this is a tricky question because detect would still ensure that should a malicious file come via this typical process, you have some alert/safeguard...so it's technically not wrong to do. I would lean more towards B. allow because you probably dont want to get a bunch of detections about it still.
B - why would you want it to still raise a detection if its a false positive?
upvoted 1 times
...
This section is not available anymore. Please use the main Exam Page.CCFA Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
aN0omY
1 week, 4 days agoalashi
1 month ago