セキュリティ アナリストは、複数の Windows マルウェア バイナリを対象とした調査を行っています。アナリストは、攻撃者に情報を開示せずに情報を収集したいと考えています。次のアクションのうち、アナリストが目的を達成できるのはどれですか?
正解:A
The best action that would allow the analyst to gather intelligence without disclosing information to the attackers is to upload the binary to an air gapped sandbox for analysis. An air gapped sandbox is an isolated environment that has no connection to any external network or system. Uploading the binary to an air gapped sandbox can prevent any communication or interaction between the binary and the attackers, as well as any potential harm or infection to other systems or networks. An air gapped sandbox can also allow the analyst to safely analyze and observe the behavior, functionality, or characteristics of the binary.