Cisco 350-201 Exam - Topic 8 Question 79 Discussion
A SOC team is investigating a recent, targeted social engineering attack on multiple employees. Cross- correlated log analysis revealed that two hours before the attack, multiple assets received requests on TCP port 79. Which action should be taken by the SOC team to mitigate this attack?
B) Disable affected assets and isolate them for further investigation. and D) Configure affected devices to disable the Finger service.
A) Disable BIND forwarding from the DNS server to avoid reconnaissance.
C) Configure affected devices to disable NETRJS protocol.
Kaycee
9 months agoHermila
10 months agoElke
10 months agoMargot
10 months agoKatie
10 months agoEvangelina
10 months agoRikki
11 months agoMacy
11 months agoJanna
11 months agoGladys
11 months agoJina
11 months agoMarvel
11 months agoKing
11 months agoAdelina
11 months agoShoshana
11 months agoVannessa
1 year agoAllene
1 year agoLorrie
1 year agoSheldon
1 year agoPaola
1 year agoArmando
1 year agoJade
1 year agoCarlota
1 year agoJoye
1 year agoJanessa
1 year agoMarylin
1 year agoHyun
1 year agoErick
1 year agoUla
1 year agoChery
1 year agoCharlesetta
1 year agoKelvin
1 year agoIn
1 year agoKrystina
1 year agoKindra
1 year agoWilda
1 year agoTherese
1 year agoKimbery
1 year agoGeoffrey
1 year agoIvette
1 year agoElfriede
1 year agoMy
1 year agoKarina
1 year agoRyann
1 year ago