Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam ICS-SCADA All Questions

View all questions & answers for the ICS-SCADA exam

Exam ICS-SCADA topic 1 question 46 discussion

Actual exam question from ECCouncil's ICS-SCADA
Question #: 46
Topic #: 1
[All ICS-SCADA Questions]

Which of the monitor alerts is considered most dangerous?

  • A. True Positive
  • B. False Positive
  • C. False Negative
  • D. True Negative
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
pkumar_general
6 months, 1 week ago
False negatives are much more dangerous than false positives because they create a false sense of security. Here's why they occur: Evasive attacks: Sophisticated attackers can use techniques to bypass security measures. These might include zero-day attacks (exploiting unknown vulnerabilities) or file-less attacks that don't rely on traditional malware signatures. Security limitations: No security system is perfect. There will always be some level of risk that existing tools can't catch. This might be due to limitations in the technology itself or because attackers are constantly developing new methods. Incomplete security architecture: If a SOC's security posture relies solely on a negative security model (only allowing known good activity), it's more susceptible to false negatives. This approach gives attackers more opportunities to exploit gaps if their tactics avoid established threat patterns.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...