200-201 Exam Question 201

What does cyber attribution identity in an investigation?
  • 200-201 Exam Question 202

    A network engineer noticed in the NetFlow report that internal hosts are sending many DNS requests to external DNS servers A SOC analyst checked the endpoints and discovered that they are infected and became part of the botnet Endpoints are sending multiple DNS requests but with spoofed IP addresses of valid external sources What kind of attack are infected endpoints involved in1?
  • 200-201 Exam Question 203

    A company receptionist received a threatening call referencing stealing assets and did not take any action assuming it was a social engineering attempt. Within 48 hours, multiple assets were breached, affecting the confidentiality of sensitive information. What is the threat actor in this incident?
  • 200-201 Exam Question 204

    Refer to the exhibit.

    Drag and drop the element name from the left onto the correct piece of the PCAP file on the right.

    200-201 Exam Question 205

    What is personally identifiable information that must be safeguarded from unauthorized access?