nerdexam
Cisco

350-701 · Question #769

Which two Cisco Umbrella security categories are used to prevent command-and-control callbacks on port 53 and protect users from being tricked into providing confidential information? (Choose two.)

The correct answer is A. DNS Tunneling VPN E. Phishing Attacks. Cisco Umbrella uses specific security categories to block command-and-control communication over DNS and protect against attempts to steal confidential information.

Submitted by tom_us· Mar 30, 2026Content Security

Question

Which two Cisco Umbrella security categories are used to prevent command-and-control callbacks on port 53 and protect users from being tricked into providing confidential information? (Choose two.)

Options

  • ADNS Tunneling VPN
  • BDynamic DNS
  • CNewly Seen Domains
  • DPotentially Harmful Domains
  • EPhishing Attacks

How the community answered

(32 responses)
  • A
    88% (28)
  • B
    3% (1)
  • C
    6% (2)
  • D
    3% (1)

Why each option

Cisco Umbrella uses specific security categories to block command-and-control communication over DNS and protect against attempts to steal confidential information.

ADNS Tunneling VPNCorrect

DNS Tunneling VPN is a security category in Cisco Umbrella that specifically identifies and blocks the use of DNS for command-and-control (C2) communication, which often occurs over port 53.

BDynamic DNS

Dynamic DNS (DDNS) is a legitimate service for mapping domain names to changing IP addresses; while it can be abused, it is not a direct security category for preventing C2 on port 53 or phishing itself.

CNewly Seen Domains

Newly Seen Domains is a category for domains recently registered or seen, which can be indicators of risk but is not specifically for established C2 callbacks on port 53 or phishing.

DPotentially Harmful Domains

Potentially Harmful Domains is a broad category for domains that may pose a risk, but 'DNS Tunneling VPN' and 'Phishing Attacks' are more specific and direct matches to the described threats.

EPhishing AttacksCorrect

Phishing Attacks is a security category in Cisco Umbrella that blocks access to domains known to host phishing content, thereby protecting users from providing confidential information.

Concept tested: Cisco Umbrella security categories (DNS tunneling, phishing)

Source: https://docs.umbrella.com/umbrella-user-guide/docs/appendix-a-content-categories

Topics

#Cisco Umbrella#DNS security#phishing attacks#DNS tunneling

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice