Question 76

An attacker is attempting, to harvest user credentials on a client's website. A security analyst notices multiple attempts of random usernames and passwords. When the analyst types in a random username and password. the logon screen displays the following message:
Which of the following should the analyst recommend be enabled?
  • Question 77

    A security analyst has been asked to investigate a situation after the SOC started to receive alerts from the SIEM. The analyst first looks at the domain controller and finds the following events:

    To better understand what is going on, the analyst runs a command and receives the following output:

    Based on the analyst's findings, which of the following attacks is being executed?
  • Question 78

    A dynamic application vulnerability scan identified code injection could be performed using a web form.
    Which of the following will be BEST remediation to prevent this vulnerability?
  • Question 79

    A junior security analyst is conducting an analysis after passwords were changed on multiple accounts without users' interaction. The SIEM have multiple login entries with the following text:

    Which of the following is the MOST likely attack conducted on the environment?
  • Question 80

    A security engineer needs to create a network segment that can be used for servers that require connections from untrusted networks When of the following should the engineer implement?