Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam 350-201 All Questions
Exam 350-201 All Questions

View all questions & answers for the 350-201 exam

Cisco CyberOps Professional 350-201 Question # 14 Topic 2 Discussion

350-201 Exam Topic 2 Question 14 Discussion:
Question #: 14
Topic #: 2

A SOC team is investigating a recent, targeted social engineering attack on multiple employees. Cross- correlated log analysis revealed that two hours before the attack, multiple assets received requests on TCP port 79. Which action should be taken by the SOC team to mitigate this attack?


A.

Disable BIND forwarding from the DNS server to avoid reconnaissance.


B.

Disable affected assets and isolate them for further investigation.


C.

Configure affected devices to disable NETRJS protocol.


D.

Configure affected devices to disable the Finger service.


Get Premium 350-201 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.