CREST CPSA (Practitioner Security Analyst)

Unix Security Assessment

22 practice questions with explanations — 15 free to try

1 of these 22 questions are in the free 15-question taster · the full topic is part of Premium

PassNova has 22 CREST CPSA (Practitioner Security Analyst) practice questions on Unix Security Assessment, each with a clear explanation. A 15-question taster is free with no sign-up; the full bank is part of PassNova Premium. Updated for 2026.

Sample questions

Unix Security Assessment: example questions & answers

1 worked example with answers and explanations below. Try 15 CREST CPSA (Practitioner Security Analyst) questions free in the browser; the full 22-question Unix Security Assessment bank is part of PassNova Premium.

  1. A tester connects to the finger service on a Unix host. What kind of information is the finger daemon designed to return?

    • AA packet capture of all traffic the host has recently sent
    • BThe full firewall rule base configured on the host
    • CUser details such as login name, home directory, last login and any plan file✓
    • DThe root password hash from the shadow file for each account that is held on the local system in this case

    Answer: The finger daemon returns account information such as the login name, real name, home directory, shell, last login and the contents of a user's plan file, which aids username enumeration. It does not return password hashes, firewall rules, or packet captures.

Start practising Unix Security Assessment →