Threats and Vulnerabilities

Part of the CompTIA Security+ SY0-701 Study Guide

This section covers Exam Objective 2 of the CompTIA Security+ SY0-701 exam. It explains the types of threat actors, attack vectors, vulnerabilities, and risks that cybersecurity professionals must understand and mitigate. attack vectors, vulnerabilities, and risks that cybersecurity professionals must understand and mitigate.

👥 Threat Actors & Motivations

🎯 Attack Surfaces & Vectors

The attack surface includes all points an attacker could exploit. Attack vectors are specific paths used to breach systems, such as:

⚠️ Software & Network Vulnerabilities

🎣 Lure-Based & Message-Based Vectors

🔗 Third-Party Risks

When relying on vendors or cloud providers, risks include:

🧠 Social Engineering Threats

📚 Additional Resources