Triage a suspicious remote login using containment and reporting decisions.
Suspicious login Lina sees a sign-in alert from a city she is not in. She is on a trusted home network, but the alert may reflect a stolen password or session attempt. The first clicks determine whether the investigation has clean evidence. Containment path Deny → secure → report A suspicious remote-login signal is handled as evidence. Do not approve mystery prompts, do not explore from the suspicious route, and do not delay reporting while you self-investigate. React Approve, poke around, hope it was nothing. Security gets cleaner signal and the account exposure window shrinks. The safe sequence protects both…
Sign up free — one personalized lesson every day, matched to your role and goals.
Already have an account? Sign in