After a security monitoring tool identifies a malware attachment entering the network, what is the benefit of performing a retrospective analysis?
- A retrospective analysis can help in tracking the behavior of the malware from the identification point forward.
- It can identify how the malware originally entered the network.
- It can determine which network host was first affected.
- It can calculate the probability of a future incident.
Answers Explanation & Hints:
General security monitoring can identify when a malware attachment enters a network and which host is first infected. Retrospective analysis takes the next step and is the tracking of the behavior of the malware from that point forward. |