrower channel width and longer wavelength also increase the likelihood of collisions with nearby networks.

Why this answer

The 2.4 GHz frequency band is more prone to interference from common household devices like microwaves, cordless phones, and Bluetooth devices because these devices operate in the same unlicensed ISM band. This band is crowded and only has three non-overlapping channels (1, 6, and 11), making it susceptible to signal degradation. In contrast, 5 GHz and 60 GHz bands are less congested and have more channels, reducing interference.

Exam trap

FC0-U71 often tests the misconception that higher frequency bands like 5 GHz are more prone to interference, when in fact lower frequency bands like 2.4 GHz are more susceptible due to overlapping with common household devices.

How to eliminate wrong answers

Option A is wrong because 60 GHz is a high-frequency band with very short range and is not typically affected by microwave ovens or cordless phones, which operate at lower frequencies. Option B is wrong because 5 GHz is less prone to interference from such devices; it offers more non-overlapping channels and is not used by most household appliances. Option C is wrong because 900 MHz is used by some cordless phones and other devices, but it is not the standard Wi-Fi band and is less commonly associated with interference in home wireless networks compared to 2.4 GHz.

171
MCQeasy

Based on the exhibit, which device is the default gateway?

A.The computer itself
B.192.168.1.1
C.255.255.255.0
D.192.168.1.10
AnswerB

The default gateway is the router interface devices use to reach off-subnet destinations, and 192.168.1.1 is the conventional first usable address in that subnet, matching the exhibit's gateway entry. It satisfies the requirement of identifying the device that forwards traffic beyond the local network.

Why this answer

The default gateway is the IP address of the router that connects the local network to other networks. In the exhibit, the computer's IP configuration shows a default gateway of 192.168.1.1, which is the router's interface on the same subnet. This address is used by the computer to send traffic destined for IP addresses outside its own subnet (e.g., the internet).

Exam trap

The trap here is confusing the subnet mask (255.255.255.0) or another host IP (192.168.1.10) with the default gateway, as candidates often misidentify the gateway as any IP in the same subnet rather than the specific router interface.

How to eliminate wrong answers

Option A is wrong because the computer itself cannot be its own default gateway; a default gateway must be a separate network device (typically a router) that forwards traffic to other networks. Option C is wrong because 255.255.255.0 is the subnet mask, which defines the network portion of the IP address, not the gateway address. Option D is wrong because 192.168.1.10 is likely another host on the same local network (e.g., another computer or printer), not the router's interface that provides internet access.

172
MCQmedium

A technician is configuring a Windows workstation for a finance employee. The employee needs to read and update customer records but should not be able to change the folder's permissions or take ownership. Which NTFS permission should the technician assign?

A.Read & execute
B.Full control
C.Write
D.Modify
AnswerD

Modify allows a user to read, write, edit, and delete files and subfolders, which covers reading and updating customer records. It does not include the change-permissions or take-ownership rights that Full control provides, so the employee cannot alter the folder's access control list. This matches the stated requirement precisely and follows the principle of least privilege for a data-entry role.

Why this answer

Modify grants read, write, edit, and delete capabilities on files and subfolders without allowing the user to change permissions or take ownership. That matches the finance employee's need to read and update records while leaving the folder's security settings under administrative control. Full control would be excessive, while Read & execute and Write each fail to cover the required read-and-update combination.

Exam trap

The trap here is equating the ability to edit files with the ability to change permissions, which only Full control and the special Change permissions right provide.

173
MCQhard

A company is virtualizing several physical servers onto one host. The administrator wants to isolate each virtual machine so that a crash or resource spike in one does not affect the others, while still sharing the physical CPU and memory. Which technology should the administrator rely on?

A.A load balancer
B.A hypervisor
C.A RAID controller
D.A network switch
AnswerB

A hypervisor creates and manages virtual machines, allocating physical CPU, memory, and storage to each guest while keeping them isolated from one another. It is the core technology that allows multiple VMs to share one host safely. This directly meets the requirement to isolate workloads on shared hardware.

Why this answer

Virtual machines share a host's CPU and memory through a hypervisor, which enforces isolation so one VM's crash or resource spike does not disrupt the others. RAID, switches, and load balancers serve storage, networking, and traffic distribution roles respectively, but none of them virtualizes compute resources.

Exam trap

The trap here is assuming that any infrastructure component involved in a virtualized environment, such as a switch or RAID controller, is what enables the virtual machines themselves.

174
MCQeasy

A user is setting up a new smartphone and wants to protect the data on it in case the device is lost or stolen. The user wants to ensure that if the phone falls into the wrong hands, the data cannot be easily accessed. Which of the following should the user enable FIRST?

A.Enable Bluetooth only when needed.
B.Install a mobile antivirus app.
C.Enable automatic OS updates.
D.Configure a screen lock with a strong PIN or biometric authentication.
AnswerD

A screen lock with a strong PIN or biometrics is the first line of defense against unauthorized physical access. It prevents a thief from unlocking the phone and viewing data or using apps. Most modern phones also encrypt storage by default when a screen lock is set, adding another layer of protection.

Why this answer

The first step to protect a lost or stolen phone is to enable a screen lock with a strong PIN or biometrics. This prevents unauthorized access and often triggers full-disk encryption. Other measures like updates, antivirus, and Bluetooth management are useful but secondary to locking the device.

Exam trap

The trap here is focusing on software protections like antivirus while overlooking the fundamental physical access control of a screen lock.

175
MCQhard

A technician must install a critical security update on 150 Windows 11 computers overnight without visiting each desk. The update is distributed as an .msi package, and the organization already uses Active Directory Domain Services. Which method should the technician use?

A.Windows Update for Business
B.Microsoft Store automatic updates
C.Manual installation from a USB drive
D.Group Policy software installation
AnswerD

Group Policy can deploy .msi packages to domain-joined computers at startup or to users at logon, which matches the requirement to update 150 machines without desk visits. Because Active Directory is already in place, this is the native, centralized method for silent .msi deployment, making it the correct choice.

Why this answer

Group Policy software installation is the built-in Active Directory mechanism for silently deploying .msi packages to many domain-joined computers at once. Manual USB installation requires physical access, the Microsoft Store only handles Store apps, and Windows Update for Business only manages Microsoft updates, so Group Policy is the only method that meets all constraints.

Exam trap

The trap here is assuming any centralized Microsoft update tool can deploy a custom .msi, when Windows Update for Business only distributes Microsoft-authored updates.

176
Multi-Selectmedium

A database administrator needs to perform CRUD operations on a table. Which TWO SQL statements are used for the 'Create' and 'Read' operations? (Select TWO.)

Select 2 answers
A.DELETE
B.INSERT INTO
C.CREATE TABLE
D.SELECT
E.UPDATE
AnswersB, D

INSERT INTO adds new rows to a table, directly fulfilling the 'Create' half of CRUD. It is the SQL statement that populates records, distinguishing it from SELECT, which only retrieves existing data without modifying the table's contents.

Why this answer

INSERT INTO (B) is correct because it is the SQL statement that creates new rows in a table, satisfying the 'Create' portion of CRUD. SELECT (D) is correct because it is the SQL statement used to read/query existing rows from a table, satisfying the 'Read' portion of CRUD. DELETE (A) is incorrect because it removes rows and corresponds to the 'Delete' operation, not Create or Read.

CREATE TABLE (C) is incorrect because it defines a new table's schema (DDL) rather than creating row-level data as part of CRUD. UPDATE (E) is incorrect because it modifies existing rows and corresponds to the 'Update' operation.

Exam trap

FC0-U71 often tests the CRUD-to-SQL mapping and traps candidates who pick CREATE TABLE for 'Create' because of the shared word, ignoring that CRUD refers to records, not schema.

177
MCQeasy

A user is trying to print but receives the error shown in the exhibit. Which of the following is the MOST likely cause?

A.Corrupt printer driver
B.Printer is powered off or disconnected from the network
C.Paper jam in the printer
D.Low toner level
AnswerB

A powered-off or network-disconnected printer leaves the print spooler unable to reach the device, so the job stalls and Windows reports that the printer is offline or unavailable. This directly satisfies the stem's scenario: the error appears because no network path to the printer exists, not because of driver or queue corruption.

Why this answer

The error shown in the exhibit (e.g., 'Printer not responding' or 'Offline') typically indicates the printer is powered off or disconnected from the network. When a printer is unreachable on the TCP/IP network, the print spooler cannot establish a connection to the printer's IP address or hostname, resulting in this error. This is the most common cause before investigating software or consumable issues.

Exam trap

The trap here is that candidates often jump to software or consumable issues (driver, jam, toner) first, but the most basic and frequent cause of a 'not responding' error is the printer being physically off or disconnected from the network.

How to eliminate wrong answers

Option A is wrong because a corrupt printer driver would typically cause print job failures, garbled output, or driver-specific error messages, not a generic 'printer not responding' error that indicates a connectivity issue. Option C is wrong because a paper jam is a hardware error that usually triggers a specific on-printer message or a 'Paper Jam' error in the print queue, not a network connectivity error. Option D is wrong because low toner level would produce a warning about print quality or a 'Low Toner' alert, but the printer would still be online and responsive to network requests.

178
MCQeasy

A developer needs to store a list of employee names. Which data structure is most appropriate?

A.String
B.Array
C.Boolean
D.Integer
AnswerB

An array stores an ordered, indexed collection of elements of the same type, making it ideal for a simple list of employee names where each entry is accessed by position. It provides constant-time indexed access and minimal overhead compared with structures designed for key-value or relational relationships.

Why this answer

An array is the most appropriate data structure for storing a list of employee names because it allows multiple values (strings) to be stored in a single, ordered collection. Unlike a single string, which holds only one value, an array can hold many strings and provides indexed access to each element, making it ideal for lists of items.

Exam trap

The trap here is that candidates may confuse a single string with a collection, thinking a string can hold multiple names by concatenation, but the question specifically asks for a 'list' structure, which requires an array or similar collection type.

How to eliminate wrong answers

Option A is wrong because a string is a single sequence of characters, not a collection; storing multiple names would require concatenation or a single long string, which is inefficient and loses individual name access. Option C is wrong because a Boolean can only represent true or false, not a list of names. Option D is wrong because an integer stores only numeric values, not text-based employee names.

179
MCQmedium

Which of the following Wi-Fi standards operates on the 5 GHz band and provides the fastest theoretical speeds?

A.802.11g
B.802.11ax
C.802.11ac
D.802.11n
AnswerB

802.11ax (Wi-Fi 6) operates on both 2.4 GHz and 5 GHz bands and delivers the highest theoretical throughput of the listed standards, using OFDMA and higher-order modulation. This satisfies the question's requirement for the fastest speeds on the 5 GHz band.

Why this answer

IEEE 802.11ax (marketed as Wi-Fi 6 and Wi-Fi 6E) is the newest standard listed and delivers the fastest theoretical throughput, up to roughly 9.6 Gbps, while operating on both 2.4 GHz and 5 GHz bands (and 6 GHz for Wi-Fi 6E). It introduces OFDMA, MU-MIMO, and 1024-QAM to boost efficiency and speed in dense environments. This makes it the correct answer for 'fastest theoretical speeds on the 5 GHz band.'

Exam trap

The trap is that 802.11ac is also a 5 GHz standard with impressive speeds, so candidates who don't know the chronological order (n → ac → ax) pick ac as 'fastest' — remember ax is newer and faster than ac.

How to eliminate wrong answers

Option A is wrong because 802.11g is an older 2.4 GHz-only standard with a maximum theoretical rate of just 54 Mbps. Option C is wrong because 802.11ac (Wi-Fi 5) is 5 GHz-only and tops out around 6.9 Gbps — fast, but slower than 802.11ax. Option D is wrong because 802.11n (Wi-Fi 4) supports both 2.4 and 5 GHz but maxes out around 600 Mbps, far below 802.11ax.

180
MCQeasy

A developer is creating a program that must respond to user actions such as button clicks and mouse movements. Which programming paradigm is most suitable?

A.Event-driven programming
B.Object-oriented programming
C.Functional programming
D.Procedural programming
AnswerA

Event-driven programming suits this scenario because execution is triggered by user actions rather than sequential flow. Button clicks and mouse movements raise events, and registered handlers run in response, satisfying the stem's requirement to react to those actions. Other paradigms, such as procedural or object-oriented alone, lack this inherent event-loop and callback mechanism.

Why this answer

Event-driven programming is the most suitable paradigm because it is designed to handle asynchronous user actions like button clicks and mouse movements. In this paradigm, the program's flow is determined by events (e.g., user inputs), and callback functions or event handlers are triggered in response. This aligns directly with the requirement to respond to unpredictable, external stimuli.

Exam trap

The trap here is that candidates often confuse 'object-oriented programming' with the ability to handle events because many GUI frameworks use OOP to implement event listeners, but the paradigm itself is event-driven, not OOP.

How to eliminate wrong answers

Option B (Object-oriented programming) is wrong because it focuses on encapsulating data and behavior into objects, but it does not inherently provide a mechanism for handling asynchronous user events; event-driven code can be written in an OOP style, but the paradigm itself is not specialized for event response. Option C (Functional programming) is wrong because it emphasizes pure functions, immutability, and declarative transformations, which are not naturally suited for managing stateful, sequential user interactions like button clicks. Option D (Procedural programming) is wrong because it follows a linear, top-down execution flow that is ill-equipped to handle the unpredictable, non-blocking nature of user-driven events without complex polling or interrupt mechanisms.

181
MCQeasy

Which of the following storage interfaces provides the fastest data transfer speeds?

A.USB 3.0
B.SATA
C.NVMe M.2
D.Ethernet
AnswerC

NVMe M.2 drives communicate directly over the PCIe bus using the NVMe protocol, bypassing the SATA/AHCI controller bottleneck. This yields far higher throughput and lower latency than SATA SSDs or magnetic drives, satisfying the fastest-transfer requirement.

Why this answer

NVMe M.2 is correct because it uses the PCIe bus directly, bypassing the SATA interface and AHCI protocol, which allows much higher throughput and lower latency. Typical NVMe drives reach sequential read speeds of 3,500 MB/s or more on PCIe 3.0 and over 7,000 MB/s on PCIe 4.0, far exceeding SATA III's 600 MB/s ceiling. This makes NVMe M.2 the fastest storage interface among the options for direct-attached storage.

Exam trap

The trap is confusing the M.2 form factor with the NVMe protocol; candidates may pick SATA because they see M.2 drives that are SATA, but the question asks for the fastest interface, which is NVMe.

How to eliminate wrong answers

Option A is wrong because USB 3.0 has a theoretical maximum of 5 Gbps (about 625 MB/s), which is slower than NVMe and is a general-purpose external bus, not a primary internal storage interface. Option B is wrong because SATA III caps at 6 Gbps (about 600 MB/s) and uses the older AHCI protocol with a single command queue, making it significantly slower than NVMe. Option D is wrong because Ethernet is a networking interface, not a storage interface, and even 10GbE is used for network-attached storage, not direct internal drive connections.

182
MCQmedium

A user wants to store 100 high-resolution photos. Which unit of measurement is MOST appropriate for the total file size?

A.Kilobytes
B.Bytes
C.Bits
D.Gigabytes
AnswerD

Gigabytes suit 100 high-resolution photos because each image typically occupies several megabytes, so the aggregate reaches the gigabyte range. This unit keeps the total concise and readable, satisfying the stem's demand for the most appropriate measurement of combined file size rather than bytes, kilobytes or terabytes.

Why this answer

High-resolution photos typically range from 5 to 25 megabytes each, so 100 such photos would total hundreds of megabytes to several gigabytes. Gigabytes (GB) is the most appropriate unit because it matches the expected order of magnitude for this data volume, whereas smaller units like kilobytes or bytes would require unwieldy large numbers. This aligns with common storage measurements in IT, where GB is standard for large file collections.

Exam trap

The trap here is that candidates often confuse bits with bytes or underestimate the size of high-resolution photos, leading them to pick smaller units like kilobytes or bytes, but the correct unit must match the practical scale of the data.

How to eliminate wrong answers

Option A is wrong because kilobytes (KB) are too small—a single high-resolution photo is often several megabytes (MB), so 100 photos would be tens of thousands of KB, making KB impractical for expressing the total size. Option B is wrong because bytes (B) are the smallest unit of digital storage; using bytes for 100 high-resolution photos would result in a number in the billions, which is not a standard or convenient measurement. Option C is wrong because bits (b) are even smaller than bytes (8 bits = 1 byte) and are typically used for data transfer rates, not storage sizes; expressing file sizes in bits would be extremely non-standard and confusing.

183
MCQeasy

A user wants to securely access company resources from a remote location over the internet. Which technology should be used?

A.HTTP
B.SSH
C.FTP
D.VPN
AnswerD

A VPN builds an encrypted tunnel across the public internet between the remote user and the corporate network, protecting data in transit. This satisfies the requirement for secure remote access to company resources over an untrusted medium.

Why this answer

A VPN (Virtual Private Network) creates an encrypted tunnel between the user's device and the company's network over the internet, ensuring confidentiality and integrity of data. This allows remote users to securely access internal resources as if they were directly connected to the corporate LAN. Technologies like IPsec or TLS are commonly used to establish this secure connection.

Exam trap

The trap here is that candidates often confuse SSH with a general remote access solution because it provides encryption, but SSH only secures a single terminal session, not full network-layer access to all company resources.

How to eliminate wrong answers

Option A is wrong because HTTP is an unencrypted application-layer protocol used for web browsing, not for secure remote access to company resources. Option B is wrong because SSH provides encrypted remote shell access to individual servers, but it does not create a network-layer tunnel to access multiple company resources across the entire internal network. Option C is wrong because FTP is an unencrypted file transfer protocol that transmits credentials and data in plaintext, lacking the security and network access capabilities required for remote resource access.

