nerdexam
Google

PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #128

You have identified and isolated a new malware sample installed by an advanced threat group that you believe was developed specifically for an attack against your organization. You want to quickly…

The correct answer is C. Upload the malware to Google Threat Intelligence by using Private Scanning. The correct action is to upload the malware to Google Threat Intelligence using Private Scanning. Private Scanning allows you to analyze malware safely and extract IOCs without sharing the sample publicly. This prevents alerting the threat group while still enabling rapid and…

Threat Intelligence and Analysis

Question

You have identified and isolated a new malware sample installed by an advanced threat group that you believe was developed specifically for an attack against your organization. You want to quickly and efficiently analyze this malware to get IOCs without alerting the threat group. What should you do?

Options

  • ASearch for the threat group in Google Threat Intelligence.
  • BUpload the malware to Google Threat Intelligence by using VirusTotal.
  • CUpload the malware to Google Threat Intelligence by using Private Scanning.
  • DCalculate the file checksum for the malware, and search for the checksum in GoogleThreat

How the community answered

(49 responses)
  • A
    6% (3)
  • B
    12% (6)
  • C
    78% (38)
  • D
    4% (2)

Explanation

The correct action is to upload the malware to Google Threat Intelligence using Private Scanning. Private Scanning allows you to analyze malware safely and extract IOCs without sharing the sample publicly. This prevents alerting the threat group while still enabling rapid and detailed intelligence gathering.

Topics

#malware analysis#private scanning#threat intelligence#IOC extraction

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice