Cisco 350-201 Exam - Topic 6 Question 130 Discussion
A threat actor used a phishing email to deliver a file with an embedded macro. The file was opened, and a remote code execution attack occurred in a company's infrastructure. Which steps should an engineer take at the recovery stage?
B) Analyze event logs and restrict network access
A) Determine the systems involved and deploy available patches
C) Review access lists and require users to increase password complexity
D) Identify the attack vector and update the IDS signature list
Audra
4 days agoKarma
9 days agoMarshall
14 days agoStephanie
19 days agoRodney
24 days ago