Câu 106: CAS-005: CompTIA SecurityX
During a security assessment using an EDR solution, a security engineer generates the following report about the assets in the system: After five days, the EDR console reports a blocked infection on the host 0WIN23 by a remote access Trojan. Which of the following most likely enabled the attempted infection?
Nội dung câu hỏi
During a security assessment using an EDR solution, a security engineer generates the following report about the assets in the system: After five days, the EDR console reports a blocked infection on the host 0WIN23 by a remote access Trojan. Which of the following most likely enabled the attempted infection?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. 0WIN23 uses a legacy version of Windows that is not supported by the EDR.
- B. LN002 was not supported by the EDR solution and propagates the RAT.
- C. 0WIN29’s EDR has an unknown vulnerability that was exploited by the attacker. — đáp án hiện tại
- D. MAC005 spreads the malware through other hosts in the network.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.