Which two tools used for incident detection can be used to detect anomalous behavior, to detect command and control traffic, and to detect infected hosts? (Choose two.)
- intrusion detection system
- Honeypot
- NetFlow
- Nmap
- a reverse proxy server
Explanation: Although each of these tools is useful for securing networks and detecting vulnerabilities, only an IDS and NetFlow logging can be used to detect anomalous behavior, command and control traffic, and infected hosts.
Exam with this question: Introduction to Cybersecurity v2 EOC Assessment - Final Exam
Please login or Register to submit your answer