A logistics coordinator reports that after downloading a third-party navigation utility onto a company smartphone from an untrusted web repository, the device began displaying persistent requests for elevated system rights and generating unauthorized background network activity. Which of the following actions should an IT technician take FIRST to remediate this security risk?
- Disconnect the smartphone from all Wi-Fi and cellular networks to isolate the device.Cevap
- BContact the cellular service provider to report a localized network outage and request a SIM swap.
- CReconfigure the device network settings to default to WPA2-Personal authentication.
- DGrant the application device administrator privileges to clear the system prompts.
Cevap
Disconnect the smartphone from all Wi-Fi and cellular networks to isolate the device.
The immediate first step in responding to a suspected mobile security compromise is isolation. Placing the device in Airplane mode or disabling all network adapters (cellular and Wi-Fi) stops unauthorized background communication and prevents data exfiltration.
Adım Adım Çözüm
Anahtar Kavram
Mobile Device Security Incident Containment