CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 16: 350-201: Performing CyberOps Using Core Security Technologies (CBRCOR)

A threat actor used a phishing email to deliver a file with an embedded macro. The file was opened, and a remote code execution attack occurred in a company's infrastructure. Which steps should an engineer take at the recovery stage?

Nội dung câu hỏi

A threat actor used a phishing email to deliver a file with an embedded macro. The file was opened, and a remote code execution attack occurred in a company's infrastructure. Which steps should an engineer take at the recovery stage?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Determine the systems involved and deploy available patches — đáp án hiện tại
  2. B. Analyze event logs and restrict network access
  3. C. Review access lists and require users to increase password complexity
  4. D. Identify the attack vector and update the IDS signature list

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề