NETSEC-ANALYST · Question #387
Within an Anti-Spyware security profile, which tab is used to enable machine learning based engines?
The correct answer is D. Inline Cloud Analysis. An Anti-Spyware security profile is a set of rules that defines how the firewall detects and prevents spyware from compromising hosts on the network. Spyware is a type of malware that collects information from the infected system, such as keystrokes, browsing history, or…
Question
Within an Anti-Spyware security profile, which tab is used to enable machine learning based engines?
Options
- ASignature Policies
- BSignature Exceptions
- CMachine Learning Policies
- DInline Cloud Analysis
How the community answered
(34 responses)- A6% (2)
- B3% (1)
- C9% (3)
- D82% (28)
Explanation
An Anti-Spyware security profile is a set of rules that defines how the firewall detects and prevents spyware from compromising hosts on the network. Spyware is a type of malware that collects information from the infected system, such as keystrokes, browsing history, or personal data, and sends it to an external command-and-control (C2) server. An Anti-Spyware security profile consists of four tabs: Signature Policies, Signature Exceptions, Machine Learning Policies, and Inline Cloud Analysis. The Signature Policies tab allows you to configure the actions and log settings for each spyware signature category, such as adware, botnet, keylogger, phishing, or worm. You can also enable DNS Security to block malicious DNS queries and responses. The Signature Exceptions tab allows you to create exceptions for specific spyware signatures that you want to override the default action or log settings.
Topics
Community Discussion
No community discussion yet for this question.