Question 426
What kind of detection technique is being used in antivirus software that identifies malware by collecting data from multiple protected systems and instead of analyzing files locally it ' s made on the provider ' s environment?
Question 427
During an architecture review at a fintech startup in Singapore, cloud security engineer Arjun Mehta analyzed how different teams were consuming cloud resources. The infrastructure team was provisioning virtual machines, storage, and networking components while retaining full control over operating systems and installed applications. Meanwhile, the development team was using a managed environment to build and deploy applications without handling the underlying infrastructure, and the business team accessed a fully functional CRM application through a web browser without managing any backend components.
From the available cloud service models, determine the classification that correctly represents these service types in order of increasing abstraction from infrastructure control.
From the available cloud service models, determine the classification that correctly represents these service types in order of increasing abstraction from infrastructure control.
Question 428
As the cybersecurity lead for an international news agency, you are alerted by your threat intelligence team that confidential communications between journalists and whistleblowers have been posted to an online activist forum. Further forensic analysis reveals that no financial transactions were tampered with, and no ransomware was deployed. However, the agency's internal systems were accessed and selectively leaked emails were published alongside a manifesto accusing the organization of biased reporting. The attackers also posted on social media claiming responsibility and justifying their actions as a fight against misinformation. Based on this behavior, what category of hacker are you most likely dealing with?
Question 429
At a digital marketing firm in Atlanta, Georgia, employees began reporting that access to a widely used cloud collaboration portal was intermittently redirecting them to a counterfeit interface hosted on an unfamiliar IP address. Security engineers observed that when multiple users across different departments attempted to access the legitimate domain, they consistently received the same incorrect IP resolution. The anomalous behavior persisted across sessions and affected numerous internal clients until the organization's name resolution service was restarted, after which normal resolution resumed. What DNS manipulation technique best explains this scenario?
Question 430
Dr. Evelyn Reed, a cybersecurity expert, was called in to investigate a series of unusual activities at "Global Innovations Inc." The first red flag was a surge in spear-phishing emails targeting senior management, disguised as urgent internal memos. Soon after, the company's web server showed unexpected outbound traffic to unfamiliar IP addresses. A network audit revealed that multiple underutilized printers and routers had unauthorized firmware installed. Further review uncovered inconsistencies in file access logs linked to the R&D department, including unusually large data transfers occurring during non-business hours. Dr. Reed also noted the attackers appeared to have intimate knowledge of the organization's internal data structure.
Which phase of the Advanced Persistent Threat (APT) lifecycle is Global Innovations Inc. most likely experiencing, given the combination of these incidents?
Which phase of the Advanced Persistent Threat (APT) lifecycle is Global Innovations Inc. most likely experiencing, given the combination of these incidents?
