CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 1,801–1,850 of 5,000 matching questions

50 per page
1801
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During an authorized retail-company assessment (RET-LAB-M05-1801), which statement most accurately defines "patch management"?

View answer choices
  1. Governed identification, testing, deployment, and verification of software updates.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
1802
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a hospital incident-response exercise (HLT-SOC-M05-1802), which statement most accurately defines "patch management"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
1803
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a university cyber-range engagement (EDU-RANGE-M05-1803), which statement most accurately defines "patch management"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Governed identification, testing, deployment, and verification of software updates.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
1804
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a financial-services purple-team test (FIN-PT-M05-1804), which statement most accurately defines "patch management"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
1805
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a cloud startup security audit (CLD-AUDIT-M05-1805), which statement most accurately defines "patch management"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Governed identification, testing, deployment, and verification of software updates.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
1806
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a government risk-validation project (GOV-RISK-M05-1806), which statement most accurately defines "patch management"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. Governed identification, testing, deployment, and verification of software updates.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
1807
Module 5 · Applied Domain 3 · Security patch management Unanswered

During an e-commerce application review (ECOM-WEB-M05-1807), which statement most accurately defines "patch management"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Governed identification, testing, deployment, and verification of software updates.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
1808
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a manufacturing and OT security review (MFG-OT-M05-1808), which statement most accurately defines "patch management"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Governed identification, testing, deployment, and verification of software updates.
Practice
1809
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a mobile-services penetration test (MOB-TEST-M05-1809), which statement most accurately defines "patch management"?

View answer choices
  1. Governed identification, testing, deployment, and verification of software updates.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
1810
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M05-1810), which statement most accurately defines "patch management"?

View answer choices
  1. Governed identification, testing, deployment, and verification of software updates.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
1811
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During an authorized retail-company assessment (RET-LAB-M05-1811), which risk is most directly associated with "patch management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
1812
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a hospital incident-response exercise (HLT-SOC-M05-1812), which risk is most directly associated with "patch management"?

View answer choices
  1. Delayed or failed patches leave known vulnerabilities exploitable.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
1813
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a university cyber-range engagement (EDU-RANGE-M05-1813), which risk is most directly associated with "patch management"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Delayed or failed patches leave known vulnerabilities exploitable.
Practice
1814
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a financial-services purple-team test (FIN-PT-M05-1814), which risk is most directly associated with "patch management"?

View answer choices
  1. Delayed or failed patches leave known vulnerabilities exploitable.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
1815
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a cloud startup security audit (CLD-AUDIT-M05-1815), which risk is most directly associated with "patch management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Delayed or failed patches leave known vulnerabilities exploitable.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
1816
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a government risk-validation project (GOV-RISK-M05-1816), which risk is most directly associated with "patch management"?

View answer choices
  1. Delayed or failed patches leave known vulnerabilities exploitable.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
1817
Module 5 · Applied Domain 3 · Security patch management Unanswered

During an e-commerce application review (ECOM-WEB-M05-1817), which risk is most directly associated with "patch management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Delayed or failed patches leave known vulnerabilities exploitable.
Practice
1818
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a manufacturing and OT security review (MFG-OT-M05-1818), which risk is most directly associated with "patch management"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Delayed or failed patches leave known vulnerabilities exploitable.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
1819
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a mobile-services penetration test (MOB-TEST-M05-1819), which risk is most directly associated with "patch management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Delayed or failed patches leave known vulnerabilities exploitable.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
1820
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M05-1820), which risk is most directly associated with "patch management"?

View answer choices
  1. Delayed or failed patches leave known vulnerabilities exploitable.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
1821
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During an authorized retail-company assessment (RET-LAB-M05-1821), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Prioritize actively exploited exposure and verify that remediation actually reached assets.
Practice
1822
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a hospital incident-response exercise (HLT-SOC-M05-1822), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
1823
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a university cyber-range engagement (EDU-RANGE-M05-1823), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
1824
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a financial-services purple-team test (FIN-PT-M05-1824), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
1825
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a cloud startup security audit (CLD-AUDIT-M05-1825), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Prioritize actively exploited exposure and verify that remediation actually reached assets.
Practice
1826
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a government risk-validation project (GOV-RISK-M05-1826), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
1827
Module 5 · Applied Domain 3 · Security patch management Unanswered

During an e-commerce application review (ECOM-WEB-M05-1827), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
1828
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a manufacturing and OT security review (MFG-OT-M05-1828), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
1829
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a mobile-services penetration test (MOB-TEST-M05-1829), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Prioritize actively exploited exposure and verify that remediation actually reached assets.
Practice
1830
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M05-1830), which action most directly controls the risk related to "patch management"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Prioritize actively exploited exposure and verify that remediation actually reached assets.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
1831
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During an authorized retail-company assessment (RET-LAB-M05-1831), which evidence best supports an assessment of "patch management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. Patch inventory correlated with vulnerability rescans and exception approvals.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
1832
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a hospital incident-response exercise (HLT-SOC-M05-1832), which evidence best supports an assessment of "patch management"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. Patch inventory correlated with vulnerability rescans and exception approvals.
Practice
1833
Module 5 · Foundation Domain 3 · Security patch management Unanswered

During a university cyber-range engagement (EDU-RANGE-M05-1833), which evidence best supports an assessment of "patch management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. Patch inventory correlated with vulnerability rescans and exception approvals.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
1834
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a financial-services purple-team test (FIN-PT-M05-1834), which evidence best supports an assessment of "patch management"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
1835
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a cloud startup security audit (CLD-AUDIT-M05-1835), which evidence best supports an assessment of "patch management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. Patch inventory correlated with vulnerability rescans and exception approvals.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
1836
Module 5 · Applied Domain 3 · Security patch management Unanswered

During a government risk-validation project (GOV-RISK-M05-1836), which evidence best supports an assessment of "patch management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. Patch inventory correlated with vulnerability rescans and exception approvals.
Practice
1837
Module 5 · Applied Domain 3 · Security patch management Unanswered

During an e-commerce application review (ECOM-WEB-M05-1837), which evidence best supports an assessment of "patch management"?

View answer choices
  1. Patch inventory correlated with vulnerability rescans and exception approvals.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
1838
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a manufacturing and OT security review (MFG-OT-M05-1838), which evidence best supports an assessment of "patch management"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. Patch inventory correlated with vulnerability rescans and exception approvals.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
1839
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a mobile-services penetration test (MOB-TEST-M05-1839), which evidence best supports an assessment of "patch management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. Patch inventory correlated with vulnerability rescans and exception approvals.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
1840
Module 5 · Advanced Domain 3 · Security patch management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M05-1840), which evidence best supports an assessment of "patch management"?

View answer choices
  1. Patch inventory correlated with vulnerability rescans and exception approvals.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
1841
Module 5 · Foundation Domain 4 · Tools / Systems / Programs Nessus Unanswered

During an authorized retail-company assessment (RET-LAB-M05-1841), which statement most accurately defines "Nessus"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A modular reconnaissance framework used to organize authorized OSINT collection.
  3. A search service that indexes Internet-connected devices and service banners.
  4. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
Practice
1842
Module 5 · Foundation Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a hospital incident-response exercise (HLT-SOC-M05-1842), which statement most accurately defines "Nessus"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  4. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
Practice
1843
Module 5 · Foundation Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a university cyber-range engagement (EDU-RANGE-M05-1843), which statement most accurately defines "Nessus"?

View answer choices
  1. A search service that indexes Internet-connected devices and service banners.
  2. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
1844
Module 5 · Applied Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a financial-services purple-team test (FIN-PT-M05-1844), which statement most accurately defines "Nessus"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  3. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  4. A search service that indexes Internet-connected devices and service banners.
Practice
1845
Module 5 · Applied Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a cloud startup security audit (CLD-AUDIT-M05-1845), which statement most accurately defines "Nessus"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
Practice
1846
Module 5 · Applied Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a government risk-validation project (GOV-RISK-M05-1846), which statement most accurately defines "Nessus"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  4. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
Practice
1847
Module 5 · Applied Domain 4 · Tools / Systems / Programs Nessus Unanswered

During an e-commerce application review (ECOM-WEB-M05-1847), which statement most accurately defines "Nessus"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
1848
Module 5 · Advanced Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a manufacturing and OT security review (MFG-OT-M05-1848), which statement most accurately defines "Nessus"?

View answer choices
  1. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  2. A modular reconnaissance framework used to organize authorized OSINT collection.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A search service that indexes Internet-connected devices and service banners.
Practice
1849
Module 5 · Advanced Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a mobile-services penetration test (MOB-TEST-M05-1849), which statement most accurately defines "Nessus"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
Practice
1850
Module 5 · Advanced Domain 4 · Tools / Systems / Programs Nessus Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M05-1850), which statement most accurately defines "Nessus"?

View answer choices
  1. A search service that indexes Internet-connected devices and service banners.
  2. A vulnerability scanner that identifies configuration issues, missing patches, and known weaknesses.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice