PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #128
You have identified and isolated a new malware sample installed by an advanced threat group that you believe was developed specifically for an attack against your organization. You want to quickly…
The correct answer is C. Upload the malware to Google Threat Intelligence by using Private Scanning. The correct action is to upload the malware to Google Threat Intelligence using Private Scanning. Private Scanning allows you to analyze malware safely and extract IOCs without sharing the sample publicly. This prevents alerting the threat group while still enabling rapid and…
Question
You have identified and isolated a new malware sample installed by an advanced threat group that you believe was developed specifically for an attack against your organization. You want to quickly and efficiently analyze this malware to get IOCs without alerting the threat group. What should you do?
Options
- ASearch for the threat group in Google Threat Intelligence.
- BUpload the malware to Google Threat Intelligence by using VirusTotal.
- CUpload the malware to Google Threat Intelligence by using Private Scanning.
- DCalculate the file checksum for the malware, and search for the checksum in GoogleThreat
How the community answered
(49 responses)- A6% (3)
- B12% (6)
- C78% (38)
- D4% (2)
Explanation
The correct action is to upload the malware to Google Threat Intelligence using Private Scanning. Private Scanning allows you to analyze malware safely and extract IOCs without sharing the sample publicly. This prevents alerting the threat group while still enabling rapid and detailed intelligence gathering.
Topics
Community Discussion
No community discussion yet for this question.