CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 901–950 of 5,000 matching questions

50 per page
0901
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-901), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0902
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-902), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Reduce unnecessary public exposure and monitor for leaked organizational information.
Practice
0903
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-903), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0904
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-904), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0905
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-905), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0906
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-906), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Reduce unnecessary public exposure and monitor for leaked organizational information.
Practice
0907
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-907), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0908
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-908), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0909
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-909), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0910
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-910), which action most directly controls the risk related to "active reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0911
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-911), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. OSINT findings documented with source, date, relevance, and confidence.
Practice
0912
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-912), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
0913
Module 2 · Foundation Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-913), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. OSINT findings documented with source, date, relevance, and confidence.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
0914
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-914), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
0915
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-915), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Timestamped probe logs matched to the approved source and scope.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. OSINT findings documented with source, date, relevance, and confidence.
Practice
0916
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-916), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
0917
Module 2 · Applied Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-917), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
0918
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-918), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. OSINT findings documented with source, date, relevance, and confidence.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
0919
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-919), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Timestamped probe logs matched to the approved source and scope.
  4. OSINT findings documented with source, date, relevance, and confidence.
Practice
0920
Module 2 · Advanced Domain 2 · Analysis / Assessment active reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-920), which evidence best supports an assessment of "active reconnaissance"?

View answer choices
  1. OSINT findings documented with source, date, relevance, and confidence.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
0921
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-921), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Information gathering performed without directly interacting with the target systems.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
0922
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-922), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Information gathering performed without directly interacting with the target systems.
Practice
0923
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-923), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Information gathering performed without directly interacting with the target systems.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
0924
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-924), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Information gathering performed without directly interacting with the target systems.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
0925
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-925), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Information gathering performed without directly interacting with the target systems.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
0926
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-926), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Information gathering performed without directly interacting with the target systems.
Practice
0927
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-927), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Information gathering performed without directly interacting with the target systems.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
0928
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-928), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Information gathering performed without directly interacting with the target systems.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
0929
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-929), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Information gathering performed without directly interacting with the target systems.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
0930
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-930), which statement most accurately defines "passive reconnaissance"?

View answer choices
  1. Information gathering performed without directly interacting with the target systems.
  2. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
0931
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-931), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0932
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-932), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Public information can reveal employees, technologies, locations, and attack paths.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0933
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-933), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0934
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-934), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Public information can reveal employees, technologies, locations, and attack paths.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0935
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-935), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0936
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-936), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Public information can reveal employees, technologies, locations, and attack paths.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
0937
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-937), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0938
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-938), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Public information can reveal employees, technologies, locations, and attack paths.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
0939
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-939), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Public information can reveal employees, technologies, locations, and attack paths.
Practice
0940
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-940), which risk is most directly associated with "passive reconnaissance"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Public information can reveal employees, technologies, locations, and attack paths.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
0941
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During an authorized retail-company assessment (RET-LAB-M02-941), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Reduce unnecessary public exposure and monitor for leaked organizational information.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0942
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a hospital incident-response exercise (HLT-SOC-M02-942), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Reduce unnecessary public exposure and monitor for leaked organizational information.
Practice
0943
Module 2 · Foundation Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a university cyber-range engagement (EDU-RANGE-M02-943), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0944
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a financial-services purple-team test (FIN-PT-M02-944), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0945
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a cloud startup security audit (CLD-AUDIT-M02-945), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Reduce unnecessary public exposure and monitor for leaked organizational information.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0946
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a government risk-validation project (GOV-RISK-M02-946), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Reduce unnecessary public exposure and monitor for leaked organizational information.
Practice
0947
Module 2 · Applied Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During an e-commerce application review (ECOM-WEB-M02-947), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Reduce unnecessary public exposure and monitor for leaked organizational information.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
0948
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a manufacturing and OT security review (MFG-OT-M02-948), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Define permitted techniques and rates in the rules of engagement.
  2. Reduce unnecessary public exposure and monitor for leaked organizational information.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
0949
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a mobile-services penetration test (MOB-TEST-M02-949), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Reduce unnecessary public exposure and monitor for leaked organizational information.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
0950
Module 2 · Advanced Domain 2 · Analysis / Assessment passive reconnaissance Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M02-950), which action most directly controls the risk related to "passive reconnaissance"?

View answer choices
  1. Reduce unnecessary public exposure and monitor for leaked organizational information.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice