CLF-C02 Question 329
Single answerYou notice unusual activity in your AWS environment that appears to be originating from a third party using AWS resources to send phishing emails. What is the most appropriate action to take to report this abuse to AWS?
- A
Contact the AWS Trust and Safety team by submitting a report through the AWS Abuse form.
- B
Open a support ticket in the AWS Management Console under the Billing category.
- C
Send an email directly to the AWS data center where the activity is taking place.
- D
Block the IP address of the suspected resource using your security group rules and take no further action.
Show answer and explanation
Correct answer: A
Explanation
The AWS Trust and Safety team is responsible for addressing abuse of AWS resources, including phishing, spam, and unauthorized activities. The most appropriate way to report such incidents is by submitting a report through the AWS Abuse form. This ensures the issue is reviewed and handled by the correct team.
- A. Correct.
This is correct. The AWS Trust and Safety team handles abuse reports, and the AWS Abuse form is the appropriate channel for reporting issues such as phishing, spam, or unauthorized activities involving AWS resources.
- B. Incorrect.
This is incorrect. Support tickets under the Billing category are not intended for abuse reports and will not reach the AWS Trust and Safety team.
- C. Incorrect.
This is incorrect. Directly contacting an AWS data center is not a valid method for reporting abuse, and such emails are unlikely to be addressed appropriately.
- D. Incorrect.
This is incorrect. Blocking the IP address may prevent further issues in your environment, but it does not address the broader abuse issue or notify AWS of the malicious activity.