Question: Some questions to ask when investigating a network include: what data was stolen / exfiltrated; what was the system doing before and after the event;

Some questions to ask when investigating a network include: what data was stolen/exfiltrated; what was the system doing before and after the event; how did malware get on the system; and is the same thing happening on other machines? What else might you attempt to do when investigating anomalous behavior?

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Programming Questions!