FCP_FML_AD-7.4 · Question #33
Which two FortiMail antispam techniques can you use to combat zero-day spam? (Choose two.)
The correct answer is A. IP reputation B. Spam outbreak protection. IP Reputation (A) identifies spam from known-malicious senders in real time using cloud-based threat intelligence that continuously updates as new spam sources emerge - this makes it effective against zero-day campaigns using newly-spun-up infrastructure. Spam Outbreak…
Question
Which two FortiMail antispam techniques can you use to combat zero-day spam? (Choose two.)
Options
- AIP reputation
- BSpam outbreak protection
- CDNSBL
- DBehavior analysis
How the community answered
(33 responses)- A76% (25)
- C9% (3)
- D15% (5)
Explanation
IP Reputation (A) identifies spam from known-malicious senders in real time using cloud-based threat intelligence that continuously updates as new spam sources emerge - this makes it effective against zero-day campaigns using newly-spun-up infrastructure. Spam Outbreak Protection (B) uses FortiGuard's global sensor network to detect spam surges in real time, catching outbreaks within minutes of first appearance rather than waiting for signature updates - exactly what zero-day defense requires.
DNSBL (C) and Behavior Analysis (D) are the distractors. DNSBL relies on pre-compiled blacklists of known bad IPs, so newly active zero-day spam sources won't appear on them yet. Behavior Analysis examines patterns over time (e.g., greylisting, heuristics on email structure), which means it depends on observed history rather than real-time threat intelligence - slower to respond to brand-new campaigns.
Memory tip: Think "zero-day = needs real-time cloud data." IP Reputation and Spam Outbreak Protection both phone home to FortiGuard's live cloud feeds; DNSBL and Behavior Analysis are comparatively static or reactive, making them better at catching known spam than new spam.
Topics
Community Discussion
No community discussion yet for this question.