312-50V13 · Question #459
Which among the following is the best example of the hacking concept called "clearing tracks"?
The correct answer is D. During a cyberattack, a hacker corrupts the event logs on all machines. Clearing tracks refers to the post-exploitation action where an attacker removes evidence of their presence and activities from a compromised system.
Question
Options
- AAfter a system is breached, a hacker creates a backdoor to allow re-entry into a system.
- BDuring a cyberattack, a hacker injects a rootkit into a server.
- CAn attacker gains access to a server through an exploitable vulnerability.
- DDuring a cyberattack, a hacker corrupts the event logs on all machines.
How the community answered
(60 responses)- B3% (2)
- C2% (1)
- D95% (57)
Why each option
Clearing tracks refers to the post-exploitation action where an attacker removes evidence of their presence and activities from a compromised system.
Creating a backdoor is a method for maintaining access to a system, not specifically for removing evidence of past actions.
Injecting a rootkit is a technique for maintaining persistence and hiding an attacker's presence, but it's not synonymous with clearing existing logs.
Gaining access through a vulnerability describes the initial breach, not the subsequent action of removing evidence.
Corrupting or deleting event logs is a prime example of clearing tracks, as it removes forensic evidence that could reveal the attacker's actions, making detection and investigation significantly harder.
Concept tested: Post-exploitation activity: Clearing tracks
Topics
Community Discussion
No community discussion yet for this question.