CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 851–900 of 5,000 matching questions

50 per page
0851
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-851), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0852
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-852), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0853
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-853), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Public information can reveal employees, technologies, locations, and attack paths.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0854
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-854), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0855
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-855), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0856
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-856), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0857
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-857), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0858
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-858), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0859
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-859), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0860
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-860), which risk is most directly associated with "WHOIS reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0861
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-861), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Reduce unnecessary public exposure and monitor for leaked organizational information.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0862
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-862), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Reduce unnecessary public exposure and monitor for leaked organizational information.
Practice
0863
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-863), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0864
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-864), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0865
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-865), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Reduce unnecessary public exposure and monitor for leaked organizational information.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0866
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-866), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Reduce unnecessary public exposure and monitor for leaked organizational information.
Practice
0867
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-867), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0868
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-868), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0869
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-869), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0870
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-870), which action most directly controls the risk related to "WHOIS reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0871
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-871), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. OSINT findings documented with source, date, relevance, and confidence.
Practice
0872
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-872), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
0873
Module 2 · Foundation Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-873), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. OSINT findings documented with source, date, relevance, and confidence.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
0874
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-874), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
0875
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-875), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. OSINT findings documented with source, date, relevance, and confidence.
Practice
0876
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-876), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. OSINT findings documented with source, date, relevance, and confidence.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
0877
Module 2 · Applied Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-877), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. OSINT findings documented with source, date, relevance, and confidence.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
0878
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-878), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
0879
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-879), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. OSINT findings documented with source, date, relevance, and confidence.
Practice
0880
Module 2 · Advanced Domain 2 · Analysis / Assessment WHOIS reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-880), which evidence best supports an assessment of "WHOIS reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
0881
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-881), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Information gathering that directly interacts with target infrastructure or personnel.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Information gathering performed without directly interacting with the target systems.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
0882
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-882), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Information gathering performed without directly interacting with the target systems.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
0883
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-883), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Information gathering that directly interacts with target infrastructure or personnel.
  2. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Information gathering performed without directly interacting with the target systems.
Practice
0884
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-884), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Information gathering performed without directly interacting with the target systems.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
0885
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-885), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Information gathering that directly interacts with target infrastructure or personnel.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Information gathering performed without directly interacting with the target systems.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
0886
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-886), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Information gathering performed without directly interacting with the target systems.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
0887
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-887), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Information gathering that directly interacts with target infrastructure or personnel.
  2. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Information gathering performed without directly interacting with the target systems.
Practice
0888
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-888), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Information gathering performed without directly interacting with the target systems.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
0889
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-889), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Information gathering performed without directly interacting with the target systems.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
0890
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-890), which statement most accurately defines "active reconnaissance"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Information gathering performed without directly interacting with the target systems.
Practice
0891
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-891), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0892
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-892), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0893
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-893), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0894
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-894), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0895
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-895), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0896
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-896), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0897
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-897), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0898
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-898), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0899
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-899), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0900
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-900), which risk is most directly associated with "active reconnaissance"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice