🔍

CompTIA SecurityX (CAS-005) CAS-005 — Question 56

Topic 1 · Question 56 of 393

Topic 1 · Question 56

An analyst is working to address a potential compromise of a corporate endpoint and discovers the attacker accessed a user's credentials. However, it is unclear if the system baseline was modified to achieve persistence. Which of the following would most likely support forensic activities in this scenario?

View community discussion →