PSE-STRATA-PRO-24 · Question #15
When a customer needs to understand how Palo Alto Networks NGFWs lower the risk of exploitation by newly announced vulnerabilities known to be actively attacked, which solution and functionality…
The correct answer is B. Advanced Threat Prevention's command injection and SQL injection functions use inline deep. The most effective way to reduce the risk of exploitation by newly announced vulnerabilities is through Advanced Threat Prevention (ATP). ATP uses inline deep learning to identify and block exploitation attempts, even for zero-day vulnerabilities, in real time. Advanced Threat…
Question
When a customer needs to understand how Palo Alto Networks NGFWs lower the risk of exploitation by newly announced vulnerabilities known to be actively attacked, which solution and functionality delivers the most value?
Options
- AAdvanced URL Filtering uses machine learning (ML) to learn which malicious URLs are being
- BAdvanced Threat Prevention's command injection and SQL injection functions use inline deep
- CSingle Pass Architecture and parallel processing ensure traffic is efficiently scanned against any
- DWildFire loads custom OS images to ensure that the sandboxing catches any activity that would
How the community answered
(51 responses)- A4% (2)
- B73% (37)
- C16% (8)
- D8% (4)
Explanation
The most effective way to reduce the risk of exploitation by newly announced vulnerabilities is through Advanced Threat Prevention (ATP). ATP uses inline deep learning to identify and block exploitation attempts, even for zero-day vulnerabilities, in real time. Advanced Threat Prevention leverages deep learning models directly in the data path, which allows it to analyze traffic in real time and detect patterns of exploitation, including newly discovered vulnerabilities being actively exploited in the wild. It specifically targets advanced Command injection. Memory-based exploits. Protocol evasion techniques. This functionality lowers the risk of exploitation by actively blocking attack attempts based on their behavior, even when a signature is not yet available. This approach makes ATP the most valuable solution for addressing new and actively exploited vulnerabilities.
Topics
Community Discussion
No community discussion yet for this question.