Persistence Mechanism refers to methods used to do what?

Prepare for the SANS FOR508 Exam. Use flashcards and multiple-choice questions, each with hints and explanations. Maximize your readiness for the test!

Multiple Choice

Persistence Mechanism refers to methods used to do what?

Explanation:
Persistence mechanisms are about maintaining access to a system after it restarts or a user logs off. That’s why keeping malware persistent across reboots is the best answer: these techniques ensure the attacker’s foothold survives reboot and remains active without needing re-infection each time. Obfuscating code in memory is about hiding the malware from analysis, not about staying alive across reboots. Exfiltrating data to a command-and-control server focuses on stealing information, not how the malware remains present on the host. Scanning networks for shares is part of discovery or lateral movement, not persistence.

Persistence mechanisms are about maintaining access to a system after it restarts or a user logs off. That’s why keeping malware persistent across reboots is the best answer: these techniques ensure the attacker’s foothold survives reboot and remains active without needing re-infection each time. Obfuscating code in memory is about hiding the malware from analysis, not about staying alive across reboots. Exfiltrating data to a command-and-control server focuses on stealing information, not how the malware remains present on the host. Scanning networks for shares is part of discovery or lateral movement, not persistence.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy