Question: Some questions to ask when investigating a network include: what data was stolen / exfiltrated; what was the system doing before and after the event;
Some questions to ask when investigating a network include: what data was stolenexfiltrated; what was the system doing before and after the event; how did malware get on the system; and is the same thing happening on other machines? What else might you attempt to do when investigating anomalous behavior?
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
