QuestionQ49
Threat Hunting ProcessesThe Security Operations Center receives two security information and event management alerts about two distinct possible attacks. The first alert involves brute-force attempts against a domain controller, and the second concerns network flooding. After an initial investigation, the team validates both alerts and starts a detailed investigation.
According to the CAPEC model, which vulnerability criterion should the team prioritize during the investigation?
Community Discussion