ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 112 - SY0-601 discussion

Report
Export

A backdoor was detected on the containerized application environment. The investigation detected that a zero-day vulnerability was introduced when the latest container image version was downloaded from a public registry. Which of the following is the BEST solution to prevent this type of incident from occurring again?

A.
Enforce the use of a controlled trusted source of container images
Answers
A.
Enforce the use of a controlled trusted source of container images
B.
Deploy an IPS solution capable of detecting signatures of attacks targeting containers
Answers
B.
Deploy an IPS solution capable of detecting signatures of attacks targeting containers
C.
Define a vulnerability scan to assess container images before being introduced on the environment
Answers
C.
Define a vulnerability scan to assess container images before being introduced on the environment
D.
Create a dedicated VPC for the containerized environment
Answers
D.
Create a dedicated VPC for the containerized environment
Suggested answer: A

Explanation:

Enforcing the use of a controlled trusted source of container images is the best solution to prevent incidents like the introduction of a zero-day vulnerability through container images from occurring again. Reference: CompTIA Security+ Study Guide by Emmett Dulaney, Chapter 11: Cloud Security, Container Security

asked 02/10/2024
Casey Donovan
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first