اختبار شهادة محلل الأمن السيبراني CompTIA CySA+

السؤال 204 من 1040

كل الأسئلة

A company suspects a coordinated effort to attack their platform. Web server logs show malicious activity from many different source IP addresses located in different countries. Which of the following will best help a security analyst identify the requests connected to this campaign?

الخيارات

  • A Modify the web server logs to include the X-Forwarded-For header.
  • B Create a custom SIEM query to integrate threat intel IoCs associated with the threat actor.
  • C Enrich the web server request logs with full WHOIS data on all available sources.
  • D Add GeoIP location for the source IP addresses to the log entries.

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.