A cybersecurity analyst needs to assess internal enterprise servers for missing software security patches and configuration flaws without sending intrusive exploit payloads or generating heavy network traffic across the subnet. Which of the following vulnerability assessment methods should the analyst perform?
- A credentialed vulnerability scanCevap
- BAn inline honeypot deployment to intercept probe traffic
- CA perimeter firewall rule adjustment to block scan ports
- DA Cross-Site Scripting (XSS) payload sweep against database ports
Cevap
The analyst should perform a credentialed vulnerability scan.
A credentialed vulnerability scan uses valid system credentials to authenticate directly onto host systems. This permits the scan engine to inspect internal registry keys, patch management records, and software configurations with minimal network bandwidth usage and without executing invasive attack probes.
Adım Adım Çözüm
Anahtar Kavram
Credentialed Vulnerability Scanning
Tahmini Süre:50s