CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 65: 312-50V10: Certified Ethical Hacker v10 Exam

An incident investigator asks to receive a copy of the event logs from all firewalls, proxy servers, and Intrusion Detection Systems (IDS) on the network of an organization that has experienced a possible breach of security. When the investigator attempts to correlate the information in all of the logs, the sequence o…

Nội dung câu hỏi

An incident investigator asks to receive a copy of the event logs from all firewalls, proxy servers, and Intrusion Detection Systems (IDS) on the network of an organization that has experienced a possible breach of security. When the investigator attempts to correlate the information in all of the logs, the sequence of many of the logged events do not match up. What is the most likely cause?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. The network devices are not all synchronized. — đáp án hiện tại
  2. B. Proper chain of custody was not observed while collecting the logs.
  3. C. The attacker altered or erased events from the logs.
  4. D. The security breach was a false positive.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề