An analyst has noticed unusual activities in the SIEM to a .cn domain name. Which of the following should the analyst us
Posted: Sat Jul 23, 2022 7:39 pm
An analyst has noticed unusual activities in the SIEM to a .cn domain name. Which of the following should the analyst use to identify the content of the traffic?
A. Log review
B. Service discovery
C. Packet capture
D. DNS harvesting
A. Log review
B. Service discovery
C. Packet capture
D. DNS harvesting