Exam PSE Strata All QuestionsBrowse all questions from this exam
Question 95

Which two configuration elements can be used to prevent abuse of stolen credentials? (Choose two.)

    Correct Answer: A, D

    Multi-factor authentication (MFA) adds an additional layer of security by requiring a second form of verification beyond just the password, making it much harder for stolen credentials to be misused. Dynamic user groups (DUGs) can help by allowing the creation of policies that dynamically adapt based on user behavior and risk, providing a way to detect and block the abuse of stolen credentials. URL Filtering Profiles primarily help with preventing phishing but do not directly prevent the abuse of already stolen credentials. WildFire analysis focuses on identifying malware, which is unrelated to preventing the misuse of stolen credentials.

Discussion
EiffelsturmOptions: AD

A&D. Yes, you enable Credential detection in an URL Filtering Profile but the question asks how to prevent the "abuse" of already stole credentials. MFA is clear. And you can use DUG to tag users where credentials already have been submitted and block them. Your thoughts?

ArangoTopicsOptions: AB

Correct answers are A and B. URL-F is mandatory to be enabled and MFA helps to ensure user authentication. WF analysis is focused on identifie unknown malware by inspecting files. https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/url-filtering/prevent-credential-phishing

yet_another_userOptions: AB

See explanation from homersimpson, it is A and B

homersimpson

Correct Answer is A & B "To enable credential phishing prevention, you must configure both User-ID to detect when users submit valid corporate credentials to a site (as opposed to personal credentials) and URL Filtering to specify the URL categories in which you want to prevent users from entering their corporate credentials." https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/url-filtering/prevent-credential-phishing

hifumi_daisukiOptions: AB

Same type as Question Q21 https://www.examtopics.com/discussions/palo-alto-networks/view/84155-exam-pse-strata-topic-1-question-21-discussion/

cristiansituOptions: AB

Correct A y B

RobesqueOptions: AD

MFA is clear. Dynamic user groups provide valuable visibility and control over user activity, helping organizations detect and prevent the abuse of stolen credentials in real-time.

ck19Options: AB

AB are correct

cristiansituOptions: AC

A y C correct https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/url-filtering/prevent-credential-phishing

cristiansitu

A y C correct