184
MCQeasy

Which of the following correctly declares a variable to store a person's age in Python?

A.var age = 25
B.int age = 25
C.age == 25
D.age = 25
AnswerD

Assigning the integer 25 to the name age uses Python's dynamic typing, where no explicit type declaration is required. This satisfies the stem's requirement to declare a variable for a person's age, since Python infers the int type from the literal value.

Why this answer

In Python, variables are created by assignment with the `=` operator, and no explicit type declaration is needed. Option D correctly assigns the integer value 25 to the variable `age` using `age = 25`, which is the proper syntax for declaring and initializing a variable in Python.

Exam trap

The trap here is that candidates familiar with statically-typed languages (like Java or C++) may choose Option B, mistakenly applying type declaration syntax to Python, which does not use it.

How to eliminate wrong answers

Option A is wrong because `var age = 25` uses JavaScript-style syntax; Python does not use the `var` keyword for variable declaration. Option B is wrong because `int age = 25` follows statically-typed language syntax (like Java or C++), but Python is dynamically typed and does not require or allow type declarations before variable names. Option C is wrong because `age == 25` is a comparison operator that checks equality, not an assignment; it would evaluate to a Boolean value (True or False) rather than storing a value in a variable.

185
Multi-Selectmedium

A software development team is adopting an Agile methodology. Which of the following are characteristics of Agile? (Choose three.)

Select 3 answers
A.Strict adherence to a fixed plan
B.Customer collaboration
C.Responding to change over following a plan
D.Emphasis on documentation over working software
E.Iterative development
AnswersB, C, E

Customer collaboration is a core Agile principle, prioritising continuous engagement with the customer over rigid contract negotiation. This directly satisfies the Agile value of working closely with stakeholders to gather feedback and adapt requirements throughout development, rather than agreeing terms upfront and isolating the team from evolving customer needs.

Why this answer

Option B (Customer collaboration) is correct because the Agile Manifesto explicitly values customer collaboration over contract negotiation, ensuring the customer stays engaged throughout development. Option C (Responding to change over following a plan) is correct because Agile prioritizes adaptability to changing requirements over rigid adherence to an initial plan. Option E (Iterative development) is correct because Agile delivers software in short, repeated cycles (iterations/sprints) to incorporate feedback continuously.

Option A is incorrect because strict adherence to a fixed plan contradicts Agile's flexibility. Option D is incorrect because Agile values working software over comprehensive documentation.

Exam trap

In the CompTIA ITF+ exam, you may encounter questions that test the difference between Agile and Waterfall methodologies. The trap is to select options like 'Emphasis on documentation' or 'Strict adherence to a fixed plan' which are characteristics of Waterfall, not Agile.

186
MCQhard

A small business uses a MySQL database to manage inventory and sales. The database has two tables: Products (ProductID, ProductName, QuantityInStock) and Sales (SaleID, ProductID, QuantitySold, SaleDate). The business runs a nightly script that updates QuantityInStock by subtracting QuantitySold from the Products table based on the day's sales. Recently, the inventory levels have become inaccurate. For example, a product shows negative stock even though no sales occurred that day. The database administrator suspects the issue is related to how transactions are handled. The nightly script runs multiple UPDATE statements in a loop. If the script fails partway through, some products' stock is updated while others are not, leaving inconsistent data. The administrator wants to ensure that either all updates succeed or none do, and that the script does not interfere with daytime operations. Which action should the administrator take?

A.Use a stored procedure that updates all products in one statement without error handling
B.Increase the frequency of the script to run every hour with smaller batches
C.Remove the transaction and use individual UPDATE statements with error logging
D.Wrap all UPDATE statements in a single transaction with READ COMMITTED isolation level and add error handling to roll back on failure
AnswerD

A single transaction with rollback on failure guarantees atomicity, so partial updates cannot leave inconsistent stock. READ COMMITTED prevents the script from holding locks that block daytime reads, satisfying the requirement that either all updates succeed or none do without interfering with operations.

Why this answer

Wrapping all UPDATE statements in a single transaction with READ COMMITTED isolation level ensures atomicity: either all updates commit or none do, preventing partial updates. Adding error handling with a rollback on failure guarantees that if the script fails partway through, the entire transaction is undone, leaving the database consistent. READ COMMITTED isolation prevents dirty reads and minimizes locking, reducing interference with daytime operations.

Exam trap

The trap here is that candidates may think error logging (Option C) or batching (Option B) is sufficient to maintain consistency, but they overlook that without a transaction with rollback, partial updates are still committed and cannot be undone.

How to eliminate wrong answers

Option A is wrong because a stored procedure that updates all products in one statement without error handling does not provide atomicity or rollback capability; if the single statement fails partway (e.g., due to a constraint violation), some rows may still be updated depending on the statement type, and without error handling, partial updates can occur. Option B is wrong because increasing the frequency of the script to run every hour with smaller batches does not solve the atomicity problem; each batch would still be vulnerable to partial failure, and more frequent runs increase contention with daytime operations. Option C is wrong because removing the transaction and using individual UPDATE statements with error logging does not provide atomicity; even with error logging, if the script fails after some updates, those updates persist, leaving inconsistent data, and error logging alone cannot roll back already committed changes.

187
MCQmedium

A company is considering moving its email system to the cloud and wants to avoid managing the underlying servers and software. Which cloud service model would best suit this need?

A.Software as a Service (SaaS)
B.Infrastructure as a Service (IaaS)
C.Platform as a Service (PaaS)
D.Desktop as a Service (DaaS)
AnswerA

SaaS delivers a complete, vendor-managed application over the internet, with the provider handling servers, patching and software updates. For email, this removes the customer's infrastructure burden entirely, satisfying the stem's requirement to avoid managing underlying servers and software.

Why this answer

SaaS delivers fully managed, ready-to-use applications over the internet, with the provider handling all underlying infrastructure, patching, and software maintenance. Moving an email system to a cloud-hosted service like Microsoft 365 or Google Workspace is the canonical SaaS example because the customer only manages users and data, not servers or email software.

Exam trap

FC0-U71 often tests the boundary between SaaS and PaaS, tricking candidates who think 'cloud email' requires a platform when it's actually a finished application delivered as a service.

How to eliminate wrong answers

Option B is wrong because IaaS provides raw compute, storage, and networking (e.g., AWS EC2), leaving the customer responsible for installing and managing the OS and email software — the opposite of avoiding server management. Option C is wrong because PaaS offers a managed runtime/platform for developers to deploy their own applications, but email is a finished application, not a platform workload. Option D is wrong because DaaS delivers virtual desktops, not email services; it's about desktop virtualization, not application hosting.

188
MCQhard

A network engineer is configuring a device and needs to enter a MAC address. Which notational system is typically used for MAC addresses?

A.Hexadecimal
B.Octal
C.Decimal
D.Binary
AnswerA

Hexadecimal notation represents each of a MAC address's 48 bits as twelve digits grouped in pairs, matching the six-octet structure defined by IEEE 802. The stem asks which notational system is typically used, and hexadecimal is the standard convention for expressing MAC addresses, unlike dotted-decimal or binary forms.

Why this answer

MAC addresses are 48-bit identifiers written as 12 hexadecimal digits, typically grouped in pairs separated by colons or hyphens (e.g., 00:1A:2B:3C:4D:5E). Hexadecimal is used because each hex digit maps cleanly to 4 bits, so 12 hex digits represent exactly 48 bits without ambiguity. This makes hexadecimal the standard notational system for MAC addresses.

Exam trap

The trap is that both MAC addresses and IPv6 addresses use hexadecimal, so candidates sometimes second-guess themselves — but the key giveaway is the 12-digit colon-separated format, which is uniquely MAC, and hex is always the answer for MAC notation.

How to eliminate wrong answers

Option B is wrong because octal (base-8) uses digits 0-7 and does not align to the 4-bit nibble structure of a 48-bit MAC address, so it is never used for MAC notation. Option C is wrong because decimal (base-10) cannot compactly or unambiguously represent 48 bits and is not the convention for MAC addresses. Option D is wrong because binary would require 48 individual 0/1 characters, which is unreadable and never used in practice for MAC addresses.

189
MCQmedium

A user receives a notification that their software subscription will expire in seven days. The user wants to continue using the software without interruption. Which of the following should the user do to ensure continued access?

A.Uninstall the software and reinstall it.
B.Disable automatic updates to save bandwidth.
C.Renew the software subscription online.
D.Delete temporary files to free up space.
AnswerC

Renewing the subscription online before the seven-day window closes restores the licence's validity period, so the software's activation check continues to succeed and access is uninterrupted. This directly satisfies the stem's requirement to maintain continuous use, unlike troubleshooting or reinstalling, which do not extend entitlement.

Why this answer

The software subscription is tied to a licensing server that validates the user's right to use the software. Renewing the subscription online updates the license key or extends the activation period on the server, ensuring the software remains functional beyond the expiration date without interruption.

