Antivirus (AV) vs. EDR vs. XDR Flashcards

1
Q

What is the primary focus of Antivirus (AV) tools?

A

Detects and removes known malware like viruses, worms, and Trojans.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

EDR stands for _______.

A

Endpoint Detection and Response.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

True or False: XDR is designed to provide cross-platform threat detection and response.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which tool uses signature-based detection to identify known threats?

A

Antivirus (AV)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What method does EDR use to detect threats?

A

Behavioral analysis, threat hunting, and real-time monitoring.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Fill in the blank: AV tools provide _______ protection against common malware.

A

baseline

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How does XDR correlate and detect threats?

A

Integrates data from multiple security tools (e.g., AV, EDR, etc.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

True or False: Antivirus tools are ideal for advanced threat hunting and incident investigation.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which type of security tool provides a holistic, cross-environment view for threat detection and response?

A

XDR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Fill in the blank: The scope of EDR is to monitor and respond to suspicious activities and threats on _______ endpoints.

A

individual

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the main usage of Antivirus (AV) tools?

A

Traditional protection against common threats but may struggle with advanced or unknown attacks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Comparison: Which tool offers deeper visibility and control, ideal for threat hunting and investigating incidents?

A

EDR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What purpose does XDR serve in cybersecurity?

A

Offers comprehensive security by connecting the dots between different security layers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

True or False: Antivirus tools can struggle with detecting unknown or advanced threats.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which type of tool is described as monitoring and responding to advanced threats on individual devices?

A

EDR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Fill in the blank: XDR integrates data and threat intelligence from multiple ______ sources to cover a broader range of endpoints and networks.

A

security

17
Q

What is the primary focus of XDR?

A

Provides cross-platform, holistic threat detection and response.

18
Q

Which security tool focuses on detecting and blocking known malware and viruses?

A

Antivirus (AV)

19
Q

Application: If an organization needs to enhance security by identifying unknown and targeted threats, which tool should they consider?

A

EDR

20
Q

Fill in the blank: AV tools use _______ detection to identify known threats.

A

signature-based

21
Q

Comparison: Which tool offers baseline protection against common malware, AV, EDR, or XDR?

A

AV

22
Q

What is the main advantage of using XDR over EDR and AV?

A

XDR provides a more holistic approach by integrating data across multiple security tools and sources.

23
Q

True or False: EDR focuses on individual endpoint protection and responds to advanced threats.

A

True

24
Q

Which method is primarily used by Antivirus (AV) tools?

A

Signature-based detection

25
Q

Which tool is ideal for monitoring and responding to advanced threats on individual endpoints?

A

EDR

26
Q

Fill in the blank: XDR offers a ______ environment view for better protection against complex attacks.

A

cross