New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil 312-85 Exam - Topic 5 Question 31 Discussion

Actual exam question for Eccouncil's 312-85 exam
Question #: 31
Topic #: 5
[All 312-85 Questions]

Jian is a member of the security team at Trinity, Inc. He was conducting a real-time assessment of system activities in order to acquire threat intelligence feeds. He acquired feeds from sources like honeynets, P2P monitoring. infrastructure, and application logs.

Which of the following categories of threat intelligence feed was acquired by Jian?

Show Suggested Answer Hide Answer
Suggested Answer: A

Internal intelligence feeds are derived from data and information collected within an organization's own networks and systems. Jian's activities, such as real-time assessment of system activities and acquiring feeds from honeynets, P2P monitoring, infrastructure, and application logs, fall under the collection of internal intelligence feeds. These feeds are crucial for identifying potential threats and vulnerabilities within the organization and form a fundamental part of a comprehensive threat intelligence program. They contrast with external intelligence feeds, which are sourced from outside the organization and include information on broader cyber threats, trends, and TTPs of threat actors. Reference:

'Building an Intelligence-Led Security Program' by Allan Liska

'Threat Intelligence: Collecting, Analysing, Evaluating' by M-K. Lee, L. Healey, and P. A. Porras


Contribute your Thoughts:

0/2000 characters
Maurine
2 months ago
Not sure about that, seems a bit off to me.
upvoted 0 times
...
Salena
2 months ago
Definitely internal feeds, right?
upvoted 0 times
...
Paul
3 months ago
Wait, are honeynets really considered external?
upvoted 0 times
...
Lawrence
3 months ago
I think it’s proactive surveillance feeds!
upvoted 0 times
...
Reynalda
3 months ago
Sounds like he’s using external intelligence feeds.
upvoted 0 times
...
Rashida
3 months ago
I vaguely recall that proactive surveillance feeds are more about monitoring than threat intelligence, so I don't think that's the answer here.
upvoted 0 times
...
Trina
4 months ago
This question seems similar to one we practiced about threat intelligence sources. I feel like the right answer might be B, but I'm not completely confident.
upvoted 0 times
...
Fannie
4 months ago
I think the feeds Jian acquired are mostly external since they come from outside sources like P2P monitoring.
upvoted 0 times
...
Ronald
4 months ago
I remember studying the difference between internal and external intelligence feeds, but I'm not sure which category honeynets fall into.
upvoted 0 times
...
Jesusa
4 months ago
I'm a little confused by the wording here. Does "external intelligence feeds" mean feeds from outside the organization, or just feeds that aren't internal to Trinity, Inc.? I'll have to re-read the question to make sure I understand it fully.
upvoted 0 times
...
Truman
4 months ago
Okay, let me break this down. Jian was acquiring threat intelligence feeds from external sources like honeynets and P2P monitoring, so I'm pretty confident the answer is external intelligence feeds.
upvoted 0 times
...
Lavonne
5 months ago
Hmm, I'm a bit unsure about this one. The question mentions Jian was conducting a real-time assessment, so I'm not sure if that rules out internal intelligence feeds. I'll have to think this through carefully.
upvoted 0 times
...
Lilli
5 months ago
This question seems straightforward. I think Jian acquired external intelligence feeds based on the sources mentioned like honeynets and P2P monitoring.
upvoted 0 times
...
Bethanie
7 months ago
I don't think it's internal feeds, Jian was focusing on monitoring external sources like honeynets and P2P.
upvoted 0 times
...
Dominic
7 months ago
I'm going with B) External intelligence feeds. Jian was tapping into those juicy external sources to stay ahead of the game.
upvoted 0 times
Tamesha
6 months ago
Definitely, external intelligence feeds provide valuable insights that can help anticipate and prevent security incidents.
upvoted 0 times
...
Elli
7 months ago
Yeah, external intelligence feeds are essential for staying informed about potential threats. Good choice.
upvoted 0 times
...
Deandrea
7 months ago
I think Jian was focusing on external intelligence feeds too. It's crucial to gather information from outside sources.
upvoted 0 times
...
...
Cristy
7 months ago
But could it also be internal intelligence feeds? Those are important for monitoring internal threats.
upvoted 0 times
...
Lavonna
7 months ago
I agree with France, external intelligence feeds make sense for threat intelligence.
upvoted 0 times
...
Noel
8 months ago
Haha, this is a no-brainer! Jian was doing real-time assessment, so it's gotta be B) External intelligence feeds. Internal feeds are so last year.
upvoted 0 times
...
Fatima
8 months ago
I think it's D) Proactive surveillance feeds. Jian was actively monitoring system activities to acquire the threat intelligence, so it's not just a passive feed.
upvoted 0 times
Nathalie
6 months ago
Yes, Jian was actively monitoring the system, so it makes sense.
upvoted 0 times
...
Judy
6 months ago
I agree with you, it must be D) Proactive surveillance feeds.
upvoted 0 times
...
Alishia
7 months ago
D) Proactive surveillance feeds
upvoted 0 times
...
Man
7 months ago
C) CSV data feeds
upvoted 0 times
...
Dalene
7 months ago
B) External intelligence feeds
upvoted 0 times
...
Whitley
7 months ago
A) Internal intelligence feeds
upvoted 0 times
...
...
France
8 months ago
I think Jian acquired external intelligence feeds.
upvoted 0 times
...
Micaela
8 months ago
Definitely B) External intelligence feeds. Jian was acquiring threat intelligence from sources outside of Trinity, Inc., like honeynets and P2P monitoring.
upvoted 0 times
Gail
7 months ago
C) CSV data feeds
upvoted 0 times
...
Solange
7 months ago
B) External intelligence feeds
upvoted 0 times
...
Trinidad
7 months ago
A) Internal intelligence feeds
upvoted 0 times
...
...

Save Cancel