CompTIA CySA+ (CS0-002) — Question 78
A security analyst receives a CVE bulletin, which lists several products that are used in the enterprise. The analyst immediately deploys a critical security patch. Which of the following BEST describes the reason for the analyst’s immediate action?
Answer options
- A. Nation-state hackers are targeting the region.
- B. A new vulnerability was discovered by a vendor.
- C. A known exploit was discovered.
- D. A new zero-day threat needs to be addressed.
- E. There is an insider threat.
Correct answer: C
Explanation
The correct answer, C, indicates that a known exploit was discovered, which typically necessitates immediate action to protect systems. Options A, B, D, and E do not specifically address the urgency prompted by an existing exploit, making them less relevant in this context.