ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 249 - CAS-004 discussion

Report
Export

A security administrator has been tasked with hardening a domain controller against lateral movement attacks. Below is an output of running services:

Which of the following configuration changes must be made to complete this task?

A.
Stop the Print Spooler service and set the startup type to disabled.
Answers
A.
Stop the Print Spooler service and set the startup type to disabled.
B.
Stop the DNS Server service and set the startup type to disabled.
Answers
B.
Stop the DNS Server service and set the startup type to disabled.
C.
Stop the Active Directory Web Services service and set the startup type to disabled.
Answers
C.
Stop the Active Directory Web Services service and set the startup type to disabled.
D.
Stop Credential Manager service and leave the startup type to disabled.
Answers
D.
Stop Credential Manager service and leave the startup type to disabled.
Suggested answer: A

Explanation:

Stopping the Print Spooler service and setting the startup type to disabled is the best configuration change to harden a domain controller against lateral movement attacks. The Print Spooler service has been known to be vulnerable to remote code execution exploits that can allow attackers to gain access to domain controllers and other sensitive machines. Disabling this service can reduce the attack surface and prevent exploitation attempts.

asked 02/10/2024
Panayiotis Markatos
51 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first