设为首页收藏本站language 语言切换
查看: 1824|回复: 1
收起左侧

[其他] 【答题赢鸿鹄币】Security

[复制链接]
 成长值: 63400
发表于 2021-9-15 11:15:04 | 显示全部楼层 |阅读模式
20鸿鹄币
本帖最后由 小乔 于 2021-9-16 09:27 编辑

134  An engineer must protect their company against ransom ware attacks. Which solution allows the engineer to block the execution stage and prevent file
encryption?
A. Use Cisco AMP deployment with the Malicious Activity Protection engineer enabled
B. Use Cisco AMP deployment with the Exploit Prevention engine enabled
C. Use Cisco Firepower and block traffic to TOR networks
D. Use Cisco Firepower with Intrusion Policy and snort rules blocking SMB exploitation

选详细解释给予20鸿鹄币奖励


最佳答案

查看完整内容

Answer:A, but it should be Malicious Activity Protection engine enabled, rather than engineer Ransomware are malicious software that locks up critical resources of the users. Ransomware uses well-established public/private key cryptography which leaves the only way of recovering the files being the payment of the ransom, or restoring files from backups. Cisco Advanced Malware Protection ...
发表于 2021-9-15 11:15:05 | 显示全部楼层
Answer:A,
but it should be Malicious Activity Protection engine enabled, rather than engineer

Ransomware are malicious software that locks up critical resources of the users. Ransomware uses well-established public/private key cryptography which leaves the only way of recovering the files being the payment of the ransom, or restoring files from backups.

Cisco Advanced Malware Protection (AMP) for Endpoints Malicious Activity Protection (MAP) engine defends your endpoints by monitoring the system and identifying processes that exhibit malicious activities when they execute and stops them from running. Because the MAP engine detects threats by observing the behavior of the process at run time, it can generically determine if a system is under attack by a new variant of ransomware or malware that may have eluded other security products and detection technology, such as legacy signature-based malware detection. The first release of the MAP engine targets identification, blocking, and quarantine of ransomware attacks on the endpoint.
沙发 2021-9-15 11:15:05 回复 收起回复
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 论坛注册

本版积分规则

QQ|Archiver|手机版|小黑屋|sitemap|鸿鹄论坛 ( 京ICP备14027439号 )  

GMT+8, 2025-2-2 18:08 , Processed in 0.069163 second(s), 12 queries , Redis On.  

  Powered by Discuz!

  © 2001-2025 HH010.COM

快速回复 返回顶部 返回列表