Câu 40: SPLK-5001: Splunk Certified Cybersecurity Defense Analyst
A threat hunter generates a report containing the list of users who have logged in to a particular database during the last 6 months, along with the number of times they have each authenticated. They sort this list and remove any user names who have logged in more than 6 times. The remaining names represent the users…
Nội dung câu hỏi
A threat hunter generates a report containing the list of users who have logged in to a particular database during the last 6 months, along with the number of times they have each authenticated. They sort this list and remove any user names who have logged in more than 6 times. The remaining names represent the users who rarely log in, as their activity is more suspicious. The hunter examines each of these rare logins in detail. This is an example of what type of threat-hunting technique?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Least Frequency of Occurrence Analysis — đáp án hiện tại
- B. Co-Occurrence Analysis
- C. Time Series Analysis
- D. Outlier Frequency Analysis
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.