ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 394 - CAS-004 discussion

Report
Export

A user forwarded a suspicious email to a security analyst for review. The analyst examined the email and found that neither the URL nor the attachment showed any indication of malicious activities. Which of the following intelligence collection methods should the analyst use to confirm the legitimacy of the email?

A.
HUMINT
Answers
A.
HUMINT
B.
UEBA
Answers
B.
UEBA
C.
OSINT
Answers
C.
OSINT
D.
RACE
Answers
D.
RACE
Suggested answer: C

Explanation:

Open-source intelligence (OSINT) refers to the collection and analysis of information that is gathered from public, or open, sources. In the context of confirming the legitimacy of an email, OSINT could involve checking online databases, public records, or using search engines to find information related to the email's domain, the sender, links included in the email, or file hashes of attachments. This method can help determine if the email is part of a known phishing campaign or if it has been flagged by others as suspicious.

asked 02/10/2024
Jennifer Lear
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first