CS0-003 Exam Question 21

An incident response analyst is investigating the root cause of a recent malware outbreak. Initial binary analysis indicates that this malware disables host security services and performs cleanup routines on it infected hosts, including deletion of initial dropper and removal of event log entries and prefetch files from the host. Which of the following data sources would most likely reveal evidence of the root cause?
(Select two).
  • CS0-003 Exam Question 22

    A security manager is looking at a third-party vulnerability metric (SMITTEN) to improve upon the company
    ' s current method that relies on CVSSv3. Given the following:

    Which of the following vulnerabilities should be prioritized?
  • CS0-003 Exam Question 23

    A security analyst needs to mitigate a known, exploited vulnerability related not tack vector that embeds software through the USB interface. Which of the following should the analyst do first?
  • CS0-003 Exam Question 24

    After conducting a cybersecurity risk assessment for a new software request, a Chief Information Security Officer (CISO) decided the risk score would be too high. The CISO refused the software request. Which of the following risk management principles did the CISO select?
  • CS0-003 Exam Question 25

    A security audit for unsecured network services was conducted, and the following output was generated:

    Which of the following services should the security team investigate further? (Select two).