A security administrator is preparing to perform a credentialed vulnerability scan on internal application servers. Which of the following represent primary advantages of using a credentialed vulnerability scan instead of an unauthenticated scan? (Select TWO.)
- Accurate identification of missing internal software patches and local configuration settingsCevap
- Significantly lower rate of false-positive vulnerability findings in scan reportsCevap
- CAutomated exploitation and immediate remediation of identified system flaws
- DReal-time inline filtering and blocking of malicious network traffic directed at target systems
Cevap
The correct advantages are accurate identification of missing internal software patches and local configuration settings, and a significantly lower rate of false-positive vulnerability findings in scan reports.
Credentialed (authenticated) vulnerability scans log directly into target host systems using administrative credentials. This allows the scanner to query local package management databases, inspect registry configurations, and verify exact software build numbers. As a result, credentialed scans provide precise patch visibility and drastically minimize false positives compared to unauthenticated network scans.
Adım Adım Çözüm
Anahtar Kavram
Credentialed vs. Unauthenticated Vulnerability Scanning
Tahmini Süre:50s