CS0-002 Exam Question 181

A new vanant of malware is spreading on ihe company network using TCP 443 to contact its command-and-control server The domain name used for callback continues to change, and the analyst is unable to predict future domain name variance Which of the following actions should the analyst take to stop malicious communications with the LEAST disruption to service?
  • CS0-002 Exam Question 182

    A security analyst needs to assess the web server versions on a list of hosts to determine which are running a vulnerable version of the software and output that list into an XML file named webserverlist.xml. The host list is provided in a file named webserverlist.txt. Which of the following Nmap commands would BEST accomplish this goal?
  • CS0-002 Exam Question 183

    A cybersecurity analyst needs to determine whether a large file named access log from a web server contains the following loC:
    ../../../../bin/bash
    Which of the following commands can be used to determine if the string is present in the log?
  • CS0-002 Exam Question 184

    A company stores all of its data in the cloud. All company-owned laptops are currently unmanaged, and all users have administrative rights. The security team is having difficulty identifying a way to secure the environment. Which of the following would be the BEST method to protect the company's data?