CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 118: 312-49V10: Computer Hacking Forensic Investigator

You are an information security analyst at a large pharmaceutical company. While performing a routine review of audit logs, you have noticed a significant amount of egress traffic to various IP addresses on destination port 22 during off-peak hours. You researched some of the IP addresses and found that many of them a…

Nội dung câu hỏi

You are an information security analyst at a large pharmaceutical company. While performing a routine review of audit logs, you have noticed a significant amount of egress traffic to various IP addresses on destination port 22 during off-peak hours. You researched some of the IP addresses and found that many of them are in Eastern Europe. What is the most likely cause of this traffic?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. The organization's primary internal DNS server has been compromised and is performing DNS zone transfers to malicious external entities
  2. B. Data is being exfiltrated by an advanced persistent threat (APT) — đáp án hiện tại
  3. C. Malicious software on internal system is downloading research data from partner SFTP servers in Eastern Europe
  4. D. Internal systems are downloading automatic Windows updates

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề