IT 342 - QUIZ 5.5.7 QUESTIONS WITH VERIFIED
ANSWERS
You're the security administrator for the local hospital, and you've discovered that the
hospital's network was the target of a recent cyberattack. During the investigation, you
discover that the hacker gained initial access to the network through a user account.
Now, you need to continue your forensics investigation to discover where else the
hacker gained access and what damage they may've caused. You decide to enlist the
help of some IT personnel. You give them temporary administrator access to help with
the investigation and to secure any affected systems.
Which type of user account are you creating? - Answers - Emergency account
You're the security administrator for a small consulting firm whose network has been the
victim of a ransomware attack. They've decided to pay the ransom to regain their data,
but you've been tasked with investigating the attack so that the vulnerabilities can be
patched to hopefully prevent future scenarios like this one.
During your investigation, you discover that the hacker gained initial access to the
network through a user account. From there, the hacker was able to gain access to a
domain service account. From this account, the hacker ran some custom scripts that
exploited vulnerabilities in the network, which gave them access to a domain
administrator account. With this privileged account, the attacker was able to execute
their ransomware attack.
Which type of attack was carried out by the hacker? - Answers - Human-operated
ransomware
You're the security administrator for a small consulting firm whose network has been the
victim of a ransomware attack. The firm decided to pay the ransom to regain their data,
but you've been tasked with investigating the attack so that the vulnerabilities can be
patched to hopefully prevent scenarios like this in the future.
During your investigation, you discover that the hacker gained initial access to the
network through a user account. From there, the hacker was able to gain access to a
domain service account. From this account, they ran some custom scripts that exploited
vulnerabilities in the network, which gave them access to a domain administrator
account. With this privileged account, the attacker was able to execute their
ransomware attack.
You've decided to implement a zero-trust policy to help prevent this type of attack from
occurring in the future. You need to ensure that you apply the policy across a - Answers
- Identities
You're the security administrator for a small consulting firm whose network has been the
victim of a ransomware attack. The firm decided to pay the ransom to regain their data,
but you've been tasked with investigating the attack so that the vulnerabilities can be
patched to hopefully prevent scenarios like this one in the future.
ANSWERS
You're the security administrator for the local hospital, and you've discovered that the
hospital's network was the target of a recent cyberattack. During the investigation, you
discover that the hacker gained initial access to the network through a user account.
Now, you need to continue your forensics investigation to discover where else the
hacker gained access and what damage they may've caused. You decide to enlist the
help of some IT personnel. You give them temporary administrator access to help with
the investigation and to secure any affected systems.
Which type of user account are you creating? - Answers - Emergency account
You're the security administrator for a small consulting firm whose network has been the
victim of a ransomware attack. They've decided to pay the ransom to regain their data,
but you've been tasked with investigating the attack so that the vulnerabilities can be
patched to hopefully prevent future scenarios like this one.
During your investigation, you discover that the hacker gained initial access to the
network through a user account. From there, the hacker was able to gain access to a
domain service account. From this account, the hacker ran some custom scripts that
exploited vulnerabilities in the network, which gave them access to a domain
administrator account. With this privileged account, the attacker was able to execute
their ransomware attack.
Which type of attack was carried out by the hacker? - Answers - Human-operated
ransomware
You're the security administrator for a small consulting firm whose network has been the
victim of a ransomware attack. The firm decided to pay the ransom to regain their data,
but you've been tasked with investigating the attack so that the vulnerabilities can be
patched to hopefully prevent scenarios like this in the future.
During your investigation, you discover that the hacker gained initial access to the
network through a user account. From there, the hacker was able to gain access to a
domain service account. From this account, they ran some custom scripts that exploited
vulnerabilities in the network, which gave them access to a domain administrator
account. With this privileged account, the attacker was able to execute their
ransomware attack.
You've decided to implement a zero-trust policy to help prevent this type of attack from
occurring in the future. You need to ensure that you apply the policy across a - Answers
- Identities
You're the security administrator for a small consulting firm whose network has been the
victim of a ransomware attack. The firm decided to pay the ransom to regain their data,
but you've been tasked with investigating the attack so that the vulnerabilities can be
patched to hopefully prevent scenarios like this one in the future.