🔥 3-day streak
Cisco CCNA Cybersecurity (200-201 CCNACBR)39 / 145
Question 39 of 145
A SOC analyst reviews an alert from an intrusion detection system that flagged inbound traffic to a web server as an active SQL injection attack. After investigation, the analyst confirms the traffic was a legitimate scheduled scan by the organization's authorized vulnerability assessment tool, and no actual malicious activity occurred. How should this alert be classified?
Reviewed for accuracy · Report an issueNext question