最新的GIAC iOS and macOS Examiner - GIME免費考試真題
Which command is used to kill a malicious process on macOS during an active incident response?
正確答案: B
Which SQL function is used to count the number of items in a selected set?
正確答案: D
Which log type is essential for understanding application behavior on a Mac?
正確答案: D
Which artifacts are commonly analyzed to reconstruct a user's pattern of life on macOS and iOS? (Select two)
正確答案: C,D
Where can iOS system configuration data typically be found during forensic analysis?
正確答案: A
What can be inferred from analyzing the configuration of a Mail application?
正確答案: D
During an investigation of an iPhone, you need to gather evidence of a suspect's recent locations. The Maps application shows several recent trips, but you are unsure of their exact destinations.
Which steps will you take to analyze the Maps application data to confirm the locations? (Select three correct answers)
Which steps will you take to analyze the Maps application data to confirm the locations? (Select three correct answers)
正確答案: B,D,E
What artifact within the Apple File System indicates application usage?
正確答案: B
In incident response, what indicates a potential security breach in an Apple operating system?
正確答案: C
For system triage, how can one identify the presence of network profiles?
正確答案: B
What is the significance of examining event artifacts in a forensic analysis?
正確答案: B