Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC GCFR Exam - Topic 11 Question 50 Discussion

A company using PaaS to host and develop their software application is experiencing a DOS attack. What challenge will a DFIR analyst experience when investigating this attack?
C) Network logs are unavailable for review
A) Restricted access to their application logs
B) Resource scaling will affect access to logs
D) Network monitoring disabled by the company

GIAC GCFR Exam - Topic 11 Question 50 Discussion

Actual exam question for GIAC's GCFR exam
Question #: 50
Topic #: 11
[All GCFR Questions]

A company using PaaS to host and develop their software application is experiencing a DOS attack. What challenge will a DFIR analyst experience when investigating this attack?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Lelia
5 months ago
A is a real challenge. Without logs, how do you trace back?
upvoted 0 times
...
Louisa
5 months ago
I lean towards B. Scaling can really complicate things.
upvoted 0 times
...
Celestine
5 months ago
D is unlikely. Companies usually keep monitoring active.
upvoted 0 times
...
Rolland
5 months ago
C makes sense too. If network logs are gone, it's tough to investigate.
upvoted 0 times
...
Elroy
5 months ago
I feel A is more accurate. Restricted access is a big issue.
upvoted 0 times
...
Elke
5 months ago
I think it's B. Resource scaling can mess with log access.
upvoted 0 times
...
Josphine
6 months ago
D) Disabling network monitoring? That's a huge red flag!
upvoted 0 times
...
Kina
6 months ago
Wait, how can network logs be unavailable? That seems odd.
upvoted 0 times
...
Markus
6 months ago
B) Resource scaling might complicate things too.
upvoted 0 times
...
Denae
7 months ago
Totally agree, logs are crucial for investigation!
upvoted 0 times
...
Caitlin
7 months ago
Resource scaling affecting log access? That's like trying to catch a greased pig while blindfolded. Good luck, DFIR analyst!
upvoted 0 times
...
Tiera
7 months ago
"Network monitoring disabled by the company" - Ah, the classic "security through obscurity" approach. Bold move, let's see how that plays out.
upvoted 0 times
...
Holley
7 months ago
I vaguely remember a case where network monitoring was disabled, but I don't know if that's typical for PaaS setups.
upvoted 0 times
...
Felice
7 months ago
I feel like network logs being unavailable is a common problem in these scenarios, but I can't recall if it's the right answer.
upvoted 0 times
...
Peggy
7 months ago
I think resource scaling could complicate log access, but I'm not entirely sure if that's the main issue here.
upvoted 0 times
...
Leana
8 months ago
Hmm, and if the company has disabled network monitoring, that's just going to compound the problem. We'll be flying blind without that data.
upvoted 0 times
...
Chantell
8 months ago
Yikes, and if the network logs are unavailable, that's going to make it really hard to piece together what's happening. Gotta watch out for that.
upvoted 0 times
...
Rochell
8 months ago
Ah, good point. And if the company is scaling resources to handle the attack, that could also affect our ability to get the logs we need.
upvoted 0 times
...
Myrtie
8 months ago
Network logs unavailable? Sounds like the company needs to rethink their security strategy. Or maybe they just really hate DFIR analysts.
upvoted 0 times
...
Desmond
8 months ago
A) Restricted access to their application logs is a big issue.
upvoted 0 times
...
Loise
8 months ago
The DFIR analyst will have a hard time accessing the logs, that's for sure. PaaS can be a real headache when it comes to investigations.
upvoted 0 times
...
Kristeen
9 months ago
Restricted access to application logs? That's a bummer. Gotta love the cloud, right? *sarcasm*
upvoted 0 times
...
Leana
9 months ago
I remember studying about how PaaS environments can limit access to certain logs, so A seems plausible.
upvoted 0 times
...
Sang
9 months ago
Okay, let's see. I'm guessing restricted access to application logs could be a big issue, since the PaaS provider might limit what we can access.
upvoted 0 times
...
Lauran
9 months ago
Hmm, this one seems tricky. I'll need to think carefully about the challenges a DFIR analyst might face when investigating a DOS attack on a PaaS-hosted application.
upvoted 0 times
Lonna
4 months ago
So many layers to this! Each option presents a real challenge.
upvoted 0 times
...
Sol
4 months ago
True, but if monitoring is disabled, how can they even investigate?
upvoted 0 times
...
Staci
4 months ago
What about network logs? If they're unavailable, that's a huge problem.
upvoted 0 times
...
Lashawn
4 months ago
Definitely! But resource scaling might complicate things too.
upvoted 0 times
...
Margart
4 months ago
I think restricted access to logs could be a major issue.
upvoted 0 times
...
...

Save Cancel