Free 312-39 Exam Braindumps (page: 11)

Page 10 of 26

Sam, a security analyst with INFOSOL INC., while monitoring and analyzing IIS logs, detected an event matching regex /\\w*((\%27)|(\’))((\%6F)|o|(\%4F))((\%72)|r|(\%52))/ix.

What does this event log indicate?

  1. SQL Injection Attack
  2. Parameter Tampering Attack
  3. XSS Attack
  4. Directory Traversal Attack

Answer(s): A


Reference:

https://community.broadcom.com/symantecenterprise/communities/community-home/librarydocuments/viewdocument?DocumentKey=001f5e09-88b4-4a9a-b310-4c20578eecf9&CommunityKey=1ecf5f55-9545-44d6-b0f4-4e4a7f5f5e68&tab=librarydocuments



Which of the following framework describes the essential characteristics of an organization's security engineering process that must exist to ensure good security engineering?

  1. COBIT
  2. ITIL
  3. SSE-CMM
  4. SOC-CMM

Answer(s): C


Reference:

https://www.iso.org/standard/44716.html



What does Windows event ID 4740 indicate?

  1. A user account was locked out.
  2. A user account was disabled.
  3. A user account was enabled.
  4. A user account was created.

Answer(s): A


Reference:

https://docs.microsoft.com/en-us/windows/security/threat-protection/auditing/event-4740#:~:text=For%204740(S)%3A%20A,Security%20ID”%20is%20not%20SYSTEM.



Which of the following is a Threat Intelligence Platform?

  1. SolarWinds MS
  2. TC Complete
  3. Keepnote
  4. Apility.io

Answer(s): A


Reference:

https://www.esecurityplanet.com/products/threat-intelligence-platforms/






Post your Comments and Discuss EC-Council 312-39 exam with other Community members:

312-39 Discussions & Posts