Question 6

Which file in Linux contains information about previous boot messages?
Response:
  • Question 7

    When monitoring network traffic, which two protocols should be scrutinized for signs of data exfiltration?
    (Choose Two)
    Response:
  • Question 8

    When investigating a Windows server, which event IDs indicate a user account was created, deleted, and changed?
    (Choose Three)
    Response:
  • Question 9

    What is the significance of analyzing packet payloads in network traffic?
    Response:
  • Question 10

    Which steps can help improve Blue Team operational efficiency?
    (Choose Two)
    Response: