Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC GCFR Exam - Topic 11 Question 50 Discussion

Actual exam question for GIAC's GCFR exam
Question #: 50
Topic #: 11
[All GCFR Questions]

A company using PaaS to host and develop their software application is experiencing a DOS attack. What challenge will a DFIR analyst experience when investigating this attack?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Lelia
2 months ago
A is a real challenge. Without logs, how do you trace back?
upvoted 0 times
...
Louisa
2 months ago
I lean towards B. Scaling can really complicate things.
upvoted 0 times
...
Celestine
2 months ago
D is unlikely. Companies usually keep monitoring active.
upvoted 0 times
...
Rolland
2 months ago
C makes sense too. If network logs are gone, it's tough to investigate.
upvoted 0 times
...
Elroy
2 months ago
I feel A is more accurate. Restricted access is a big issue.
upvoted 0 times
...
Elke
3 months ago
I think it's B. Resource scaling can mess with log access.
upvoted 0 times
...
Josphine
3 months ago
D) Disabling network monitoring? That's a huge red flag!
upvoted 0 times
...
Kina
3 months ago
Wait, how can network logs be unavailable? That seems odd.
upvoted 0 times
...
Markus
4 months ago
B) Resource scaling might complicate things too.
upvoted 0 times
...
Denae
4 months ago
Totally agree, logs are crucial for investigation!
upvoted 0 times
...
Caitlin
4 months ago
Resource scaling affecting log access? That's like trying to catch a greased pig while blindfolded. Good luck, DFIR analyst!
upvoted 0 times
...
Tiera
4 months ago
"Network monitoring disabled by the company" - Ah, the classic "security through obscurity" approach. Bold move, let's see how that plays out.
upvoted 0 times
...
Holley
4 months ago
I vaguely remember a case where network monitoring was disabled, but I don't know if that's typical for PaaS setups.
upvoted 0 times
...
Felice
4 months ago
I feel like network logs being unavailable is a common problem in these scenarios, but I can't recall if it's the right answer.
upvoted 0 times
...
Peggy
5 months ago
I think resource scaling could complicate log access, but I'm not entirely sure if that's the main issue here.
upvoted 0 times
...
Leana
5 months ago
Hmm, and if the company has disabled network monitoring, that's just going to compound the problem. We'll be flying blind without that data.
upvoted 0 times
...
Chantell
5 months ago
Yikes, and if the network logs are unavailable, that's going to make it really hard to piece together what's happening. Gotta watch out for that.
upvoted 0 times
...
Rochell
5 months ago
Ah, good point. And if the company is scaling resources to handle the attack, that could also affect our ability to get the logs we need.
upvoted 0 times
...
Myrtie
5 months ago
Network logs unavailable? Sounds like the company needs to rethink their security strategy. Or maybe they just really hate DFIR analysts.
upvoted 0 times
...
Desmond
5 months ago
A) Restricted access to their application logs is a big issue.
upvoted 0 times
...
Loise
6 months ago
The DFIR analyst will have a hard time accessing the logs, that's for sure. PaaS can be a real headache when it comes to investigations.
upvoted 0 times
...
Kristeen
6 months ago
Restricted access to application logs? That's a bummer. Gotta love the cloud, right? *sarcasm*
upvoted 0 times
...
Leana
6 months ago
I remember studying about how PaaS environments can limit access to certain logs, so A seems plausible.
upvoted 0 times
...
Sang
6 months ago
Okay, let's see. I'm guessing restricted access to application logs could be a big issue, since the PaaS provider might limit what we can access.
upvoted 0 times
...
Lauran
6 months ago
Hmm, this one seems tricky. I'll need to think carefully about the challenges a DFIR analyst might face when investigating a DOS attack on a PaaS-hosted application.
upvoted 0 times
Lonna
25 days ago
So many layers to this! Each option presents a real challenge.
upvoted 0 times
...
Sol
30 days ago
True, but if monitoring is disabled, how can they even investigate?
upvoted 0 times
...
Staci
1 month ago
What about network logs? If they're unavailable, that's a huge problem.
upvoted 0 times
...
Lashawn
1 month ago
Definitely! But resource scaling might complicate things too.
upvoted 0 times
...
Margart
2 months ago
I think restricted access to logs could be a major issue.
upvoted 0 times
...
...

Save Cancel