List of questions
Related questions
Question 6 - CS0-003 discussion
A systems administrator is reviewing after-hours traffic flows from data-center servers and sees regular outgoing HTTPS connections from one of the servers to a public IP address. The server should not be making outgoing connections after hours. Looking closer, the administrator sees this traffic pattern around the clock during work hours as well. Which of the following is the most likely explanation?
A.
C2 beaconing activity
B.
Data exfiltration
C.
Anomalous activity on unexpected ports
D.
Network host IP address scanning
E.
A rogue network device
Your answer:
0 comments
Sorted by
Leave a comment first