A forensic analyst suspects that a buffer overflow exists in a kernel module. The analyst executes the following command: However, the analyst is unable to find any evidence of the running shell. Which of the following of the MOST likely reason the analyst cannot find a process ID for the shell?
A) The NX bit is enabled
B) The system uses ASLR
C) The shell is obfuscated
D) The code uses dynamic libraries
Correct Answer:
Verified
Q275: A security engineer is designing a system
Q276: Ann, a member of the finance department
Q277: A security controls assessor intends to perform
Q278: An information security officer is responsible for
Q279: The Chief Information Officer (CISO) is concerned
Q281: After several industry competitors suffered data loss
Q282: A security manager recently categorized an information
Q283: As part of incident response, a technician
Q284: Within the past six months, a company
Q285: A project manager is working with system
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents