Question 101

During an investigation, an incident responder intends to recover multiple pieces of digital media.
Before removing the media, the responder should initiate:
  • Question 102

    The help desk provided a security analyst with a screenshot of a user's desktop:

    For which of the following is aircrack-ng being used?
  • Question 103

    A security analyst is performing a routine check on the SIEM logs related to the commands used by operators and detects several suspicious entries from different users.
    Which of the following would require immediate attention?
  • Question 104

    During a routine network scan, a security administrator discovered an unidentified service running on a new embedded and unmanaged HVAC controller, which is used to monitor the company's datacenter:

    The enterprise monitoring service requires SNMP and SNMPTRAP connectivity to operate.
    Which of the following should the security administrator implement to harden the system?
  • Question 105

    An analyst is detecting Linux machines on a Windows network. Which of the following tools should be used to detect a computer operating system?