PCNSA · Question #353
Which profile must be applied to the Security policy rule to block spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers?
The correct answer is A. Anti-spyware. Anti-Spyware profiles blocks spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers, allowing you to detect malicious traffic leaving the network from infected clients. https://docs.paloaltonetworks.com/network-security/s
Question
Which profile must be applied to the Security policy rule to block spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers?
Options
- AAnti-spyware
- BFile blocking
- CWildFire
- DURL filtering
How the community answered
(27 responses)- A89% (24)
- B7% (2)
- D4% (1)
Explanation
Anti-Spyware profiles blocks spyware on compromised hosts from trying to phone-home or beacon out to external command-and-control (C2) servers, allowing you to detect malicious traffic leaving the network from infected clients. https://docs.paloaltonetworks.com/network-security/security-policy/security-profiles/security- profile-anti-spyware
Topics
Community Discussion
No community discussion yet for this question.