exam questions

Exam CS0-001 All Questions

View all questions & answers for the CS0-001 exam

Exam CS0-001 topic 1 question 72 discussion

Actual exam question from CompTIA's CS0-001
Question #: 72
Topic #: 1
[All CS0-001 Questions]

A threat intelligence analyst who works for a technology firm received this report from a vendor.
"There has been an intellectual property theft campaign executed against organizations in the technology industry. Indicators for this activity are unique to each intrusion. The information that appears to be targeted is R&D data. The data exfiltration appears to occur over months via uniform TTPs. Please execute a defensive operation regarding this attack vector."
Which of the following combinations suggests how the threat should MOST likely be classified and the type of analysis that would be MOST helpful in protecting against this activity?

  • A. Polymorphic malware and secure code analysis
  • B. Insider threat and indicator analysis
  • C. APT and behavioral analysis
  • D. Ransomware and encryption
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
slcc99
Highly Voted 5 years, 1 month ago
This question was in the exam :)
upvoted 8 times
...
s3curity
Highly Voted 5 years, 5 months ago
I think this is apt?
upvoted 7 times
[Removed]
4 years, 7 months ago
When in doubt, APT
upvoted 2 times
...
...
Jeend
Most Recent 2 years, 4 months ago
exfiltration appears to occur over months via uniform TTPs.This is APT
upvoted 1 times
...
Acrisius
4 years, 5 months ago
Answer is C - Key phrase - "The data exfiltration appears to occur over months via uniform TTPs." Similar Q in 002
upvoted 3 times
...
T_rev93
5 years, 2 months ago
Again, 9/10 times when a security exam lists APTs as an answer choice its usually the correct one.
upvoted 5 times
...
VanDangle
5 years, 4 months ago
its over long periods of time in different organizations using using the same ttp (tacticts techniques procedures) definately APT
upvoted 6 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago