Multiple Choice
A forensic analyst suspects that a buffer overflow exists in a kernel module. The analyst executes the following command: However, the analyst is unable to find any evidence of the running shell. Which of the following of the MOST likely reason the analyst cannot find a process ID for the shell?
A) The NX bit is enabled
B) The system uses ASLR
C) The shell is obfuscated
D) The code uses dynamic libraries
Correct Answer:

Verified
Correct Answer:
Verified
Q289: A breach was caused by an insider
Q290: An organization wants to arm its cybersecurity
Q291: The Chief Information Security Officer (CISO) of
Q292: A company is migrating systems from an
Q293: As a result of an acquisition, a
Q295: A security analyst is classifying data based
Q296: A company has decided to lower costs
Q297: An electric car company hires an IT
Q298: A systems administrator has deployed the latest
Q299: A newly hired Chief Information Security Officer