nerdexam
CompTIA

CAS-003 · Question #526

An organization wants to arm its cybersecurity defensive suite automatically with intelligence on zero-day threats shortly after they emerge. Acquiring tools and services that support which of the…

The correct answer is E. CVE. CVE (Common Vulnerabilities and Exposures) is the industry-standard naming scheme for publicly disclosed vulnerabilities. When zero-day threats emerge and are disclosed, they are assigned CVE identifiers. Security tools (SIEMs, vulnerability scanners, threat intel platforms)…

Research, Development and Collaboration

Question

An organization wants to arm its cybersecurity defensive suite automatically with intelligence on zero-day threats shortly after they emerge. Acquiring tools and services that support which of the following data standards would BEST enable the organization to meet this objective?

Options

  • AXCCDF
  • BOVAL
  • CSTIX
  • DCWE
  • ECVE

How the community answered

(38 responses)
  • A
    5% (2)
  • B
    3% (1)
  • D
    5% (2)
  • E
    87% (33)

Explanation

CVE (Common Vulnerabilities and Exposures) is the industry-standard naming scheme for publicly disclosed vulnerabilities. When zero-day threats emerge and are disclosed, they are assigned CVE identifiers. Security tools (SIEMs, vulnerability scanners, threat intel platforms) can subscribe to CVE data feeds and automatically update their defensive databases in near real-time. This makes CVE the most practical standard for arming a defensive suite automatically. STIX is a threat intelligence sharing format but is broader and less directly tied to automated tooling integration. OVAL assesses vulnerability states but doesn't drive real-time intelligence feeds. XCCDF is for configuration checklists. CWE categorizes software weakness types, not specific vulnerabilities.

Topics

#threat intelligence standards#CVE#zero-day threats#STIX/TAXII

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice