200-201 Exam Question 66

According to the September 2020 threat intelligence feeds a new malware called Egregor was introduced and used in many attacks. Distnbution of Egregor is pnmanly through a Cobalt Strike that has been installed on victim's workstations using RDP exploits Malware exfiltrates the victim's data to a command and control server. The data is used to force victims pay or lose it by publicly releasing it. Which type of attack is described?
  • 200-201 Exam Question 67

    Syslog collecting software is installed on the server For the log containment, a disk with FAT type partition is used An engineer determined that log files are being corrupted when the 4 GB tile size is exceeded. Which action resolves the issue?
  • 200-201 Exam Question 68

    Why should an engineer use a full packet capture to investigate a security breach?
  • 200-201 Exam Question 69

    According to the NIST SP 800-86. which two types of data are considered volatile? (Choose two.)
  • 200-201 Exam Question 70

    Which element is included in an incident response plan as stated m NIST SP800-617