nerdexam
GIAC

GSLC · Question #11

You work as a Network Administrator for Blue Well Inc. The company has a Windows Server 2008 domain-based network. All client computers on the network run Windows Vista Ultimate. Andy, a Finance…

The correct answer is C. Configure phishing filter in Windows Mail. Emails requesting personal or financial information are phishing attempts, and the correct fix is enabling the phishing filter built into Windows Mail where those emails are received.

Security Operations & Incident Response Leadership

Question

You work as a Network Administrator for Blue Well Inc. The company has a Windows Server 2008 domain-based network. All client computers on the network run Windows Vista Ultimate. Andy, a Finance Manager, uses Windows Mail to download his e-mails to his inbox. He complains that every now and then he gets mails asking for revealing personal or financial information. He wants that such mails are not shown to him. Which of the following steps will you take to accomplish the task?

Options

  • ARemove domain names of such emails from the Safe Sender's list.
  • BConfigure phishing filter in Internet Explorer 7.0.
  • CConfigure phishing filter in Windows Mail.
  • DAdd domain names of such emails in the Block Sender's list.

How the community answered

(43 responses)
  • A
    2% (1)
  • B
    7% (3)
  • C
    88% (38)
  • D
    2% (1)

Why each option

Emails requesting personal or financial information are phishing attempts, and the correct fix is enabling the phishing filter built into Windows Mail where those emails are received.

ARemove domain names of such emails from the Safe Sender's list.

Removing domains from the Safe Sender's list only stops trusting those senders and does not actively detect or filter new phishing messages arriving in the inbox.

BConfigure phishing filter in Internet Explorer 7.0.

Internet Explorer 7's phishing filter protects against malicious websites visited in the browser, not against phishing emails delivered through a standalone mail client like Windows Mail.

CConfigure phishing filter in Windows Mail.Correct

Windows Mail in Windows Vista includes a built-in phishing filter that detects and flags messages attempting to collect personal or financial information. Configuring this filter directly addresses the problem because the phishing messages arrive and are displayed through the Windows Mail client. This targets the threat at the correct layer - the email application - rather than at the browser or through manual sender management.

DAdd domain names of such emails in the Block Sender's list.

Adding specific domains to the Block Sender's list only blocks known addresses, but phishing attacks typically originate from many different or spoofed domains, making this approach incomplete.

Concept tested: Windows Mail phishing filter configuration

Source: https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-vista/cc749321(v=ws.10)

Topics

#phishing filter#email security#Windows Mail#spam filtering

Community Discussion

No community discussion yet for this question.

Full GSLC Practice