CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 43: CS0-001: CompTIA CySA+ Certification Exam

During a routine review of firewall logs, an analyst identified that an IP address from the organization's server subnet had been connecting during nighttime hours to a foreign IP address, and had been sending between 150 and 500 megabytes of data each time. This had been going on for approximately one week, and the a…

Nội dung câu hỏi

During a routine review of firewall logs, an analyst identified that an IP address from the organization's server subnet had been connecting during nighttime hours to a foreign IP address, and had been sending between 150 and 500 megabytes of data each time. This had been going on for approximately one week, and the affected server was taken offline for forensic review. Which of the following is MOST likely to drive up the incident's impact assessment?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. PII of company employees and customers was exfiltrated. — đáp án hiện tại
  2. B. Raw financial information about the company was accessed.
  3. C. Forensic review of the server required fall-back on a less efficient service.
  4. D. IP addresses and other network-related configurations were exfiltrated.
  5. E. The local root password for the affected server was compromised.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề