Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC Exam GCCC Topic 5 Question 59 Discussion

Actual exam question for GIAC's GCCC exam
Question #: 59
Topic #: 5
[All GCCC Questions]

An Internet retailer's database was recently exploited by a foreign criminal organization via a remote attack. The initial exploit resulted in immediate root-level access. What could have been done to prevent this level of access being given to the intruder upon successful exploitation?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

Dong
4 days ago
A) Configuring the DMZ firewall is a good idea, but it wouldn't have prevented the initial root-level access. We need to focus on the database itself.
upvoted 0 times
...
Junita
9 days ago
But wouldn't installing host integrity monitoring software also help in detecting and preventing such attacks?
upvoted 0 times
...
Audria
10 days ago
I agree with Keshia, that would have prevented the intruder from gaining root-level access.
upvoted 0 times
...
Alex
15 days ago
D) Configure the database to run with lower privileges seems like the best option here. Limiting the access rights of the database can really help contain the damage from such an exploit.
upvoted 0 times
...
Keshia
24 days ago
We should have configured the DMZ firewall to block unnecessary services.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77