Exam trap

The trap here is that candidates may confuse subscription renewal with general software maintenance tasks like reinstalling or cleaning files, but only the renewal action directly modifies the licensing state on the vendor's server.

How to eliminate wrong answers

Option A is wrong because uninstalling and reinstalling the software does not change the expiration status of the subscription; the same license key or account credentials would still be tied to the expired subscription. Option B is wrong because disabling automatic updates does not address the subscription expiration; it only prevents patch downloads, which could actually leave the software vulnerable or incompatible. Option D is wrong because deleting temporary files frees up disk space but has no effect on the software's licensing or subscription status.

190
MCQhard

A user receives an error message 'Insufficient memory' when trying to open a large file. Which of the following is the MOST likely cause?

A.The CPU is overheating
B.The hard drive is full
C.The graphics card is outdated
D.The system RAM is insufficient
AnswerD

The error indicates the application cannot allocate enough physical memory to load the file. Insufficient RAM forces the system to rely on slower paging, and when demand exceeds available memory the allocation fails, producing the 'Insufficient memory' message.

Why this answer

The 'Insufficient memory' error specifically indicates that the system's RAM (Random Access Memory) is unable to allocate enough space to load the large file into active memory. When a file is opened, it is read from the hard drive into RAM for processing; if the file size exceeds available RAM, the operating system cannot complete the operation, triggering this error.

Exam trap

The trap here is that candidates confuse 'memory' with 'storage', assuming a full hard drive causes the error, when in fact 'memory' in this context always refers to RAM, not disk space.

How to eliminate wrong answers

Option A is wrong because CPU overheating causes system instability, throttling, or shutdowns, not a memory-specific error message. Option B is wrong because a full hard drive would produce 'disk full' or 'out of disk space' errors, not 'insufficient memory', which refers to volatile RAM, not storage capacity. Option C is wrong because an outdated graphics card affects video rendering and display performance, not the ability to load a file into system memory; graphics memory (VRAM) is separate from system RAM.

191
MCQeasy

Which of the following best describes the purpose of a REST API?

A.To compile source code into executable programs
B.To allow software applications to communicate with each other
C.To create a graphical user interface
D.To define a database schema
AnswerB

A REST API exposes endpoints over HTTP that let separate software applications exchange data and invoke functionality using standard methods, decoupling client and server. This application-to-application communication is its defining purpose, not user interfaces or hardware control.

Why this answer

A REST API (Representational State Transfer Application Programming Interface) is a set of architectural constraints that enables software applications to communicate over HTTP using standard methods like GET, POST, PUT, and DELETE. It allows different systems, often written in different languages, to exchange data in formats such as JSON or XML, making it the correct choice for enabling inter-application communication.

Exam trap

CompTIA often tests the misconception that REST APIs are used for building user interfaces or managing databases, when in fact they are purely a communication protocol between software systems.

How to eliminate wrong answers

Option A is wrong because compiling source code into executable programs is the function of a compiler (e.g., GCC, javac), not an API. Option C is wrong because creating a graphical user interface is the role of UI frameworks (e.g., JavaFX, React) or GUI builders, not a REST API which is a server-side interface. Option D is wrong because defining a database schema is the responsibility of a Data Definition Language (DDL) in SQL or an ORM mapping, not a REST API which focuses on resource manipulation via HTTP.

192
MCQhard

A developer writes an UPDATE statement to change the price of a product but accidentally omits the WHERE clause. What is the most likely outcome?

A.All rows in the table are updated.
B.Only the first row is updated.
C.The database returns a syntax error.
D.No rows are updated because the statement is invalid.
AnswerA

Without a WHERE clause, the UPDATE statement has no row filter, so the database engine applies the new price value to every row in the table. All records are modified rather than the single intended product.

Why this answer

In SQL, an UPDATE statement without a WHERE clause applies the change to every row in the specified table. The database engine processes the statement as a set operation, iterating over all rows and setting the specified column(s) to the new value. This is not an error; it is a valid SQL command that results in a mass update.

Exam trap

CompTIA often tests the misconception that an UPDATE without a WHERE clause will cause an error or only affect the first row, but the correct understanding is that it updates all rows in the table.

How to eliminate wrong answers

Option B is wrong because SQL does not limit UPDATE to only the first row; without a WHERE clause, the operation targets all rows, not a single row. Option C is wrong because omitting the WHERE clause does not produce a syntax error; the UPDATE statement is syntactically complete and valid. Option D is wrong because the statement is not invalid; it executes successfully and updates every row in the table.

193
MCQhard

A system administrator is reviewing a configuration for a scalable application. The configuration specifies a policy that triggers when the average CPU utilization exceeds 80% for a sustained period. Currently, there are 3 servers and the CPU usage is 85%. What should happen next?

A.No action will be taken.
B.An instance will be removed.
C.The configuration will be flagged as invalid.
D.An instance will be added.
AnswerA

The policy triggers only when average CPU utilisation exceeds 80% for a sustained period. A single reading of 85% does not satisfy the duration condition, so the scaling action is not yet invoked and no additional servers are provisioned.

Why this answer

The policy requires the CPU utilization to exceed 80% for a sustained period. The stem only mentions that CPU usage is currently 85%, but does not indicate how long it has been sustained. Without confirmation that the sustained period condition is met, no action should be taken.

Option D would only be correct if the sustained period condition were satisfied, but it is not stated.

Exam trap

Candidates may mistakenly assume that because the threshold is exceeded, scaling will occur immediately, but the "sustained period" requirement is not confirmed.

How to eliminate wrong answers

Option A is wrong because the CPU usage of 85% exceeds the specified threshold of 80%, so the auto-scaling policy will take action rather than remain idle. Option B is wrong because a scale-in (removing an instance) occurs when CPU usage falls below a lower threshold, not when it is high; removing an instance would worsen the overload. Option C is wrong because the configuration is valid JSON and the threshold values are correctly defined; there is no syntax or logic error that would flag it as invalid.

194
Multi-Selecthard

Which TWO of the following are characteristics of object-oriented programming (OOP)?

Select 2 answers
A.Top-down design
B.Use of global functions
C.Inheritance
D.Encapsulation
E.Recursion
AnswersC, D

Inheritance lets a subclass reuse and extend a parent class's fields and methods, directly satisfying the OOP characteristic of hierarchical code reuse. It defines an "is-a" relationship between classes, so shared behaviour lives in one place while specialised behaviour is overridden, which is precisely what the question asks for.

Why this answer

Inheritance (C) is a core OOP characteristic because it lets a class derive attributes and methods from a parent class, promoting code reuse and hierarchical relationships between types. Encapsulation (D) is also fundamental to OOP because it bundles data and the methods that operate on that data within a class, restricting direct access through mechanisms like private/protected members and public interfaces. The other options are not defining OOP traits: top-down design (A) is a structured/procedural design approach, global functions (B) conflict with encapsulation and are typical of procedural programming, and recursion (E) is a general programming technique usable in any paradigm, not specific to OOP.

Exam trap

CompTIA often tests the distinction between OOP characteristics and general programming concepts, so candidates mistakenly pick recursion or top-down design because they are common in programming but not exclusive to OOP.

195
Multi-Selecteasy

Which TWO of the following are examples of security software? (Choose TWO.)

Select 2 answers
A.Antivirus
B.Media player
C.Web browser
D.Virtual Private Network (VPN)
E.Text editor
AnswersA, D

Antivirus software continuously scans files and processes against known malware signatures and behavioural heuristics, then quarantines or removes detected threats. This directly satisfies the stem's requirement for security software, since its core purpose is defending a device against malicious code rather than managing hardware or user productivity.

Why this answer

Antivirus (A) is security software because it detects, blocks, and removes malware such as viruses, worms, and trojans through signature scanning and behavioral heuristics. A Virtual Private Network (VPN) (D) is security software because it creates an encrypted tunnel (e.g., using IPsec or TLS) that protects data confidentiality and integrity in transit and can authenticate remote users. The media player (B), web browser (C), and text editor (E) are general-purpose application software for playback, web access, and text manipulation, respectively; they do not primarily provide security functions, so they are not examples of security software.

Exam trap

FC0-U71 often tests the categorization of software, and candidates might think a web browser is security software because it has security features like pop-up blockers, but it is not primarily security software.

196
MCQmedium

A user receives an email that appears to be from their bank, asking them to click a link and verify their account details. The email contains urgent language and threats of account closure. What type of attack is this?

A.Spear phishing
B.Smishing
C.Phishing
D.Vishing
AnswerC

Phishing exploits social engineering by masquerading as a trusted entity—here, the user’s bank—to trick the recipient into clicking a fraudulent link. The urgent language and threat of account closure create a false sense of crisis, bypassing rational scrutiny. This satisfies the constraint of unauthorised credential harvesting via deceptive communication, distinguishing it from technical exploits like malware injection.

Why this answer

Phishing is a social engineering attack where attackers impersonate a legitimate entity to steal sensitive information.

197
Multi-Selectmedium

A development team is adopting Scrum. Which TWO roles are defined in the Scrum framework? (Select the two correct answers.)

Select 2 answers
A.Scrum Master
B.Product Owner
C.Business Analyst
D.Quality Assurance Lead
E.Project Manager
AnswersA, B

Scrum defines three accountabilities, and the Scrum Master is one: accountable for establishing Scrum as defined in the Scrum Guide, coaching the team and removing impediments. This satisfies the stem's requirement for a defined Scrum role, unlike titles such as project manager or product owner's proxy.

Why this answer

Option A, Scrum Master, is correct because Scrum formally defines this role to serve the team by facilitating Scrum events, removing impediments, and coaching the organization on Scrum practices. Option B, Product Owner, is correct because Scrum defines this role as accountable for maximizing product value and managing the Product Backlog, including ordering items and ensuring the team understands them. Together, the Scrum Master and Product Owner are two of the three official Scrum accountabilities, alongside the Developers.

Option C, Business Analyst, is not a defined Scrum role; such responsibilities may exist but are not part of the framework. Option D, Quality Assurance Lead, is likewise not a Scrum-defined role, as quality is a shared team responsibility. Option E, Project Manager, is not a Scrum role, since Scrum distributes management responsibilities among the Scrum Master, Product Owner, and Developers rather than using a traditional project manager.

Exam trap

FC0-U71 often tests whether candidates can distinguish Scrum's three defined accountabilities from traditional IT roles like Project Manager or Business Analyst that do not exist in Scrum.

198
MCQmedium

A user reports that their smartphone battery drains quickly and the device feels warm. The user recently installed several apps. Which built-in smartphone feature can help identify the cause?

A.Accelerometer
B.Battery usage monitor
C.GPS
D.NFC
AnswerB

Android and iOS battery usage screens break consumption down per app, exposing which recently installed app is running in the background and keeping the CPU awake. That directly identifies the culprit behind the rapid drain and warmth described.

Why this answer

The battery usage monitor built into Android and iOS shows per-app battery consumption and identifies which apps are draining power or causing the device to run warm. Since the user recently installed several apps, this feature directly correlates the symptom to the culprit. It also reports background activity, screen-on time, and CPU usage per app.

Exam trap

The trap is confusing sensors and communication features (accelerometer, GPS, NFC) with diagnostic utilities — the exam expects you to recognize that only the battery usage monitor is designed to identify power-draining apps.

How to eliminate wrong answers

Option A is wrong because an accelerometer measures motion and orientation (e.g., for screen rotation or step counting) and has no role in diagnosing battery drain. Option C is wrong because GPS is a location sensor; while location services can drain battery, GPS itself is not a diagnostic feature — the battery monitor is what reveals whether GPS is being overused. Option D is wrong because NFC is a short-range communication protocol for contactless payments and pairing, not a diagnostic tool for battery or thermal issues.

199
MCQmedium

A user wants to synchronize contacts, calendars, and photos between their Android smartphone and tablet. Which of the following methods would best accomplish this?

A.Configure Google account sync
B.Pair via Bluetooth
C.Use a USB cable to transfer files
D.Use an SD card
AnswerA

Configuring the Google account on both devices syncs contacts, calendars and photos through Google's cloud services, which Android integrates natively. This satisfies the requirement to synchronise all three data types across the smartphone and tablet without manual transfers.

Why this answer

Configuring a Google account sync on both Android devices automatically synchronizes contacts, calendars, and photos via the cloud. This is the most efficient method for keeping data consistent across multiple devices. Thus, A is correct.

Exam trap

FC0-U71 often tests the difference between synchronization and manual transfer; candidates may choose Bluetooth or USB, but those are not automatic sync methods.

How to eliminate wrong answers

Option B is wrong because Bluetooth pairing is for local file transfers and peripheral connections, not for continuous synchronization of contacts and calendars. Option C is wrong because using a USB cable requires manual file transfers and does not provide automatic sync. Option D is wrong because using an SD card involves manual copying and is not a synchronization method.

200
Multi-Selectmedium

Which TWO of the following are commonly considered business productivity software? (Select TWO.)

Select 2 answers
A.Word processing software
B.Video editing software
C.Spreadsheet software
D.Graphic design software
E.Database management system
AnswersA, C

Word processing software is a core category of business productivity software, letting users create and edit text documents for reports, memos and contracts. It satisfies the stem's requirement for a common productivity tool, alongside spreadsheets and presentations, rather than utilities or operating system components.

Why this answer

Word processing software (A) is a core business productivity application because it lets users create, edit, format, and share text documents such as memos, reports, and contracts, which are everyday office tasks. Spreadsheet software (C) is likewise a standard productivity tool, used for budgeting, data analysis, charts, and calculations via formulas and functions in business settings. Together, these are typically bundled in office suites (e.g., Microsoft Word and Excel in Microsoft 365) and are considered general-purpose productivity software.

Video editing software (B) and graphic design software (D) are specialized creative/media tools rather than general business productivity applications, and a database management system (E) is a data platform for storing and querying structured data, not a typical end-user productivity program.

Exam trap

The trap is that video editing and graphic design are 'software used at work,' so candidates assume they count as business productivity — but the exam uses the narrow definition of general office/document/data tools.

201
MCQhard

A database transaction that updates two accounts fails halfway due to a power outage. Which ACID property ensures that partial changes are undone?

A.Durability
B.Isolation
C.Consistency
D.Atomicity
AnswerD

Atomicity treats the two account updates as a single indivisible unit, so if the power outage interrupts execution, the transaction rolls back and no partial debit or credit persists. This satisfies the stem's requirement that partial changes be undone.

Why this answer

Atomicity ensures that a transaction is treated as a single, indivisible unit of work. If a power outage interrupts the transaction after updating one account but before updating the second, the database management system (DBMS) must roll back any partial changes to restore the original state. This 'all-or-nothing' property prevents incomplete transactions from leaving the database in an inconsistent state.

Exam trap

CompTIA often tests the distinction between atomicity (rollback of a failed transaction) and durability (persistence of committed data), so candidates mistakenly choose durability because they associate 'failure' with 'data loss' rather than 'partial update rollback'.

How to eliminate wrong answers

Option A is wrong because durability guarantees that committed transactions persist permanently, even after a system failure; it does not handle undoing uncommitted partial changes. Option B is wrong because isolation controls how concurrent transactions interact to prevent dirty reads or lost updates, but it does not address rollback of a single failed transaction. Option C is wrong because consistency ensures that a transaction transforms the database from one valid state to another, but it relies on atomicity to undo partial changes when a transaction fails; consistency itself does not perform the rollback.

202
MCQmedium

A user installs an open-source image editor on a personal laptop. The software is distributed with source code, and the user is allowed to modify and redistribute it under the same license terms. Which licensing characteristic best describes this software?

A.Open-source license permitting modification and redistribution under the same terms
B.Proprietary license with per-seat activation
C.Shareware license with a trial period before purchase
D.Freeware license that permits unlimited personal use
AnswerA

The scenario describes software whose source code is available and whose license allows the user to modify and redistribute it under the same terms. That combination matches an open-source license, often called copyleft when derivative works must carry the same terms. It explains both the availability of source and the permission to share changes.

Why this answer

Providing source code together with permission to modify and redistribute under the same license terms is the hallmark of an open-source license, particularly a copyleft one. Proprietary, freeware, and shareware models all restrict modification, redistribution, or both, and none of them align with the rights described. The defining factor is the granted freedom to use, study, change, and share the software.

Exam trap

The trap here is equating free-of-charge software with open-source software, when the distinguishing factor is the granted rights, not the price.

203
Multi-Selecthard

A software company is using version control for a project. A developer has completed work on a new feature in a separate branch and wants to merge it into the main branch. What TWO steps should typically occur before the merge is accepted?

Select 2 answers
A.Delete the feature branch immediately
B.Update the feature branch with the latest main branch changes
C.Run unit tests only on the main branch
D.Submit a pull request for code review
E.Commit changes directly to the main branch
AnswersB, D

Rebasing or merging main into the feature branch resolves conflicts locally and verifies the feature still builds against current code. This satisfies the pre-merge requirement that integration issues surface before acceptance, rather than after the main branch is destabilised.

Why this answer

Common version control best practices include code review via pull requests and ensuring the feature branch is up to date with the main branch to minimize conflicts.

204
MCQhard

A ticket system logs a row for every check-in scan at an event gate, capturing the timestamp, gate identifier, and badge number. Staff want a quick daily count of scans per gate. Which statement about this data is most accurate?

A.The log is semi-structured because gate identifiers are text values
B.The scan log is structured data because each row follows a consistent set of defined fields
C.The scan log is unstructured data because it contains timestamps
D.Counting scans per gate requires converting the log to unstructured form first
AnswerB

Every scan record uses the same named fields, so the data fits neatly into columns and can be grouped and counted directly. Aggregating scans by gate for a given day is a straightforward grouped count over that consistent structure, which is exactly what structured data supports well.

Why this answer

Each scan row uses the same defined fields, so the log is structured data and can be grouped and counted directly. Classifying data depends on whether records follow a consistent, defined organization, not on whether individual values happen to be dates or text.

Exam trap

The trap here is classifying data by the data type of one field, such as a timestamp or a text code, instead of by whether records share a consistent defined structure.

205
MCQmedium

A database administrator notices that queries on a large table are taking too long to execute. Which action would most likely improve performance?

A.Add more columns to the table.
B.Denormalize the table.
C.Perform further normalization.
D.Create an index on frequently queried columns.
AnswerD

An index stores a sorted pointer structure on the chosen columns, letting the optimiser seek directly to matching rows instead of scanning the whole table. This directly addresses the slow query execution on the large table described in the stem.

Why this answer

Creating an index on frequently queried columns allows the database to locate rows using a B-tree or hash structure, reducing the need for full table scans. This directly addresses slow query performance on large tables by minimizing disk I/O and CPU overhead during SELECT operations.

Exam trap

The trap here is that candidates may confuse normalization with performance optimization, but normalization is designed to reduce redundancy and maintain data integrity, not to speed up queries on large tables.

How to eliminate wrong answers

Option A is wrong because adding more columns increases the row width, which can degrade I/O performance and does not speed up queries. Option B is wrong because denormalization introduces data redundancy and can improve read performance only in specific warehousing scenarios, but it is not the most direct or standard fix for slow queries on a large table; it often complicates writes and maintenance. Option C is wrong because further normalization typically increases the number of joins required, which can slow down queries rather than improve performance on a large table.

206
MCQmedium

An organization issues smartphones to employees and needs to enforce security policies such as remote wipe and mandatory encryption. Which technology should be used to manage these devices centrally?

A.VPN
B.NAT
C.MDM
D.DNS
AnswerC

MDM centrally enforces device-level policies on enrolled smartphones, delivering remote wipe and mandatory encryption through configuration profiles pushed over the air. It satisfies the stem's requirement to manage organisation-issued devices centrally, unlike solutions scoped to applications or identity only, such as Microsoft Entra ID conditional access.

Why this answer

Mobile Device Management (MDM) is the centralized platform for enrolling, configuring, and securing employee smartphones. It enforces policies such as mandatory encryption, passcode requirements, and remote wipe, and it can push configuration profiles and certificates to devices over the air. VPN, NAT, and DNS do not provide device policy enforcement or remote management capabilities.

Exam trap

FC0-U71 often tests the confusion between network security technologies (VPN, NAT, DNS) and endpoint management platforms (MDM), tricking candidates who focus on 'security' rather than 'centralized device management'.

How to eliminate wrong answers

Option A is wrong because a VPN only provides encrypted network tunneling for data in transit; it cannot enforce device encryption, remote wipe, or application policies. Option B is wrong because NAT translates private IP addresses to public ones for internet access and has no device management function. Option D is wrong because DNS resolves domain names to IP addresses and is unrelated to endpoint security policy enforcement.

207
MCQeasy

A user reports that their laptop battery drains quickly even when the device is plugged into a wall outlet. The technician notices the charging LED is off and the battery percentage slowly decreases. Which component is most likely faulty?

A.The battery cell
B.The keyboard backlight
C.The AC adapter or charging circuit
D.The display panel
AnswerC

If the adapter, cable, or internal charging circuit fails, the laptop receives no power from the wall and continues running on battery until depleted. The unlit charging LED supports this diagnosis because the system is not detecting external power. Testing with a known-good adapter is the appropriate next step.

Why this answer

When a laptop runs on battery despite being plugged in, the charging path is interrupted. A failed AC adapter, damaged cable, or faulty internal charging circuit prevents power from reaching the battery, which explains both the unlit LED and the declining charge. Battery cells, display, and keyboard backlight do not block AC power delivery and would present different symptoms.

Exam trap

The trap here is blaming the battery for fast drain when the real symptom, no charging while plugged in, points to the power delivery path.

208
MCQmedium

Which of the following is a characteristic of a NoSQL database compared to a relational database?

A.Requires normalized data
B.Enforces strict schema definition
C.Supports flexible schema
D.Uses SQL for queries
AnswerC

NoSQL databases permit documents or records with differing fields, so each item can carry its own attributes without a fixed table definition. Relational databases enforce a predefined schema of columns and types, making this flexibility the defining contrast the question targets.

Why this answer

NoSQL databases are characterized by a flexible schema, meaning they do not require a fixed table structure and can handle unstructured or semi-structured data. This allows for easy evolution of data models and rapid development. In contrast, relational databases enforce a strict schema and normalization.

Exam trap

The trap is assuming NoSQL databases use SQL or enforce schemas; candidates might confuse the 'SQL' in NoSQL as meaning it uses SQL, but it actually stands for 'Not Only SQL'.

How to eliminate wrong answers

Option A is wrong because NoSQL databases typically do not require normalized data; they often denormalize for performance and scalability. Option B is wrong because NoSQL databases do not enforce strict schema definition; that is a hallmark of relational databases. Option D is wrong because NoSQL databases generally do not use SQL for queries; they use various query languages like MongoDB Query Language, Cassandra Query Language (CQL), or Gremlin, though some support SQL-like interfaces.

209
Multi-Selectmedium

A software development team is adopting agile practices. Which TWO of the following are common characteristics of agile methodologies? (Select TWO.)

Select 2 answers
A.Sequential phases (requirements→design→implementation)
B.Iterative development with short cycles
C.Responding to change over following a plan
D.Fixed scope defined at the start
E.Comprehensive documentation at each phase
AnswersB, C

Iterative development with short cycles is a defining agile characteristic, delivering working software in frequent increments rather than one big-bang release. These short iterations enable continuous feedback, letting teams adapt to changing requirements throughout the project, which directly satisfies the agile emphasis on responding to change over following a rigid plan.

Why this answer

Option B is correct because agile methodologies, such as Scrum and Extreme Programming, deliver work in short, repeating iterations (typically 1–4 week sprints) that produce a potentially shippable increment each cycle, rather than progressing through one long sequential pass. Option C is correct because it reflects one of the four values in the Agile Manifesto, which explicitly states a preference for 'responding to change over following a plan,' allowing teams to adapt scope and priorities as requirements evolve. Option A is incorrect because sequential phases (requirements→design→implementation) describe the waterfall model, which agile explicitly contrasts with its iterative and incremental approach.

Option D is incorrect because agile embraces emergent and evolving scope rather than fixing the full scope at the start, which is characteristic of plan-driven/waterfall contracts. Option E is incorrect because agile values 'working software over comprehensive documentation,' favoring lightweight, just-enough documentation over exhaustive artifacts at each phase.

Exam trap

The trap is that some options sound like general good practices (e.g., documentation, fixed scope) but are actually antithetical to agile principles; candidates may select them if they confuse agile with disciplined project management.

210
Multi-Selecthard

Which THREE of the following are characteristics of a solid-state drive (SSD) compared to a traditional hard disk drive (HDD)?

Select 3 answers
A.Faster access times
B.Higher storage capacity typically
C.Less susceptible to physical shock
D.Lower power consumption
E.More noise
AnswersA, C, D

SSDs have no moving parts, enabling faster data access.

Why this answer

SSDs use NAND flash memory with no moving parts, allowing near-instantaneous data access (typically 0.1 ms or less) compared to HDDs that require mechanical arm movement and platter rotation (5–15 ms). This eliminates rotational latency and seek time, making access times significantly faster.

Exam trap

CompTIA often tests the misconception that SSDs always have higher storage capacity than HDDs, when in fact HDDs still dominate in maximum capacity and cost per terabyte.

211
MCQhard

A technician is configuring a new workstation. The user requires access to a legacy application that only runs on Windows 7. However, the company standard is Windows 10. Which of the following is the BEST solution?

A.Use a virtual machine with Windows 7.
B.Upgrade the legacy application to a Windows 10 version.
C.Install Windows 7 on a separate partition.
D.Use Windows 10 compatibility mode.
AnswerA

A virtual machine isolates Windows 7 within the Windows 10 host, satisfying the legacy application's OS requirement while preserving the company standard. This avoids dual-booting or downgrading, keeping the workstation compliant and the legacy environment contained.

Why this answer

A virtual machine (VM) running Windows 7 allows the legacy application to operate in its native environment while the host system runs the company-standard Windows 10. This isolates the legacy software from the modern OS, avoiding compatibility issues and maintaining security compliance. Virtualization is the preferred solution when an application has strict OS dependencies that cannot be resolved through compatibility features.

Exam trap

The trap here is that candidates often confuse compatibility mode with full virtualization, assuming that Windows 10's built-in compatibility settings can fully replicate the Windows 7 environment, when in fact they only modify a few API calls and registry settings, not the underlying OS kernel.

How to eliminate wrong answers

Option B is wrong because upgrading the legacy application to a Windows 10 version may not be possible if the vendor no longer supports it or if no upgrade path exists, and this option assumes an upgrade is available, which is not guaranteed. Option C is wrong because installing Windows 7 on a separate partition creates a dual-boot configuration, which requires rebooting to switch between OSes, reducing productivity and failing to provide simultaneous access to the legacy application and Windows 10 resources. Option D is wrong because Windows 10 compatibility mode only emulates older Windows environments for applications, but it does not provide a full Windows 7 kernel or system libraries, so many legacy applications with deep system dependencies will still fail to run correctly.

