CS0-002 Exam Question 136

A security analyst is reviewing the following log from an email security service.

Which of the following BEST describes the reason why the email was blocked?
  • CS0-002 Exam Question 137

    A security analyst is looking at the headers of a few emails that appear to be targeting all users at an organization:


    Which of the following technologies would MOST likely be used to prevent this phishing attempt?
  • CS0-002 Exam Question 138

    A new vanant of malware is spreading on ihe company network using TCP 443 to contact its command-and-control server The domain name used for callback continues to change, and the analyst is unable to predict future domain name variance Which of the following actions should the analyst take to stop malicious communications with the LEAST disruption to service?
  • CS0-002 Exam Question 139

    A company's blocklist has outgrown the current technologies in place. The ACLs are at maximum, and the IPS signatures only allow a certain amount of space for domains to be added, creating the need for multiple signatures. Which of the following configuration changes to the existing controls would be the MOST appropriate to improve performance?
  • CS0-002 Exam Question 140

    A security analyst received a SIEM alert regarding high levels of memory consumption for a critical system. After several attempts to remediate the issue, the system went down. A root cause analysis revealed a bad actor forced the application to not reclaim memory. This caused the system to be depleted of resources.
    Which of the following BEST describes this attack?