Soru

Zorluk: KolayVulnerability Scanning and Assessment

Match each vulnerability assessment scan approach with its corresponding operational description.

  • Credentialed ScanUses administrative access to inspect local host configurations and missing security patches directly.
  • Non-Credentialed ScanExamines open ports and listening services from an unauthenticated network perspective.
  • Intrusive ScanAttempts to actively exploit discovered weaknesses, carrying a risk of service disruption.

Cevap

Credentialed Scan pairs with using administrative access for internal patch checks; Non-Credentialed Scan pairs with examining unauthenticated network services; Intrusive Scan pairs with actively exploiting weaknesses with disruption risk.
Credentialed scanning uses administrative privileges to check internal host states, non-credentialed scanning evaluates exposed network services without access permissions, and intrusive scanning actively verifies vulnerability exploitability with potential operational impact.

Adım Adım Çözüm

1
Analyze the authentication requirement of each scanning method.
Credentialed scans use authorized accounts to perform inside-out administrative checks, whereas non-credentialed scans inspect systems outside-in without credentials.
Differentiating access capabilities defines host-level vs network-level inspection.
2
Evaluate the operational impact and active testing behavior.
Intrusive scanning actively simulates exploits to verify vulnerability presence, distinguishing it from passive or non-intrusive measurement techniques.
Identifying operational risk separates discovery scans from exploitation attempts.

Anahtar Kavram

Vulnerability scanning modes and operational characteristics
Tahmini Süre:1m 0s
Bu soruyu puanla