Question 56
Refer to the exhibit.

An engineer received an event log file to review. Which technology generated the log?

An engineer received an event log file to review. Which technology generated the log?
Question 57
Drag and drop the definition from the left onto the phase on the right to classify intrusion events according to the Cyber Kill Chain model.


Question 58

Refer to the exhibit. Which application protocol is in this PCAP file?
Question 59
Refer to the exhibit.

Which technology generates this log?

Which technology generates this log?
Question 60
An analyst is investigating a host in the network that appears to be communicating to a command and control server on the Internet. After collecting this packet capture, the analyst cannot determine the technique and payload used for the communication.

Which obfuscation technique is the attacker using?

Which obfuscation technique is the attacker using?


