QuestionQ202

Managing System Security

John is a malicious attacker who illegally accesses the server of We-are-secure Inc. He then installs a backdoor on the We-are-secure server and modifies its log files.

Which malicious-hacking step includes modifying the server log files?

  • A Reconnaissance
  • B Maintaining access
  • C Covering tracks
  • D Gaining access
Explanation

Modifying or deleting log files conceals evidence of an intrusion and helps the attacker avoid detection. This activity is part of covering tracks.

Community Discussion

No comments yet. Be the first to start the discussion!