An administrator has been investigating the way in which an actor had been exfiltrating confidential data from a web server to a foreign host. After a thorough forensic review, the administrator determined the server's BIOS had been modified by rootkit installation. After removing the rootkit and flashing the BIOS to a known good state, which of the following would BEST protect against future adversary access to the BIOS, in case another rootkit is installed?
A. Anti-malware application
B. Host-based IDS
C. TPM data sealing
D. File integrity monitoring
An administrator has been investigating the way in which an actor had been exfiltrating confidential data from a web ser
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
An administrator has been investigating the way in which an actor had been exfiltrating confidential data from a web ser
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!