During a malware-driven distributed denial of service attack, a security researcher found excessive requests to a name server referring to the same domain name and host name encoded in hexadecimal. The malware author used which type of command and control?
An unauthorized network scan may be detected by parsing network sniffer data for:
A secretary receives an email from a friend with a picture of a kitten in it. The secretary forwards it to the
~COMPANYWIDE mailing list and, shortly thereafter, users across the company receive the following message:
''You seem tense. Take a deep breath and relax!''
The incident response team is activated and opens the picture in a virtual machine to test it. After a short analysis, the following code is found in C:
\Temp\chill.exe:Powershell.exe --Command ''do {(for /L %i in (2,1,254) do shutdown /r /m Error! Hyperlink reference not valid.> /f /t / 0 (/c ''You seem tense. Take a deep breath and relax!'');Start-Sleep --s 900) } while(1)''
Which of the following BEST represents what the attacker was trying to accomplish?
The Key Reinstallation Attack (KRACK) vulnerability is specific to which types of devices? (Choose two.)
During a log review, an incident responder is attempting to process the proxy server's log files but finds that
they are too large to be opened by any file viewer. Which of the following is the MOST appropriate technique to open and analyze these log files?
