CompTIA CySA+ CS0-003 Practice Question
A company has noticed a sudden increase in network bandwidth consumption, unexpected outbound communication from multiple endpoints, and anomalies in server logs. Which of the following actions should the incident response team prioritize to identify and mitigate the threat?
Initiating a packet capture to analyze network traffic
Reviewing server logs for anomalies
Checking for unauthorized privileges on user accounts
Scanning endpoints for malware