CS0-003 · Question #660
An analyst reviews alerts that indicate a number of different users had a spike in login attempts from the same IP. Using the security information and event management (SIEM) system, the analyst…
The correct answer is C. Spoofing. The email uses a forged sender address that appears to come from an internal HR department while actually originating from an external domain, indicating impersonation intended to deceive
Question
An analyst reviews alerts that indicate a number of different users had a spike in login attempts from the same IP. Using the security information and event management (SIEM) system, the analyst finds that a number of users received the following email:
Which of the following best describes this activity?
Exhibit
Options
- AURL shortening
- BWhaling
- CSpoofing
- DSocial engineering
How the community answered
(42 responses)- A10% (4)
- B2% (1)
- C76% (32)
- D12% (5)
Explanation
The email uses a forged sender address that appears to come from an internal HR department while actually originating from an external domain, indicating impersonation intended to deceive
Topics
Community Discussion
No community discussion yet for this question.
