Which item is a File Artifact?

Enhance your cyber defense skills with the Security Blue Team Level 1 Test. Prepare with flashcards, multiple choice questions, and detailed explanations to ace your exam!

Multiple Choice

Which item is a File Artifact?

Explanation:
In file-related investigations, a file artifact is data that directly identifies a file itself. The attachment name is the best example because it specifies the actual file involved, such as a named document attached to the message. This directly ties to a file object, which you can later analyze, hash, or compare. The other items describe when something happened (date and time), where a resource is located (full URL), or who sent something (sending email address) but they don’t point to a specific file. So the attachment name is the clear file artifact.

In file-related investigations, a file artifact is data that directly identifies a file itself. The attachment name is the best example because it specifies the actual file involved, such as a named document attached to the message. This directly ties to a file object, which you can later analyze, hash, or compare. The other items describe when something happened (date and time), where a resource is located (full URL), or who sent something (sending email address) but they don’t point to a specific file. So the attachment name is the clear file artifact.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy