Question 136

A senior security engineer flags me following log file snippet as hawing likely facilitated an attacker's lateral movement in a recent breach:

Which of the following solutions, if implemented, would mitigate the nsk of this issue reoccurnnp?
  • Question 137

    A security engineer needs to ensure production containers are automatically scanned for vulnerabilities before they are accepted into the production environment. Which of the following should the engineer use to automatically incorporate vulnerability scanning on every commit?
  • Question 138

    A global company with a remote workforce implemented a new VPN solution. After deploying the VPN solution to several hundred users, the help desk starts receiving reports of slow access to both internally and externally available applications. A security analyst reviews the following:
    VPN client routing:
    0.0.0.0/0 eth1
    Which of the following solutions should the analyst use to fix this issue?
  • Question 139

    After a penetration test on the internal network, the following report was generated:
    Attack Target Result
    Compromised host ADMIN01S.CORP.LOCAL Successful
    Hash collected KRBTGT.CORP.LOCAL Successful
    Hash collected SQLSV.CORP.LOCAL Successful
    Pass the hash SQLSV.CORP.LOCAL Failed
    Domain control CORP.LOCAL Successful
    Which of the following should be recommended to remediate the attack?
  • Question 140

    A developer makes a small change to a resource allocation module on a popular social media website and causes a memory leak. During a peak utilization period, several web servers crash, causing the website to go offline. Which of the following testing techniques is the most efficient way to prevent this from reoccurring?