Q: 10
The
SOC
department
in
a
multinational
organization
has
collected
logs
of a
security
event
as
"Windows.events.evtx". Study the Audit Failure logs in the event log file located in the Documents
folder of the
-Attacker Maehine-1" and determine the IP address of the attacker. (Note: The event ID of Audit
failure logs is
4625.)
(Practical Question)
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.