Answered step by step
Verified Expert Solution
Question
1 Approved Answer
In the event that it is not feasible to perform full packet capture, what alternative methods can be employed to gather useful data for threat
In the event that it is not feasible to perform full packet capture, what alternative methods can be employed to gather useful data for threat hunting purposes?
Select correct answers
Question options:
One option for collecting useful data for threat hunting when full packet capture PCAP is not possible is to review log files from various devices and systems, such as firewalls, security logs router logs and syslog information. This can help to provide insight into network activity and potential security threats.
Session data collection can provide useful information for threat hunting, as it is a flexible data collection method.
Examine alerts produced by various devices.
Update patches
Collect packet string data
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started