Which of the following tools would allow the analyst to confirm if data exfiltration is occuring?

A security analyst who is concerned about sensitive data exfiltration reviews the following:

Which of the following tools would allow the analyst to confirm if data exfiltration is occuring?
A. Port scanner
B. SCAP tool
C. File integrity monitor
D. Protocol analyzer

How to PASS CAS-004 in First Attempt?

FULL Printable PDF and Software. VALID exam to help you PASS.

comptia-exams

6 thoughts on “Which of the following tools would allow the analyst to confirm if data exfiltration is occuring?

  1. The output is from a Protocol analyzer. Thus, to confirm the protocol analyzer’s output you would use a port scanner. The output is already from a protocol analyzer. The question isn’t asking what tool did the analyst use that produced this output. The analyst needs further confirmation.

  2. D protocol analyzer helps to detect the communication between two host and the amount of data or traffic communication,

  3. This is result from tcpdump and tcpdump is a common packet analyzer that runs under the command line. It allows the user to display TCP/IP and other packets being transmitted or received over a network to which the computer is attached.

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.