212
MCQmedium

A user receives an email that appears to be from their bank, asking them to click a link and verify their account. The email contains urgent language and a generic greeting. Which type of security threat is this?

A.Smishing
B.Spear phishing
C.Vishing
D.Phishing
AnswerD

Phishing is the correct classification because the email impersonates the bank and uses urgency plus a generic greeting to trick the recipient into clicking a link and surrendering credentials. This social-engineering mechanism, delivering a fraudulent lure by email, directly matches the scenario's described threat rather than malware or physical intrusion.

Why this answer

Phishing is a social engineering attack where attackers send deceptive emails to steal credentials. The generic greeting and urgent language are common signs.

213
MCQeasy

A developer is planning a new project that has very clear and fixed requirements. The project must be completed in a linear fashion with each phase finished before moving to the next. Which development methodology should be used?

A.Spiral
B.Scrum
C.Agile
D.Waterfall
AnswerD

Waterfall's sequential phases — requirements, design, implementation, testing, deployment — each complete before the next begins, matching the fixed, clearly defined requirements. Iterative and agile methods assume evolving scope, so they contradict the linear, phase-gated constraint stated in the stem.

Why this answer

The Waterfall methodology is correct because it follows a linear, sequential approach where each phase (e.g., requirements, design, implementation, testing) must be completed before the next begins. This aligns perfectly with the project's very clear and fixed requirements, as Waterfall assumes that all requirements are known upfront and changes are minimized.

Exam trap

The trap here is that candidates often confuse 'linear' with 'iterative' and pick Agile or Scrum because they are popular, but the question explicitly states 'fixed requirements' and 'each phase finished before moving to the next,' which directly points to Waterfall.

How to eliminate wrong answers

Option A is wrong because the Spiral model is iterative and risk-driven, combining prototyping with waterfall-like phases, which is not purely linear and does not require each phase to finish before moving to the next. Option B is wrong because Scrum is an Agile framework that uses time-boxed sprints and iterative development, allowing for changing requirements and overlapping phases, which contradicts the fixed, linear requirement. Option C is wrong because Agile is an umbrella term for iterative and incremental methodologies (like Scrum and Kanban) that embrace changing requirements and continuous feedback, not a linear, phase-complete approach.

214
MCQmedium

A company is setting up a new office and needs to connect multiple computers within the same building to share files and printers. Which type of network should they implement?

A.WAN
B.LAN
C.PAN
D.WLAN
AnswerB

A LAN connects computers within one building so they can share files and printers, matching the office scenario exactly. Ethernet or Wi-Fi provides the local connectivity. A WAN or MAN would span beyond the building, which the stem does not require.

Why this answer

A LAN (Local Area Network) connects devices within a single building or campus to share files, printers, and other resources. The scenario describes multiple computers in one building sharing resources, which is the textbook definition of a LAN. WANs span large geographic areas, PANs are personal-range, and WLANs are wireless-specific.

Exam trap

The trap is choosing WLAN because modern offices often use Wi-Fi, but the question asks for the general network type for a building, which is LAN regardless of medium.

How to eliminate wrong answers

Option A is wrong because a WAN spans broad geographic areas like cities or countries and is used to connect multiple LANs, not devices within one building. Option C is wrong because a PAN covers a very small area around a single person, such as Bluetooth devices, not an office of computers. Option D is wrong because a WLAN is a wireless LAN; while it could apply, the question does not specify wireless, and LAN is the broader correct answer for a wired office network.

215
MCQeasy

Which element of the CIA triad is primarily concerned with ensuring that data is not accessed by unauthorized individuals?

A.Confidentiality
B.Authentication
C.Availability
D.Integrity
AnswerA

Confidentiality directly satisfies the stem's constraint that data must not be accessed by unauthorised individuals. It achieves this through encryption, access controls and authentication mechanisms, which restrict disclosure to approved parties only. Unlike integrity, which guards against improper modification, confidentiality specifically addresses unauthorised read access.

Why this answer

Confidentiality is the CIA triad element that ensures data is only accessible to authorized individuals, typically enforced through encryption, access controls, and authentication mechanisms. It directly addresses the concern of preventing unauthorized access or disclosure. Integrity concerns data accuracy, and availability concerns uptime — neither addresses unauthorized access.

Exam trap

The trap here is that authentication sounds like it belongs in the CIA triad because it is a security control — candidates often pick it over confidentiality, forgetting that the triad is Confidentiality, Integrity, Availability, and authentication is merely a supporting mechanism.

How to eliminate wrong answers

Option B is wrong because authentication is a mechanism (verifying identity) that supports confidentiality, but it is not itself a CIA triad element — the triad consists of Confidentiality, Integrity, and Availability. Option C is wrong because availability ensures data and systems are accessible to authorized users when needed, which is about uptime and resilience, not about preventing unauthorized access. Option D is wrong because integrity ensures data has not been altered or tampered with, which is about accuracy and trustworthiness, not about restricting who can view it.

216
MCQeasy

Which of the following is a characteristic of a worm in the context of malware?

A.It disguises itself as legitimate software
B.It encrypts files and demands a ransom
C.It requires a host file to spread
D.It self-replicates without needing a host file
AnswerD

Worms replicate autonomously across networks by exploiting vulnerabilities, requiring no host file or user action — unlike viruses, which must attach to executable files or documents. This self-propagation mechanism directly satisfies the stem's requirement for a defining worm characteristic, distinguishing it from other malware types such as trojans or ransomware.

Why this answer

A worm is a standalone malware that replicates itself to spread to other computers without needing to attach to a host file, often exploiting network vulnerabilities.

217
Multi-Selecthard

Which THREE of the following are common types of network topologies? (Choose three.)

Select 3 answers
A.Circle
B.Star
C.Bus
D.Ring
E.Square
AnswersB, C, D

A star topology connects every device to a central hub or switch, giving a single point of failure and simple fault isolation. It is a standard topology, satisfying the question's requirement to identify common network topologies.

Why this answer

Star, bus, and ring are three of the most common physical network topologies defined in networking standards. In a star topology, all devices connect to a central switch or hub, which manages traffic and isolates failures to individual links. Bus topology uses a single backbone cable with terminators at both ends, while ring topology passes data sequentially from one node to the next using a token-passing mechanism (e.g., Token Ring per IEEE 802.5).

Exam trap

The trap here is that candidates confuse 'circle' with 'ring' topology, but 'circle' is a non-standard term, while 'ring' is the correct CompTIA-recognized topology name; similarly, 'square' is a distractor with no technical basis in networking.

218
Multi-Selectmedium

A company is choosing a storage solution for archival data that is rarely accessed. Which TWO characteristics are typically true of HDDs compared to SSDs? (Choose two.)

Select 2 answers
A.Faster read/write speeds
B.Slower access times
C.Lower cost per gigabyte
D.Lower power consumption
E.More durable due to no moving parts
AnswersB, C

HDDs rely on rotating magnetic platters and mechanical read/write heads, so seek and rotational latency make access times far slower than SSDs' flash memory. For archival data that is rarely accessed, this latency penalty is acceptable, satisfying the scenario's low-performance requirement.

Why this answer

Option B is correct because HDDs rely on spinning magnetic platters and mechanical read/write heads, so their seek time and rotational latency make access times significantly slower than SSDs, which have no mechanical delay. Option C is correct because HDDs cost substantially less per gigabyte to manufacture and purchase, making them the economical choice for rarely accessed archival data where capacity matters more than speed. Option A is incorrect because SSDs, using NAND flash memory, deliver much faster read/write speeds than HDDs.

Option D is incorrect because SSDs generally consume less power than HDDs, which must continuously spin platters and move actuator arms. Option E is incorrect because SSDs have no moving parts and are therefore more durable against shock and vibration, not HDDs.

Exam trap

FC0-U71 often tests the trade-off between HDD and SSD characteristics, and candidates may incorrectly assume SSDs are always cheaper or that HDDs are more durable due to their larger physical size.

219
MCQeasy

Which of the following best describes a NoSQL database?

A.It stores data in tables with rows and columns.
B.It provides a flexible schema for unstructured data.
C.It uses SQL for querying.
D.It enforces strict referential integrity.
AnswerB

NoSQL databases store data without a fixed relational schema, so documents, key-value pairs or graphs can be written with varying fields. This schema flexibility suits unstructured or rapidly evolving data, unlike rigid SQL table structures requiring predefined columns.

Why this answer

A NoSQL database is characterized by a flexible, schema-less or schema-optional data model that accommodates unstructured and semi-structured data such as JSON documents, key-value pairs, or graph relationships. This flexibility is the defining trait that distinguishes it from traditional relational databases.

Exam trap

The trap here is conflating 'NoSQL' with 'no SQL at all' or assuming NoSQL databases cannot handle structured data — the exam tests whether candidates understand that flexibility of schema, not the absence of query capability, is the defining characteristic.

How to eliminate wrong answers

Option A is wrong because storing data in tables with rows and columns describes a relational (SQL) database, not NoSQL. Option C is wrong because NoSQL databases typically use non-SQL query languages or APIs (e.g., MongoDB query language, Cassandra CQL as a SQL-like variant), and the defining feature is not SQL querying. Option D is wrong because strict referential integrity is a hallmark of relational databases enforced through foreign key constraints, whereas NoSQL systems generally relax or omit these constraints in favor of scalability and availability.

220
MCQeasy

A user wants to upgrade their desktop computer's storage for faster boot times. Which of the following storage interfaces would provide the fastest performance?

A.NVMe M.2 SSD
B.SATA HDD
C.SATA SSD
D.External USB 3.0 HDD
AnswerA

NVMe M.2 SSDs communicate directly over the PCIe bus rather than through the SATA controller, delivering far higher throughput and lower latency. This directly satisfies the stem's requirement for faster boot times, since the operating system's random read operations benefit most from reduced access latency.

Why this answer

NVMe M.2 SSDs communicate directly over the PCIe bus using the NVMe protocol, bypassing the legacy SATA/AHCI stack and delivering sequential read speeds of 3,000–7,000+ MB/s. This dramatically reduces boot times compared to SATA-based storage, which is capped at roughly 550 MB/s. For a desktop upgrade focused on faster boot, NVMe M.2 is the highest-performance interface listed.

Exam trap

The trap here is confusing form factor with interface — candidates may assume any M.2 drive is NVMe, but M.2 slots can also run SATA, so the correct answer hinges on the NVMe protocol, not the physical shape.

How to eliminate wrong answers

Option B is wrong because a SATA HDD is a spinning magnetic disk with mechanical seek latency and typical throughput under 200 MB/s — the slowest option for boot performance. Option C is wrong because although a SATA SSD is fast, it is bottlenecked by the SATA III interface at ~550 MB/s and cannot match NVMe's PCIe throughput. Option D is wrong because an external USB 3.0 HDD is both mechanical and constrained by the USB 3.0 bus (~5 Gbps theoretical, far less in practice) plus USB protocol overhead, making it unsuitable as a boot drive.

221
MCQeasy

A technician is installing a new network in a home office. The devices are spaced far apart, and the technician needs to make long runs of cable. Which of the following cable types is BEST suited for this scenario to minimize signal loss?

A.Cat5e UTP
B.Cat6 UTP
C.Coaxial cable
D.Fiber optic cable
AnswerD

Fiber optic cable carries data as light pulses, suffering far less attenuation and electromagnetic interference than copper over long distances. This makes it best suited to the far-apart devices and long cable runs, minimising the signal loss the scenario requires.

Why this answer

Fiber optic cable uses light pulses to transmit data, which is immune to electromagnetic interference and can carry signals over much longer distances (often kilometers) without significant attenuation. In a home office with long cable runs, fiber optic cable is the best choice to minimize signal loss compared to copper-based cables.

Exam trap

The trap here is that candidates often choose Cat6 UTP because it is a common, high-performance copper cable, overlooking the fact that all copper twisted-pair cables share the same 100-meter distance limitation and are not designed to minimize signal loss over very long runs.

How to eliminate wrong answers

Option A is wrong because Cat5e UTP is a copper twisted-pair cable that suffers from signal degradation (attenuation) over long runs, typically limited to 100 meters, and is more susceptible to EMI. Option B is wrong because Cat6 UTP, while offering higher bandwidth than Cat5e, still has the same 100-meter distance limitation for reliable signal integrity and is not designed for minimizing signal loss over extended distances. Option C is wrong because coaxial cable, though better shielded than UTP, still uses copper conductors and experiences signal loss over long runs, typically requiring amplifiers or repeaters beyond a few hundred feet, and is not optimized for modern high-speed data networks in a home office.

222
MCQmedium

A help desk technician must remove a program from a Windows 11 workstation because the user no longer has a license for it. The technician wants to use the graphical interface rather than command-line tools. Where should the technician go to uninstall the application?

A.File Explorer > This PC > Program Files
B.Settings > Apps > Installed apps
C.Task Manager > Startup tab
D.Control Panel > Device Manager
AnswerB

In Windows 11, Settings > Apps > Installed apps lists installed programs with an ellipsis menu that offers Uninstall for each entry. This is the supported graphical method for removing a licensed application from a workstation, and it triggers the vendor's uninstall routine, which cleans up registry entries and files associated with the program.

Why this answer

Windows 11 exposes application removal through Settings > Apps > Installed apps, which runs each program's registered uninstaller. Device Manager, Task Manager's Startup tab, and manual deletion in File Explorer all touch related areas but never execute the uninstall routine, so the licensed software would remain installed or leave orphaned components behind. The graphical requirement also rules out command-line removal tools.

Exam trap

The trap here is confusing disabling a program's startup entry with actually uninstalling the licensed application from the system.

223
Multi-Selecthard

A network administrator is designing a new office network. Which THREE factors should be considered when choosing between 2.4 GHz and 5 GHz Wi-Fi bands?

Select 3 answers
A.Cellular compatibility
B.Speed
C.Interference
D.Number of devices
E.Range
AnswersB, C, E

Speed differs by band: 5 GHz supports wider channels and higher throughput, while 2.4 GHz offers slower maximum data rates. This satisfies the scenario's requirement to weigh throughput when choosing a band for the office network, alongside range and interference considerations.

Why this answer

Option B (Speed) is correct because the 5 GHz band offers wider channels (up to 80/160 MHz) and higher throughput than the narrower 2.4 GHz channels, making data rate a key decision factor. Option C (Interference) is correct because 2.4 GHz is crowded by overlapping channels, Bluetooth, microwaves, and neighboring APs, while 5 GHz has many more non-overlapping channels and thus less interference. Option E (Range) is correct because 2.4 GHz signals penetrate walls and travel farther due to longer wavelengths, whereas 5 GHz has shorter range, so coverage requirements must guide band selection.

Option A (Cellular compatibility) is not a Wi-Fi band selection factor since cellular operates on licensed spectrum independent of 2.4/5 GHz WLAN design. Option D (Number of devices) is not a direct differentiator between the bands, as client capacity depends more on AP density, channel width, and airtime than on the band itself.

Exam trap

FC0-U71 often tests whether candidates can distinguish band characteristics from unrelated networking factors — cellular compatibility and device count are distractors that sound plausible but do not define the 2.4 vs 5 GHz trade-off.

224
MCQmedium

A developer writes code in Python and runs it without compiling. This is an example of which type of language?

A.Compiled language
B.Scripting language
C.Markup language
D.Query language
AnswerB

Python code here executes directly by an interpreter at runtime, with no separate compilation step producing machine code. That interpreted, run-as-written execution model is precisely what defines a scripting language, satisfying the stem's stated constraint.

Why this answer

A scripting language is executed by an interpreter at runtime rather than being compiled into machine code ahead of time. Python is a classic example: the developer writes code and runs it directly, with the Python interpreter executing it line by line (or via bytecode compilation internally). This contrasts with compiled languages like C or Go, which require a build step.

Exam trap

The trap is assuming Python is compiled because it produces .pyc files — but the defining characteristic for the exam is that the developer runs the code without a separate compilation step, which makes it a scripting language.

How to eliminate wrong answers

Option A is wrong because compiled languages (e.g., C, C++, Go, Rust) require a compiler to translate source code into an executable before it can run. Option C is wrong because markup languages (e.g., HTML, XML) describe the structure and presentation of data; they are not executed as programs. Option D is wrong because query languages (e.g., SQL) are used to retrieve and manipulate data in databases, not to write general-purpose programs.

225
Multi-Selectmedium

A technician is helping a small office set up basic physical security for its server closet. Which TWO of the following are physical security controls that would protect the equipment in the closet? (Choose two.)

Select 2 answers
A.Mounting a security camera aimed at the closet entrance.
B.Installing a lockable door with a keypad entry on the server closet.
C.Enabling full-disk encryption on the servers' storage drives.
D.Configuring a firewall rule to block inbound traffic to the servers.
E.Requiring complex passwords for the server administrator accounts.
AnswersA, B

A security camera is a physical control that deters intruders and records activity for later investigation. It supports monitoring of who enters the closet and can capture evidence if equipment is tampered with. While it does not block entry by itself, it is a recognized physical security measure that helps protect the equipment in this scenario.

Why this answer

Physical security controls focus on the tangible environment and who can reach the equipment. A locked, keypad-controlled door and a monitoring camera both restrict or record physical access to the server closet. The other choices are logical or technical controls that protect data and accounts but do not prevent someone from physically touching, unplugging, or removing the servers.

Exam trap

The trap here is mixing logical controls such as encryption, firewalls, and passwords into a question that specifically asks about physical protection of equipment.

Page 2

Page 3 of 14

Page 4