CS0-003 Exam Question 146

A company receives a penetration test report summary from a third party. The report summary indicates a proxy has some patches that need to be applied. The proxy is sitting in a rack and is not being used, as the company has replaced it with a new one. The CVE score of the vulnerability on the proxy is a 9.8.
Which of the following best practices should the company follow with this proxy?
  • CS0-003 Exam Question 147

    A network security analyst for a large company noticed unusual network activity on a critical system. Which of the following tools should the analyst use to analyze network traffic to search for malicious activity?
  • CS0-003 Exam Question 148

    A systems administrator notices unfamiliar directory names on a production server. The administrator reviews the directory listings and files, and then concludes the server has been compromised. Which of the following steps should the administrator take next?
  • CS0-003 Exam Question 149

    An organization receives a legal hold request from an attorney. The request pertains to emails related to a disputed vendor contract. Which of the following is the first step for the security team to take to ensure compliance with the request?
  • CS0-003 Exam Question 150

    During a security test, a security analyst found a critical application with a buffer overflow vulnerability.
    Which of the following would be best to mitigate the vulnerability at the application level?