exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 479 discussion

Actual exam question from CompTIA's SY0-601
Question #: 479
Topic #: 1
[All SY0-601 Questions]

A security operations center wants to implement a solution that can execute files to test for malicious activity. The solution should provide a report of the files' activity against known threats. Which of the following should the security operations center implement?

  • A. the Harvester
  • B. Nessus
  • C. Cuckoo
  • D. Sn1per
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
HiyaGeorgie
Highly Voted 2 years ago
Passed my exam AMA
upvoted 18 times
...
ApplebeesWaiter1122
Highly Voted 2 years, 1 month ago
Selected Answer: C
C, Cuckoo, is the best choice because it is an open-source automated malware analysis system designed to test files in a safe environment and provide a detailed report of their behavior and characteristics. It uses various techniques, including static and dynamic analysis, to detect malware and is capable of emulating different operating systems and architectures. Options A, B, and D, on the other hand, are not specifically designed for this purpose. The Harvester is a tool for collecting information and email addresses, Nessus is a vulnerability scanner, and Sn1per is a penetration testing framework.
upvoted 10 times
...
cyberPunk28
Most Recent 1 year, 6 months ago
Selected Answer: C
C. Cuckoo
upvoted 1 times
...
Gamsje
1 year, 11 months ago
Selected Answer: C
Cuckoo is a sandbox that can run programs and identify any malware. The virtualized environment supports Windows Linux, Mac OS, and Android. Perform API calls Identify network traffic Memory analysis C. Cuckoo
upvoted 2 times
...
fouserd
2 years, 1 month ago
Selected Answer: C
A Cuckoo Sandbox is an open-source tool that can be used to automatically analyze malware. It is used to launch malware in a secure and isolated environment, fooling the malware into thinking it has infected a genuine host. The sandbox will then record the activity of the malware and generate a report on what the malware has attempted to do while in this secure environment
upvoted 4 times
...
mouettespaghetti
2 years, 2 months ago
-C is correct The solution that the security operations center should implement is Cuckoo. Cuckoo is a malware analysis system that can execute files in a sandbox environment to test for malicious activity. It provides a detailed report of the files' activity, including any communications with external systems, file modifications, and system changes. The report also includes information about the file's behavior against known threats, which can help security analysts determine if the file is malicious.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...