nerdexam
Fortinet

FCP_FML_AD-7.4 · Question #56

A FortiMail administrator is concerned about cyber criminals attempting to get sensitive information from employees using whaling phishing attacks. What option can the administrator configure to…

The correct answer is A. Impersonation analysis. Impersonation Analysis is correct because whaling attacks specifically involve cybercriminals masquerading as trusted executives or high-profile individuals to deceive employees - and FortiMail's impersonation analysis inspects display names, sender headers, and domain…

Antispam

Question

A FortiMail administrator is concerned about cyber criminals attempting to get sensitive information from employees using whaling phishing attacks. What option can the administrator configure to prevent these types of attacks?

Options

  • AImpersonation analysis
  • BDictionary profile with predefined smart identifiers
  • CBounce tag verification
  • DContent disarm and reconstruction

How the community answered

(22 responses)
  • A
    82% (18)
  • B
    5% (1)
  • C
    9% (2)
  • D
    5% (1)

Explanation

Impersonation Analysis is correct because whaling attacks specifically involve cybercriminals masquerading as trusted executives or high-profile individuals to deceive employees - and FortiMail's impersonation analysis inspects display names, sender headers, and domain similarities to detect when an attacker is pretending to be someone they're not.

Option B (Dictionary profile with smart identifiers) is a DLP tool that scans outbound content for sensitive data patterns (SSNs, credit card numbers) - it doesn't detect incoming impersonation attempts.

Option C (Bounce tag verification) prevents backscatter spam by validating whether bounce messages correspond to legitimate outbound emails - unrelated to impersonation.

Option D (Content disarm and reconstruction) sanitizes malicious file attachments by stripping active content like macros - it targets weaponized files, not social engineering via fake sender identities.

Memory tip: Think of "whaling" as targeting the big fish (executives). The feature that catches someone pretending to be a big fish is Impersonation Analysis - match the attack type (impersonation) to the feature name directly.

Topics

#impersonation analysis#whaling#phishing#social engineering

Community Discussion

No community discussion yet for this question.

Full FCP_FML_AD-7.4 Practice