CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 1,351–1,400 of 5,000 matching questions

50 per page
1351
Module 3 · Foundation Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During an authorized retail-company assessment (RET-LAB-M03-1351), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Multiple fingerprint signals with a confidence score rather than one banner alone.
Practice
1352
Module 3 · Foundation Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a hospital incident-response exercise (HLT-SOC-M03-1352), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Multiple fingerprint signals with a confidence score rather than one banner alone.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
1353
Module 3 · Foundation Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a university cyber-range engagement (EDU-RANGE-M03-1353), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Multiple fingerprint signals with a confidence score rather than one banner alone.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
1354
Module 3 · Applied Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a financial-services purple-team test (FIN-PT-M03-1354), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Multiple fingerprint signals with a confidence score rather than one banner alone.
  2. Authoritative DNS responses and a validated map of relevant record types.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
1355
Module 3 · Applied Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a cloud startup security audit (CLD-AUDIT-M03-1355), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Multiple fingerprint signals with a confidence score rather than one banner alone.
Practice
1356
Module 3 · Applied Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a government risk-validation project (GOV-RISK-M03-1356), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Multiple fingerprint signals with a confidence score rather than one banner alone.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
1357
Module 3 · Applied Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During an e-commerce application review (ECOM-WEB-M03-1357), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Multiple fingerprint signals with a confidence score rather than one banner alone.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
1358
Module 3 · Advanced Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a manufacturing and OT security review (MFG-OT-M03-1358), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Multiple fingerprint signals with a confidence score rather than one banner alone.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
1359
Module 3 · Advanced Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a mobile-services penetration test (MOB-TEST-M03-1359), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Multiple fingerprint signals with a confidence score rather than one banner alone.
Practice
1360
Module 3 · Advanced Domain 2 · Analysis / Assessment operating-system fingerprinting Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M03-1360), which evidence best supports an assessment of "operating-system fingerprinting"?

View answer choices
  1. Multiple fingerprint signals with a confidence score rather than one banner alone.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
1361
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During an authorized retail-company assessment (RET-LAB-M03-1361), which statement most accurately defines "port scanning"?

View answer choices
  1. Information gathering that directly interacts with target infrastructure or personnel.
  2. Systematic probing of transport ports to infer open, closed, or filtered services.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
1362
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a hospital incident-response exercise (HLT-SOC-M03-1362), which statement most accurately defines "port scanning"?

View answer choices
  1. Systematic probing of transport ports to infer open, closed, or filtered services.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
1363
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a university cyber-range engagement (EDU-RANGE-M03-1363), which statement most accurately defines "port scanning"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Systematic probing of transport ports to infer open, closed, or filtered services.
Practice
1364
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a financial-services purple-team test (FIN-PT-M03-1364), which statement most accurately defines "port scanning"?

View answer choices
  1. Systematic probing of transport ports to infer open, closed, or filtered services.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
1365
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a cloud startup security audit (CLD-AUDIT-M03-1365), which statement most accurately defines "port scanning"?

View answer choices
  1. Information gathering that directly interacts with target infrastructure or personnel.
  2. Systematic probing of transport ports to infer open, closed, or filtered services.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
1366
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a government risk-validation project (GOV-RISK-M03-1366), which statement most accurately defines "port scanning"?

View answer choices
  1. Systematic probing of transport ports to infer open, closed, or filtered services.
  2. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  3. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  4. Information gathering that directly interacts with target infrastructure or personnel.
Practice
1367
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During an e-commerce application review (ECOM-WEB-M03-1367), which statement most accurately defines "port scanning"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Systematic probing of transport ports to infer open, closed, or filtered services.
Practice
1368
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a manufacturing and OT security review (MFG-OT-M03-1368), which statement most accurately defines "port scanning"?

View answer choices
  1. Systematic probing of transport ports to infer open, closed, or filtered services.
  2. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
Practice
1369
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a mobile-services penetration test (MOB-TEST-M03-1369), which statement most accurately defines "port scanning"?

View answer choices
  1. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  2. Systematic probing of transport ports to infer open, closed, or filtered services.
  3. Information gathering that directly interacts with target infrastructure or personnel.
  4. Review of domain registration and registrar information to understand ownership and infrastructure clues.
Practice
1370
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M03-1370), which statement most accurately defines "port scanning"?

View answer choices
  1. Review of domain registration and registrar information to understand ownership and infrastructure clues.
  2. Information gathering that directly interacts with target infrastructure or personnel.
  3. Analysis of DNS records and delegation to map names, services, mail, and infrastructure.
  4. Systematic probing of transport ports to infer open, closed, or filtered services.
Practice
1371
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During an authorized retail-company assessment (RET-LAB-M03-1371), which risk is most directly associated with "port scanning"?

View answer choices
  1. Open services expand attack surface and may expose vulnerable applications.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
1372
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a hospital incident-response exercise (HLT-SOC-M03-1372), which risk is most directly associated with "port scanning"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Open services expand attack surface and may expose vulnerable applications.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
1373
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a university cyber-range engagement (EDU-RANGE-M03-1373), which risk is most directly associated with "port scanning"?

View answer choices
  1. Open services expand attack surface and may expose vulnerable applications.
  2. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
1374
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a financial-services purple-team test (FIN-PT-M03-1374), which risk is most directly associated with "port scanning"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Open services expand attack surface and may expose vulnerable applications.
Practice
1375
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a cloud startup security audit (CLD-AUDIT-M03-1375), which risk is most directly associated with "port scanning"?

View answer choices
  1. Open services expand attack surface and may expose vulnerable applications.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
1376
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a government risk-validation project (GOV-RISK-M03-1376), which risk is most directly associated with "port scanning"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Open services expand attack surface and may expose vulnerable applications.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
1377
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During an e-commerce application review (ECOM-WEB-M03-1377), which risk is most directly associated with "port scanning"?

View answer choices
  1. Open services expand attack surface and may expose vulnerable applications.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
Practice
1378
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a manufacturing and OT security review (MFG-OT-M03-1378), which risk is most directly associated with "port scanning"?

View answer choices
  1. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  2. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  3. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  4. Open services expand attack surface and may expose vulnerable applications.
Practice
1379
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a mobile-services penetration test (MOB-TEST-M03-1379), which risk is most directly associated with "port scanning"?

View answer choices
  1. Open services expand attack surface and may expose vulnerable applications.
  2. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  3. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
  4. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
Practice
1380
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M03-1380), which risk is most directly associated with "port scanning"?

View answer choices
  1. Direct probes can trigger defenses, affect services, or exceed authorized boundaries.
  2. Open services expand attack surface and may expose vulnerable applications.
  3. Overexposed records and unauthorized zone transfers can reveal internal naming and services.
  4. Exposed registration details can support targeting, impersonation, or infrastructure mapping.
Practice
1381
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During an authorized retail-company assessment (RET-LAB-M03-1381), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Close unnecessary ports and detect abnormal connection patterns.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
1382
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a hospital incident-response exercise (HLT-SOC-M03-1382), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  4. Close unnecessary ports and detect abnormal connection patterns.
Practice
1383
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a university cyber-range engagement (EDU-RANGE-M03-1383), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Close unnecessary ports and detect abnormal connection patterns.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
1384
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a financial-services purple-team test (FIN-PT-M03-1384), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Close unnecessary ports and detect abnormal connection patterns.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
1385
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a cloud startup security audit (CLD-AUDIT-M03-1385), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Close unnecessary ports and detect abnormal connection patterns.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
1386
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a government risk-validation project (GOV-RISK-M03-1386), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Close unnecessary ports and detect abnormal connection patterns.
Practice
1387
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During an e-commerce application review (ECOM-WEB-M03-1387), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Close unnecessary ports and detect abnormal connection patterns.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Use appropriate registration privacy and monitor unauthorized domain changes.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
1388
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a manufacturing and OT security review (MFG-OT-M03-1388), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  2. Define permitted techniques and rates in the rules of engagement.
  3. Close unnecessary ports and detect abnormal connection patterns.
  4. Use appropriate registration privacy and monitor unauthorized domain changes.
Practice
1389
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a mobile-services penetration test (MOB-TEST-M03-1389), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Close unnecessary ports and detect abnormal connection patterns.
  2. Use appropriate registration privacy and monitor unauthorized domain changes.
  3. Define permitted techniques and rates in the rules of engagement.
  4. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
Practice
1390
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M03-1390), which action most directly controls the risk related to "port scanning"?

View answer choices
  1. Use appropriate registration privacy and monitor unauthorized domain changes.
  2. Restrict transfers, split sensitive namespaces, and monitor DNS changes.
  3. Close unnecessary ports and detect abnormal connection patterns.
  4. Define permitted techniques and rates in the rules of engagement.
Practice
1391
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During an authorized retail-company assessment (RET-LAB-M03-1391), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. A scan result validated against packet capture and the host listening-service inventory.
Practice
1392
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a hospital incident-response exercise (HLT-SOC-M03-1392), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. A scan result validated against packet capture and the host listening-service inventory.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Registrar records showing nameservers, dates, status codes, and registration contacts.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
1393
Module 3 · Foundation Domain 2 · Analysis / Assessment port scanning Unanswered

During a university cyber-range engagement (EDU-RANGE-M03-1393), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. A scan result validated against packet capture and the host listening-service inventory.
  3. Timestamped probe logs matched to the approved source and scope.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
1394
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a financial-services purple-team test (FIN-PT-M03-1394), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. A scan result validated against packet capture and the host listening-service inventory.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
1395
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a cloud startup security audit (CLD-AUDIT-M03-1395), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. A scan result validated against packet capture and the host listening-service inventory.
Practice
1396
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During a government risk-validation project (GOV-RISK-M03-1396), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. A scan result validated against packet capture and the host listening-service inventory.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice
1397
Module 3 · Applied Domain 2 · Analysis / Assessment port scanning Unanswered

During an e-commerce application review (ECOM-WEB-M03-1397), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Timestamped probe logs matched to the approved source and scope.
  3. A scan result validated against packet capture and the host listening-service inventory.
  4. Registrar records showing nameservers, dates, status codes, and registration contacts.
Practice
1398
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a manufacturing and OT security review (MFG-OT-M03-1398), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. A scan result validated against packet capture and the host listening-service inventory.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Authoritative DNS responses and a validated map of relevant record types.
  4. Timestamped probe logs matched to the approved source and scope.
Practice
1399
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a mobile-services penetration test (MOB-TEST-M03-1399), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Authoritative DNS responses and a validated map of relevant record types.
  2. Registrar records showing nameservers, dates, status codes, and registration contacts.
  3. Timestamped probe logs matched to the approved source and scope.
  4. A scan result validated against packet capture and the host listening-service inventory.
Practice
1400
Module 3 · Advanced Domain 2 · Analysis / Assessment port scanning Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M03-1400), which evidence best supports an assessment of "port scanning"?

View answer choices
  1. Registrar records showing nameservers, dates, status codes, and registration contacts.
  2. Timestamped probe logs matched to the approved source and scope.
  3. A scan result validated against packet capture and the host listening-service inventory.
  4. Authoritative DNS responses and a validated map of relevant record types.
Practice