nerdexam
GAQM

CPEH-001 · Question #848

CPEH-001 Question #848: Real Exam Question with Answer & Explanation

Sign in or unlock CPEH-001 to reveal the answer and full explanation for question #848. The question stem and answer options stay visible for context.

Question

Attacker Lauren has gained the credentials of an organization's internal server system, and she was often logging in during irregular times to monitor the network activities. The organization was skeptical about the login times and appointed security professional Robert to determine the issue. Robert analyzed the compromised device to find incident details such as the type of attack, its severity, target, impact, method of propagation, and vulnerabilities exploited. What is the incident handling and response (IH&R) phase, in which Robert has determined these issues?

Options

  • APreparation
  • BEradication
  • CIncident recording and assignment
  • DIncident triage

Unlock CPEH-001 to see the answer

You've previewed enough free CPEH-001 questions. Unlock CPEH-001 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full CPEH-001 Practice