medium
Single Answer
0

Katie’s organization uses an IoC feed that helps her to identify new threats. A recent feed update includes the following hash for Emotet malware: cecc5bba6193d744837e689e68bc25c43eda7235 Where is Katie most likely going to be able to use this hash to identify potential attacks?

Answer Options

A

Via her EDR tools

B

Via her firewall

C

Via her system logs

D

All of the above

Correct Answer: A

Explanation

Endpoint detection and response (EDR) tools are most likely to use hashing to match known malicious files like this. Firewalls may provide the capability, but system logs do not, ruling out the “all of the above” option.