CompTIA SecurityX Certification Exam CAS-005 Question # 64 Topic 7 Discussion

CompTIA SecurityX Certification Exam CAS-005 Question # 64 Topic 7 Discussion

CAS-005 Exam Topic 7 Question 64 Discussion:
Question #: 64
Topic #: 7

A SOC analyst is investigating an event in which a penetration tester was able to successfully create and execute a payload. The analyst pulls the following command history from the affected server-

CAS-005 Question 64

Which of the following should the analyst implement lo improve the security of the server?


A.

Kernel-supported ASLR controls


B.

Application controls with allow lists


C.

OS restrictions of globally writable folders


D.

EDR signatures that terminate specific processes


Get Premium CAS-005 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.