List of questions
Related questions
Question 311 - 200-201 discussion
A network engineer noticed in the NetFlow report that internal hosts are sending many DNS requests to external DNS servers A SOC analyst checked the endpoints and discovered that they are infected and became part of the botnet Endpoints are sending multiple DNS requests but with spoofed IP addresses of valid external sources What kind of attack are infected endpoints involved in1?
A.
DNS hijacking
B.
DNS tunneling
C.
DNS flooding
D.
DNS amplification
Your answer:
0 comments
Sorted by
Leave a comment first