Palo Alto Networks Certified Detection and Remediation Analyst - PCDRA 模擬練習

What is the purpose of targeting software vendors in a supply-chain attack?

正解: A
解説: (PassTest メンバーにのみ表示されます)
When creating a scheduled report which is not an option?

正解: B
解説: (PassTest メンバーにのみ表示されます)
Phishing belongstowhich of the following MITRE ATT&CK tactics?

正解: C
解説: (PassTest メンバーにのみ表示されます)
How can you pivot within a row to Causality view and Timeline views for further investigate?

正解: D
解説: (PassTest メンバーにのみ表示されます)
In the deployment of which Broker VM applet are you required to install a strong cipher SHA256-based SSL certificate?

正解: D
解説: (PassTest メンバーにのみ表示されます)
As a Malware Analyst working with Cortex XDR you notice an alert suggesting that there was a prevented attempt to download Cobalt Strike on one of your servers. Days later, you learn about a massive ongoing supply chain attack. Using Cortex XDR you recognize that your server was compromised by the attack and that Cortex XDR prevented it. What steps can you take to ensure that the same protection is extended to all your servers?

正解: B
解説: (PassTest メンバーにのみ表示されます)
In the Cortex XDR console, from which two pages are you able to manually perform the agent upgrade action?
(Choose two.)

正解: B,D
解説: (PassTest メンバーにのみ表示されます)
Which Exploit Prevention Module (EPM) provides better entropy for randomization of memory locations?

正解: A
解説: (PassTest メンバーにのみ表示されます)
What functionality of the Broker VM would you use to ingest third-party firewall logs to the Cortex Data Lake?

正解: D
解説: (PassTest メンバーにのみ表示されます)
What is the purpose of the Cortex Data Lake?

正解: C
解説: (PassTest メンバーにのみ表示されます)