ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 389 - CAS-004 discussion

Report
Export

A security analyst has been provided the following partial Snort IDS rule to review and add into the company's Snort IDS to identify a CVE:

Which of the following should the analyst recommend to mitigate this type of vulnerability?

A.
IPSec rules
Answers
A.
IPSec rules
B.
OS patching
Answers
B.
OS patching
C.
Two-factor authentication
Answers
C.
Two-factor authentication
D.
TCP wrappers
Answers
D.
TCP wrappers
Suggested answer: B

Explanation:

Regular operating system patching is critical to mitigating vulnerabilities. When a Snort IDS rule is provided to identify a CVE, it typically means there is a known vulnerability that can be exploited. Keeping systems updated with the latest patches helps to close off these vulnerabilities and protect against exploitation.

asked 02/10/2024
Wojciech Oleksiak
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first