Which action helps mitigate exploits by limiting running services on a computer?

Prepare for the NOCTI Cybersecurity Certification Exam. Enhance your skills with quizzes and multiple-choice questions, accompanied by explanations and hints. Ace your certification!

Multiple Choice

Which action helps mitigate exploits by limiting running services on a computer?

Explanation:
Reducing the number of running services lowers the attack surface. Each service that runs on a computer can have vulnerabilities, open ports, and misconfigurations that attackers could exploit. By disabling non-essential services, you limit the potential entry points, simplify monitoring, and reduce the amount of patching required, while keeping only what’s necessary for the system’s role. This approach prevents unnecessary services from being discovered or abused, making the system more secure with fewer potential weak points. Enabling all services would increase the attack surface and give attackers more targets. Installing more software adds even more code, dependencies, and services to secure and maintain. Increasing the number of user accounts adds management complexity and credential risk but does not directly reduce the exposure caused by running services.

Reducing the number of running services lowers the attack surface. Each service that runs on a computer can have vulnerabilities, open ports, and misconfigurations that attackers could exploit. By disabling non-essential services, you limit the potential entry points, simplify monitoring, and reduce the amount of patching required, while keeping only what’s necessary for the system’s role. This approach prevents unnecessary services from being discovered or abused, making the system more secure with fewer potential weak points.

Enabling all services would increase the attack surface and give attackers more targets. Installing more software adds even more code, dependencies, and services to secure and maintain. Increasing the number of user accounts adds management complexity and credential risk but does not directly reduce the exposure caused by running services.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy