Q5
Single choice
An international e-commerce company has identified attack traffic originating from a whitelisted third party's IP address used to mask the third party's internal network. The security team needs to block the attack traffic without impacting the vendor's services.
Which of the following is the BEST approach to identify the threat?