Câu 22: CAS-003: CompTIA Advanced Security Practitioner (CASP) CAS-003
A forensics analyst suspects that a breach has occurred. Security logs show the company's OS patch system may be compromised, and it is serving patches that contain a zero-day exploit and backdoor. The analyst extracts an executable file from a packet capture of communication between a client computer and the patch se…
Nội dung câu hỏi
A forensics analyst suspects that a breach has occurred. Security logs show the company's OS patch system may be compromised, and it is serving patches that contain a zero-day exploit and backdoor. The analyst extracts an executable file from a packet capture of communication between a client computer and the patch server. Which of the following should the analyst use to confirm this suspicion?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. File size
- B. Digital signature — đáp án hiện tại
- C. Checksums
- D. Anti-malware software
- E. Sandboxing
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.