CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 6: SPLK-5002: Splunk Certified Cybersecurity Defense Engineer

Which of the following detections would use a high count of events with Windows Event Code 4740 grouped by a user to determine suspicious behavior?

Nội dung câu hỏi

Which of the following detections would use a high count of events with Windows Event Code 4740 grouped by a user to determine suspicious behavior?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Detect Excessive User Logins
  2. B. Detect Excessive AWS Security Scanning
  3. C. Detect Excessive Network Connections
  4. D. Detect Excessive User Account Lockouts — đáp án hiện tại

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề