ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 409 - CAS-004 discussion

Report
Export

A security engineer is concerned about the threat of side-channel attacks The company experienced a past attack that degraded parts of a SCADA system, causing a fluctuation to 20,000rpm from its normal operating range As a result, the part deteriorated more quickly than the mean time to failure A further investigation revealed the attacker was able to determine the acceptable rpm range, and the malware would then fluctuate the rpm until the pan failed Which of the following solutions would be best to prevent a side-channel attack in the future?

A.
Installing online hardware sensors
Answers
A.
Installing online hardware sensors
B.
Air gapping important ICS and machines
Answers
B.
Air gapping important ICS and machines
C.
Implementing a HIDS
Answers
C.
Implementing a HIDS
D.
Installing a SIEM agent on the endpoint
Answers
D.
Installing a SIEM agent on the endpoint
Suggested answer: B

Explanation:

Air gapping, which means physically isolating a secure network from unsecured networks, including the public internet, is one of the most effective ways to prevent side-channel attacks. By creating an air gap, you remove the pathways that an attacker might exploit to gain unauthorized access to sensitive systems and manipulate them, as in the case of the SCADA system mentioned.

asked 02/10/2024
Gary Cox
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first