nerdexam
Fortinet

NSE7_SOC_AR-7.6 · Question #43

Review the incident report. An attacker identified employee names, roles, and email patterns from public press releases, which were then used to craft tailored emails. The emails were directed to…

The correct answer is A. Reconnaissance C. Initial Access. You've hit your limit · resets 5am (America/New_York)

SOC Best Practices and Incident Response

Question

Review the incident report. An attacker identified employee names, roles, and email patterns from public press releases, which were then used to craft tailored emails. The emails were directed to recipients to review an attached agenda using a link hosted off the corporate domain. Which two MITRE ATT&CK tactics best fit this report? (Choose two answers)

Options

  • AReconnaissance
  • BDiscovery
  • CInitial Access
  • DDefense Evasion

How the community answered

(46 responses)
  • A
    74% (34)
  • B
    20% (9)
  • D
    7% (3)

Explanation

You've hit your limit · resets 5am (America/New_York)

Topics

#MITRE ATT&CK#reconnaissance#initial access#spear phishing

Community Discussion

No community discussion yet for this question.

Full NSE7_SOC_AR-7.6 Practice