CompTIA Security+ (SY0-701) — Question 561
Which of the following would most likely be deployed to obtain and analyze attacker activity and techniques?
Answer options
- A. Firewall
- B. IDS
- C. Honeypot
- D. Layer 3 switch
Correct answer: C
Explanation
A Honeypot is specifically designed to attract and trap attackers, allowing for detailed analysis of their techniques and activities. In contrast, a Firewall primarily blocks unauthorized access, an IDS detects intrusions but does not engage with attackers, and a Layer 3 switch manages network traffic without focusing on threat analysis.