CompTIA
JK0-018 · Question #419
The security administrator at ABC company received the following log information from an external party: 10:45:01 EST, SRC 10.4.3.7:3056, DST 8.4.2.1:80, ALERT, Directory traversal 10:45:02 EST, SRC…
The correct answer is D. ABC company uses PAT. See the full explanation below for the reasoning.
Question
The security administrator at ABC company received the following log information from an external party:
10:45:01 EST, SRC 10.4.3.7:3056, DST 8.4.2.1:80, ALERT, Directory traversal 10:45:02 EST, SRC 10.4.3.7:3057, DST 8.4.2.1:80, ALERT, Account brute force 10:45:03 EST, SRC 10.4.3.7:3058, DST 8.4.2.1:80, ALERT, Port scan The external party is reporting attacks coming from abc-company.com. Which of the following is the reason the ABC company's security administrator is unable to determine the origin of the attack?
Options
- AA NIDS was used in place of a NIPS.
- BThe log is not in UTC.
- CThe external party uses a firewall.
- DABC company uses PAT.
How the community answered
(48 responses)- A4% (2)
- B10% (5)
- C8% (4)
- D77% (37)
Community Discussion
No community discussion yet for this question.