Câu 35: CS0-001: CompTIA CySA+ Certification Exam
An administrator has been investigating the way in which an actor had been exfiltrating confidential data from a web server to a foreign host. After a thorough forensic review, the administrator determined the server's BIOS had been modified by rootkit installation. After removing the rootkit and flashing the BIOS to…
Nội dung câu hỏi
An administrator has been investigating the way in which an actor had been exfiltrating confidential data from a web server to a foreign host. After a thorough forensic review, the administrator determined the server's BIOS had been modified by rootkit installation. After removing the rootkit and flashing the BIOS to a known good state, which of the following would BEST protect against future adversary access to the BIOS, in case another rootkit is installed?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Anti-malware application
- B. Host-based IDS
- C. TPM data sealing — đáp án hiện tại
- D. File integrity monitoring
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.