nerdexam
Cisco

350-201 · Question #31

Refer to the exhibit. An employee is a victim of a social engineering phone call and installs remote access software to allow an "MS Support" technician to check his machine for malware. The…

The correct answer is A. No database files were disclosed. Anydesk access through HTTPS web client can only send files but not download from the sysem.

Network Intrusion Analysis

Question

Refer to the exhibit. An employee is a victim of a social engineering phone call and installs remote access software to allow an "MS Support" technician to check his machine for malware. The employee becomes suspicious after the remote technician requests payment in the form of gift cards. The employee has copies of multiple, unencrypted database files, over 400 MB each, on his system and is worried that the scammer copied the files off but has no proof of it. The remote technician was connected sometime between 2:00 pm and 3:00 pm over https. What should be determined regarding data loss between the employee's laptop and the remote technician's system?

Exhibit

350-201 question #31 exhibit

Options

  • ANo database files were disclosed
  • BThe database files were disclosed
  • CThe database files integrity was violated
  • DThe database files were intentionally corrupted, and encryption is possible

How the community answered

(16 responses)
  • A
    63% (10)
  • B
    6% (1)
  • C
    19% (3)
  • D
    13% (2)

Explanation

Anydesk access through HTTPS web client can only send files but not download from the sysem.

Topics

#data exfiltration#HTTPS traffic analysis#bandwidth analysis#social engineering

Community Discussion

No community discussion yet for this question.

Full 350-201 Practice