nerdexam
Palo_Alto_Networks

PSE-STRATA-PRO-24 · Question #14

A security engineer has been tasked with protecting a company's on-premises web servers but is not authorized to purchase a web application firewall (WAF). Which Palo Alto Networks solution will…

The correct answer is B. Advanced Threat Prevention and PAN-OS 11.x. Protecting web servers from advanced threats like SQL injection, command injection, XSS attacks, and IIS exploits requires a solution capable of deep packet inspection, behavioral analysis, and inline prevention of zero-day attacks. The most effective solution here is Advanced…

Advanced Threat Prevention

Question

A security engineer has been tasked with protecting a company's on-premises web servers but is not authorized to purchase a web application firewall (WAF). Which Palo Alto Networks solution will protect the company from SQL injection zero-day, command injection zero-day, Cross-Site Scripting (XSS) attacks, and IIS exploits?

Options

  • AThreat Prevention and PAN-OS 11.x
  • BAdvanced Threat Prevention and PAN-OS 11.x
  • CThreat Prevention, Advanced URL Filtering, and PAN-OS 10.2 (and higher)
  • DAdvanced WildFire and PAN-OS 10.0 (and higher)

How the community answered

(23 responses)
  • A
    13% (3)
  • B
    78% (18)
  • C
    4% (1)
  • D
    4% (1)

Explanation

Protecting web servers from advanced threats like SQL injection, command injection, XSS attacks, and IIS exploits requires a solution capable of deep packet inspection, behavioral analysis, and inline prevention of zero-day attacks. The most effective solution here is Advanced Threat Prevention (ATP) combined with PAN-OS 11.x. Advanced Threat Prevention (ATP) enhances traditional threat prevention by using inline deep learning models to detect and block advanced zero-day threats, including SQL injection, command injection, and XSS attacks. With PAN-OS 11.x, ATP extends its detection capabilities to detect unknown exploits without relying on signature-based methods. This functionality is critical for protecting web servers in scenarios where a dedicated WAF is unavailable.

Topics

#Advanced Threat Prevention#web application security#SQL injection#XSS protection

Community Discussion

No community discussion yet for this question.

Full PSE-STRATA-PRO-24 Practice