Prisma Certified Cloud Security Engineer (PCCSE) — Question 75
Under which tactic is “Exploit Public-Facing Application” categorized in the ATT&CK framework?
Answer options
- A. Defense Evasion
- B. Initial Access
- C. Execution
- D. Privilege Escalation
Correct answer: B
Explanation
The correct answer is B, Initial Access, as exploiting public-facing applications is a method attackers use to gain entry into a network. The other options, such as Defense Evasion and Privilege Escalation, pertain to different stages of an attack lifecycle and do not specifically involve gaining initial access.