Question 81

A company frequently expenences issues with credential stuffing attacks Which of the following is the BEST control to help prevent these attacks from being successful?
  • Question 82

    Which of the following describes why it is important to include scope within the rules of engagement of a penetration test?
  • Question 83

    The help desk provided a security analyst with a screenshot of a user's desktop:

    For which of the following is aircrack-ng being used?
  • Question 84

    Ann, a user, reports to the security team that her browser began redirecting her to random sites while using her Windows laptop. Ann further reports that the OS shows the C: drive is out of space despite having plenty of space recently. Ann claims she not downloaded anything. The security team obtains the laptop and begins to investigate, noting the following:
    * File access auditing is turned off.
    * When clearing up disk space to make the laptop functional, files that appear to be cached web pages are immediately created in a temporary directory, filling up the available drive space.
    * All processes running appear to be legitimate processes for this user and machine.
    * Network traffic spikes when the space is cleared on the laptop.
    * No browser is open.
    Which of the following initial actions and tools would provide the BEST approach to determining what is happening?
  • Question 85

    When investigating a report of a system compromise, a security analyst views the following /var/log/secure log file:

    Which of the following can the analyst conclude from viewing the log file?