exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 459 discussion

Actual exam question from Isaca's CISM
Question #: 459
Topic #: 1
[All CISM Questions]

A spear phishing attack was used to trick a user into installing a Trojan onto a workstation. Which of the following would have been MOST effective in preventing this attack from succeeding?

  • A. Application control
  • B. Website blocking
  • C. Internet filtering
  • D. Network encryption
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ziggybooboo
Highly Voted 1 year, 2 months ago
App control would prevent the trojan from installing
upvoted 13 times
giovi
10 months, 2 weeks ago
I agree with you, but the question says "preventing this ATTACK from succeeding", so it's way before the App control, it's either provide awareness to the user or setting a filter at network level so the Trojan cannot be even downloaded.
upvoted 2 times
dark_3k03r
9 months ago
The attack doesn't succeed if it doesn't install. So @giovi, the answer of A is still correct.
upvoted 3 times
...
...
...
Jess20
Most Recent 1 month, 1 week ago
Selected Answer: A
A -Application control restricts the ability of an application to run or install on a device
upvoted 1 times
...
oluchecpoint
4 months ago
A. Application control Application control involves restricting and controlling the types of applications that can run on a workstation or network. By using application control, you can prevent unauthorized or unknown applications, including Trojans, from running. If a spear phishing attack attempts to install a Trojan, application control can block its execution, even if the user unknowingly attempts to run it. This helps protect the workstation from malware that might be delivered through phishing attacks.
upvoted 1 times
...
richck102
6 months, 2 weeks ago
A. Application control
upvoted 1 times
...
mad68
8 months ago
Selected Answer: A
The most effective way to prevent a spear phishing attack from succeeding is by using application control. Application control is a security practice that blocks unauthorized software from running on your computer. This can help prevent malware from being installed on your computer through spear phishing attacks
upvoted 1 times
...
Gr3yGh0sT
8 months, 2 weeks ago
Selected Answer: A
Gonna go with A here. Both make assumptions - i.e.. application control, are we talking app whitelisting or blacklisting? Whitelisting would definitely block. For internet filter - for it to work successfully, the URL would have to be categorized as malicious.
upvoted 2 times
...
Tsubasa1234
9 months, 1 week ago
Selected Answer: A
The most effective way to prevent this attack is A. Application Control. Spear phishing attacks are carried out by sending malicious emails to entice target users to install malicious applications. Using application control, the malicious application cannot be executed. Therefore, to prevent this attack, an effective application control policy must be used. b. Website blocking, c. Internet filtering, and d. Network encryption help monitor and block malicious websites, content, and communications, respectively but are ineffective against spear phishing attacks.
upvoted 1 times
...
MyKasala
1 year ago
Selected Answer: A
I think A
upvoted 2 times
...
g4g
1 year, 1 month ago
An Internet filter is software that restricts or controls the content an Internet user is capable to access, especially when utilized to restrict material delivered over the Internet via the Web, Email, or other means. Content-control software determines what content will be available or be blocked.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago