200-201 Exam Question 76
Which attack method intercepts traffic on a switched network?
200-201 Exam Question 77
Refer to the exhibit.

During the analysis of a suspicious scanning activity incident, an analyst discovered multiple local TCP connection events Which technology provided these logs?

During the analysis of a suspicious scanning activity incident, an analyst discovered multiple local TCP connection events Which technology provided these logs?
200-201 Exam Question 78
A company encountered a breach on its web servers using IIS 7 5 Dunng the investigation, an engineer discovered that an attacker read and altered the data on a secure communication using TLS 1 2 and intercepted sensitive information by downgrading a connection to export-grade cryptography. The engineer must mitigate similar incidents in the future and ensure that clients and servers always negotiate with the most secure protocol versions and cryptographic parameters. Which action does the engineer recommend?
200-201 Exam Question 79
An investigator is examining a copy of an ISO file that is stored in CDFS format. What type of evidence is this file?
200-201 Exam Question 80
Refer to the exhibit.

Which event is occurring?

Which event is occurring?
