200-201 Exam Question 131

Which type of evidence supports a theory or an assumption that results from initial evidence?
  • 200-201 Exam Question 132

    Which category relates to improper use or disclosure of PII data?
  • 200-201 Exam Question 133

    An intruder attempted malicious activity and exchanged emails with a user and received corporate information, including email distribution lists. The intruder asked the user to engage with a link in an email.
    When the fink launched, it infected machines and the intruder was able to access the corporate network.
    Which testing method did the intruder use?
  • 200-201 Exam Question 134

    A security engineer notices confidential data being exfiltrated to a domain "Ranso4134-mware31-895" address that is attributed to a known advanced persistent threat group The engineer discovers that the activity is part of a real attack and not a network misconfiguration. Which category does this event fall under as defined in the Cyber Kill Chain?
  • 200-201 Exam Question 135

    At which layer is deep packet inspection investigated on a firewall?