During a security assessment, a penetration tester gains access to an internal server and manipulates some data to hide its presence. Which of the following is the best way for the penetration tester to hide the activities performed?
- AClear the Windows event logs. (correct answer)
- BModify the system time.
- CAlter the log permissions.
- DReduce the log retention settings.
Reveal answer & explanationHide answer
The correct answer is A. Option A: Clear the Windows event logs. This option keeps traffic private / properly secured as required.


