Câu 311: 312-50V13: Certified Ethical Hacker v13
As a cybersecurity professional in XYZ Corporation, you’ve been assigned to investigate an anomaly in the system logs that suggest possible unauthorized activities. The system administrators detected repeated failed login attempts on a critical server, followed by a sudden surge in outbound data traffic. These events,…
Nội dung câu hỏi
As a cybersecurity professional in XYZ Corporation, you’ve been assigned to investigate an anomaly in the system logs that suggest possible unauthorized activities. The system administrators detected repeated failed login attempts on a critical server, followed by a sudden surge in outbound data traffic. These events, while discrete, are raising concerns that the system may have been compromised. Given the high stakes and sophisticated nature of this potential security breach, what should be your initial course of action to manage this situation effectively?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Immediately alter the credentials of the server and notify all users to change their passwords.
- B. Immediately disconnect the suspicious server from the network to prevent further data exfiltration.
- C. Conduct real-time monitoring of the server, scrutinize the logs for unusual patterns, and identify the nature of the activities to devise an immediate countermeasure. — đáp án hiện tại
- D. Conduct a thorough audit of all outbound traffic and scrutinize the destination IPs to gain insights into the attacker’s network.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.