Performance Based Question 04

Instructions: 

This Question has two Parts.

  • In Part One, select the appropriate type of attack to match the definition.
  • In Part Two, select the BEST remediation for each attack.

Not all attacks and remediation actions will be used.

Part One

Question 1 of 4

An attacker establishes a connection which allows remote commands to be executed.

Question 2 of 4

An attacker uses software to monitor a user's keyboard inputs to harvest credentials.

Question 3 of 4

An attacker installs software which allows for stealthy access that bypasses usual authentication systems.

Question 4 of 4

A self-propagating malware infection spreads across the network without user intervention.

Part Two

Question 1 of 4

A third-party developer is suspected of installing a secret backdoor in an internal application.

Question 2 of 4

An unknown person sends a large volume of TCP SYN packets from multiple source IPs to target the company's webserver, causing it to fail.

Question 3 of 4

The CISO has recently been the victim of phishing. The CISO's credentials were stolen and used to login.

Question 4 of 4

The WiFi network was recently compromised by an attacker who conducted privilege escalation. It uses the WPA protocol.