An administrator is reviewing a single server's security logs and discovers the following:
Which of the following best describes the action captured in this log file?
An administrator is reviewing a single server's security logs and discovers the following:
Which of the following best describes the action captured in this log file?
The log file shows multiple failed login attempts within a very short time frame, all with the same event ID and task category (Logon). This pattern is characteristic of a brute-force attack, where an attacker attempts numerous password combinations rapidly in hopes of eventually gaining access. Given the frequency and consistency of the failed login attempts, a brute-force attack is the most appropriate description of the action captured in the log file.
A. Brute-force attack The log shows multiple failed login attempts within a very short time frame, which is characteristic of a brute-force attack. In a brute-force attack, an attacker attempts many different passwords or passphrases with the hope of eventually guessing correctly. The pattern of frequent and continuous login failures seen in the log entries aligns with this type of attack. Therefore, the correct answer is: A. Brute-force attack