Page 1 of 1

An analyst has noticed unusual activities in the SIEM to a .cn domain name. Which of the following should the analyst us

Posted: Sat Jul 23, 2022 7:39 pm
by answerhappygod
An analyst has noticed unusual activities in the SIEM to a .cn domain name. Which of the following should the analyst use to identify the content of the traffic?

A. Log review
B. Service discovery
C. Packet capture
D. DNS harvesting