Chapter 7
- What is the difference between an IDS and an IPS?
- An IDS proactively blocks malicious activity whereas an IPS only detects it
- An IPS proactively blocks malicious activity whereas an IDS only detects it
- Nothing – they are the same
- Thousands of dollars in potential overhead costs
Answer: B – An IDS only “detects” whereas an IPS takes action to “prevent” malicious activity.
- Which potential threat is network activity occurring at precise intervals a potential symptom of?
- An extremely rigid employer
- A potential configuration error on a device
- Automation and scripting
- A bot that is beaconing to an external C2 server
Answer: D – An isolated bot that is communicating to a remote C2 server indicating that it’s likely a part of a larger botnet.
- The process of converting a programmer’s code into machine language is known as what?
- Compiling
- Compelling
- Controlling
- Careful translation
Answer: A – Compiling.
- What is...