Question 121

Which HTTP header field is used in forensics to identify the type of browser used?
  • Question 122

    Refer to the exhibit.

    What does the message indicate?
  • Question 123

    A SOC analyst is investigating an incident that involves a Linux system that is identifying specific sessions.
    Which identifier tracks an active program?
  • Question 124

    Refer to the exhibit.

    Drag and drop the element name from the left onto the correct piece of the PCAP file on the right.

    Question 125

    An intruder attempted malicious activity and exchanged emails with a user and received corporate information, including email distribution lists. The intruder asked the user to engage with a link in an email. When the fink launched, it infected machines and the intruder was able to access the corporate network.
    Which testing method did the intruder use?