200-201 Exam Question 66
According to the September 2020 threat intelligence feeds a new malware called Egregor was introduced and used in many attacks. Distnbution of Egregor is pnmanly through a Cobalt Strike that has been installed on victim's workstations using RDP exploits Malware exfiltrates the victim's data to a command and control server. The data is used to force victims pay or lose it by publicly releasing it. Which type of attack is described?
200-201 Exam Question 67
Syslog collecting software is installed on the server For the log containment, a disk with FAT type partition is used An engineer determined that log files are being corrupted when the 4 GB tile size is exceeded. Which action resolves the issue?
200-201 Exam Question 68
Why should an engineer use a full packet capture to investigate a security breach?
200-201 Exam Question 69
According to the NIST SP 800-86. which two types of data are considered volatile? (Choose two.)
200-201 Exam Question 70
Which element is included in an incident response plan as stated m NIST SP800-617
