exam questions

Exam CS0-002 All Questions

View all questions & answers for the CS0-002 exam

Exam CS0-002 topic 1 question 356 discussion

Actual exam question from CompTIA's CS0-002
Question #: 356
Topic #: 1
[All CS0-002 Questions]

A cybersecurity analyst is concerned about attacks that use advanced evasion techniques. Which of the following would best mitigate such attacks?

  • A. Keeping IPS rules up to date
  • B. Installing a proxy server
  • C. Applying network segmentation
  • D. Updating the antivirus software
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
grelaman
Highly Voted 1 year, 8 months ago
Selected Answer: C
This article is intersting because explains how ineffective are A. B. and D againts AET. https://securitywing.com/how-to-protect-networks-against-advanced-evasion-techniques/ AETs are methods used by attackers to bypass traditional security measures such as firewalls, intrusion prevention systems (IPS), and antivirus software. So network segmentation is the best and effective way to mitigate advanced evasion techniques, which are designed to bypass traditional security measures
upvoted 5 times
SecurityGuyPP
1 year, 6 months ago
I agree with this. At first, I was picking A, but then C seems like the better answer since AETs make traditional prevention like IPS, antivirus, and proxy become useless.
upvoted 1 times
...
...
novolyus
Most Recent 1 year, 6 months ago
Selected Answer: C
Advanced means will fck your IPS rules.
upvoted 1 times
...
Anaser
1 year, 9 months ago
Option C, "Applying network segmentation," would be the best option for mitigating attacks that use advanced evasion techniques out of the options given. Such attacks are typically mitigated by a combination of security measures.
upvoted 1 times
...
Aliyan
1 year, 10 months ago
Selected Answer: B
Keeping IPS (Intrusion Prevention System) rules up to date: This is important for maintaining security, but it focuses on identifying known attack patterns. Advanced evasion techniques often involve modifying or disguising traffic to evade signature-based detection, which might not be fully addressed by just updating IPS rules.
upvoted 1 times
Aliyan
1 year, 10 months ago
Installing a proxy server, on the other hand, can actively analyze and filter traffic, which makes it better suited for detecting and countering advanced evasion techniques that aim to bypass traditional security measures. It provides an additional layer of inspection and control over the traffic, helping to identify and block potentially malicious activities regardless of their evasion tactics.
upvoted 1 times
...
...
karpal
1 year, 11 months ago
From all technologies mentioned IPS would be the best to mitigate these advanced evasion attacks . IPS these days is included also in NGFW products. I am also thinking about Proxy as from the answers looks like is a completely new security control and would be defense in depth type of approach - I add new security controls, maybe from diffrent vendors. 70% towards A, 30% towards B
upvoted 3 times
...
KateVen
2 years ago
Selected Answer: A
Answer A
upvoted 1 times
...
Hershey2025
2 years ago
Answer A seems to be the best choice
upvoted 1 times
...
CyberCEH
2 years ago
Answer A
upvoted 1 times
...
ShareAnswers
2 years ago
this was on question on EXAM
upvoted 4 times
...
ExamTopic147
2 years, 1 month ago
Selected Answer: B
dumb question
upvoted 3 times
ZUL01
2 years ago
Why b?
upvoted 4 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...