Review questions
Answer the following questions to check your knowledge of this chapter:
- An example of a difference between an IT and OT network is that port scanning is normally fine on an ____ network whereas it could be detrimental on an ___ network.
- Two of the biggest limiting factors of a cloud-based network are the ability to retrieve ______ and obtain _______.
- If all communication from the hunt team is traversing the same network that the hunt is being conducted on, then that is an ________ connection.
- If having to pick between a TAP or a SPAN, a _____ would be better put to use for an adversary that is believed to have infiltrated the existing infrastructure.
- What are some common third-party host logging agents or data shippers?