Soru

Zorluk: OrtaVulnerability Scanning and Assessment

A security analyst is selecting scanning techniques for various operational scenarios across an enterprise network. Match each vulnerability assessment technique to its corresponding characteristic or primary use case.

  • Credentialed Vulnerability ScanAccurately inspects local OS patch levels and host configurations while minimizing network noise and false positives.
  • Non-Credentialed Vulnerability ScanIdentifies externally exposed services and unpatched network-facing software from an unauthenticated attacker's perspective.
  • Passive Vulnerability AssessmentMonitors network traffic via a SPAN port or port mirror to detect active hosts and legacy protocols without sending probes.
  • Intrusive Vulnerability ScanSimulates exploitation scripts or aggressive checks to confirm vulnerability existence, incurring potential risk of system instability.

Cevap

Credentialed Vulnerability Scan matches with inspecting local OS patch levels and host configurations accurately with low false positives. Non-Credentialed Vulnerability Scan matches with identifying exposed services from an unauthenticated attacker's perspective. Passive Vulnerability Assessment matches with monitoring traffic via SPAN/mirror ports without sending probes. Intrusive Vulnerability Scan matches with simulating exploitation scripts with risk of system instability.
Each scanning technique is paired with its defining operational mechanism: credentialed scans use host logins to inspect software registries with high precision; non-credentialed scans simulate external network reconnaissance; passive scanning observes existing traffic via port mirrors; and intrusive scanning runs active verification checks that carry potential instability risks.

Adım Adım Çözüm

1
Analyze internal host configuration scanning needs
Identified Credentialed Vulnerability Scan as requiring local system access to inspect patch levels and registry entries directly.
Authenticating to target systems provides precise inventory and patch data with low false-positive rates.
2
Evaluate external threat posture assessment requirements
Identified Non-Credentialed Vulnerability Scan as probing network ports externally without authenticating.
Simulates an outside adversary analyzing public banner responses and exposed network listeners.
3
Examine operational constraints for sensitive or legacy infrastructure
Identified Passive Vulnerability Assessment as monitoring existing network traffic non-disruptively.
Listening to network traffic avoiding target interaction prevents service interruptions on sensitive systems.
4
Distinguish between vulnerability discovery and active verification risk
Identified Intrusive Vulnerability Scan as executing active checks that verify vulnerabilities by attempting benign exploitation.
Active verification confirms vulnerability impact but poses risk of service crashes.

Anahtar Kavram

Selecting appropriate vulnerability scanning methodologies based on authentication, network impact, and operational risk boundaries.
Bu soruyu puanla