Quiz 14 Question 8 of 20

A SIEM analyst creates a detection rule that fires when a user account logs in successfully after 5 or more failed attempts within 10 minutes. What attack does this detect and what are the potential false positive scenarios?

Select an answer to reveal the explanation.

Motivation