200-201 Exam Question 131
Which type of evidence supports a theory or an assumption that results from initial evidence?
200-201 Exam Question 132
Which category relates to improper use or disclosure of PII data?
200-201 Exam Question 133
An intruder attempted malicious activity and exchanged emails with a user and received corporate information, including email distribution lists. The intruder asked the user to engage with a link in an email.
When the fink launched, it infected machines and the intruder was able to access the corporate network.
Which testing method did the intruder use?
When the fink launched, it infected machines and the intruder was able to access the corporate network.
Which testing method did the intruder use?
200-201 Exam Question 134
A security engineer notices confidential data being exfiltrated to a domain "Ranso4134-mware31-895" address that is attributed to a known advanced persistent threat group The engineer discovers that the activity is part of a real attack and not a network misconfiguration. Which category does this event fall under as defined in the Cyber Kill Chain?
200-201 Exam Question 135
At which layer is deep packet inspection investigated on a firewall?
