CS0-002 Exam Question 71

During an incident, a cybersecurity analyst found several entries in the web server logs that are related to an IP with a bad reputation . Which of the following would cause the analyst to further review the incident?
A)

B)

C)

D)

E)
  • CS0-002 Exam Question 72

    A security analyst reviews a recent network capture and notices encrypted inbound traffic on TCP port 465 was coming into the company's network from a database server. Which of the following will the security analyst MOST likely identify as the reason for the traffic on this port?
  • CS0-002 Exam Question 73

    An analyst is reviewing the following output:

    Which of the following was MOST likely used to discover this?
  • CS0-002 Exam Question 74

    A security analyst is reviewing vulnerability scan results and notices new workstations are being flagged as having outdated antivirus signatures. The analyst observes the following plugin output:
    Antivirus is installed on the remote host:
    Installation path: C:\Program Files\AVProduct\Win32\
    Product Engine: 14.12.101
    Engine Version: 3.5.71
    Scanner does not currently have information about AVProduct version 3.5.71. It may no longer be supported.
    The engine version is out of date. The oldest supported version from the vendor is 4.2.11.
    The analyst uses the vendor's website to confirm the oldest supported version is correct.
    Which of the following BEST describes the situation?
  • CS0-002 Exam Question 75

    Which of the following should a database administrator implement to BEST protect data from an untrusted server administrator?