A security administrator needs to conduct a vulnerability assessment on internal workstations to identify missing operating system patches and software misconfigurations with high accuracy and a minimal false-positive rate. Which of the following testing methods should the administrator perform?
- Credentialed vulnerability scanAnswer
- BNon-credentialed vulnerability scan
- CPassive network traffic monitoring
- DHoneypot deployment
Answer
Credentialed vulnerability scan
A credentialed vulnerability scan uses system authentication credentials to access local system resources directly. This allows the scanner to accurately audit missing operating system patches, installed applications, and local security configurations with a very low rate of false positives.
Step-by-Step Solution
Key Concept
Credentialed vs. Non-Credentialed Vulnerability Scanning