Lesson 33: Audit Log

Audit Log > MODULE 33 // COGNITIVE SCANNING Mission: Review the server security log below. Find out who logged in successfully, who failed to delete a file, and identifying suspicious activity. Hover over the dotted codes for meanings. System_Security_Log.txt Timestamp User ID Action Code Status 2025-10-12 08:30:05 admin_01 SYS_LOGIN Success 2025-10-12 09:15:22 staff_mark FILE_READ Success 2025-10-12 09:18:40 guest_user FILE_DELETE Denied 2025-10-12 10:00:00 unknown_ip AUTH_FAIL Blocked Security Check 1. Who successfully logged in at 08:30? admin_01 staff_mark guest_user 2. What did "guest_user" try to do? Read a file Delete a file Log in 3. What happened to the "unknown_ip"? Success Blocked Denied