CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 3,401–3,450 of 5,000 matching questions

50 per page
3401
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3401), which statement most accurately defines "network firewall"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. A control that permits or denies network flows according to defined policy and state.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
3402
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3402), which statement most accurately defines "network firewall"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. A control that permits or denies network flows according to defined policy and state.
Practice
3403
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3403), which statement most accurately defines "network firewall"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. A control that permits or denies network flows according to defined policy and state.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
3404
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a financial-services purple-team test (FIN-PT-M12-3404), which statement most accurately defines "network firewall"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. A control that permits or denies network flows according to defined policy and state.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
3405
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3405), which statement most accurately defines "network firewall"?

View answer choices
  1. A control that permits or denies network flows according to defined policy and state.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
3406
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a government risk-validation project (GOV-RISK-M12-3406), which statement most accurately defines "network firewall"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. A control that permits or denies network flows according to defined policy and state.
Practice
3407
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During an e-commerce application review (ECOM-WEB-M12-3407), which statement most accurately defines "network firewall"?

View answer choices
  1. A control that permits or denies network flows according to defined policy and state.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
3408
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3408), which statement most accurately defines "network firewall"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. A control that permits or denies network flows according to defined policy and state.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
3409
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3409), which statement most accurately defines "network firewall"?

View answer choices
  1. A control that permits or denies network flows according to defined policy and state.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
3410
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3410), which statement most accurately defines "network firewall"?

View answer choices
  1. A control that permits or denies network flows according to defined policy and state.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
3411
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3411), which risk is most directly associated with "network firewall"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Overly broad or shadowed rules create unauthorized paths between trust zones.
Practice
3412
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3412), which risk is most directly associated with "network firewall"?

View answer choices
  1. Overly broad or shadowed rules create unauthorized paths between trust zones.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3413
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3413), which risk is most directly associated with "network firewall"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Overly broad or shadowed rules create unauthorized paths between trust zones.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3414
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a financial-services purple-team test (FIN-PT-M12-3414), which risk is most directly associated with "network firewall"?

View answer choices
  1. Overly broad or shadowed rules create unauthorized paths between trust zones.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3415
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3415), which risk is most directly associated with "network firewall"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Overly broad or shadowed rules create unauthorized paths between trust zones.
Practice
3416
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a government risk-validation project (GOV-RISK-M12-3416), which risk is most directly associated with "network firewall"?

View answer choices
  1. Overly broad or shadowed rules create unauthorized paths between trust zones.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3417
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During an e-commerce application review (ECOM-WEB-M12-3417), which risk is most directly associated with "network firewall"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Overly broad or shadowed rules create unauthorized paths between trust zones.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3418
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3418), which risk is most directly associated with "network firewall"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Overly broad or shadowed rules create unauthorized paths between trust zones.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3419
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3419), which risk is most directly associated with "network firewall"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Overly broad or shadowed rules create unauthorized paths between trust zones.
Practice
3420
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3420), which risk is most directly associated with "network firewall"?

View answer choices
  1. Overly broad or shadowed rules create unauthorized paths between trust zones.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3421
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3421), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Use least-privilege rules, ownership, review, logging, and recertification.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
3422
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3422), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Use least-privilege rules, ownership, review, logging, and recertification.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
3423
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3423), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Use least-privilege rules, ownership, review, logging, and recertification.
Practice
3424
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a financial-services purple-team test (FIN-PT-M12-3424), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Use least-privilege rules, ownership, review, logging, and recertification.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
3425
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3425), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Use least-privilege rules, ownership, review, logging, and recertification.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
3426
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a government risk-validation project (GOV-RISK-M12-3426), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Use least-privilege rules, ownership, review, logging, and recertification.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
3427
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During an e-commerce application review (ECOM-WEB-M12-3427), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Use least-privilege rules, ownership, review, logging, and recertification.
Practice
3428
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3428), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Use least-privilege rules, ownership, review, logging, and recertification.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
3429
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3429), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Use least-privilege rules, ownership, review, logging, and recertification.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
3430
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3430), which action most directly controls the risk related to "network firewall"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Use least-privilege rules, ownership, review, logging, and recertification.
Practice
3431
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3431), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A rule trace showing the exact first match for the tested flow.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
3432
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3432), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. A rule trace showing the exact first match for the tested flow.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
3433
Module 12 · Foundation Domain 3 · Security network firewall Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3433), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A rule trace showing the exact first match for the tested flow.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
3434
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a financial-services purple-team test (FIN-PT-M12-3434), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A rule trace showing the exact first match for the tested flow.
Practice
3435
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3435), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A rule trace showing the exact first match for the tested flow.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
3436
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During a government risk-validation project (GOV-RISK-M12-3436), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A rule trace showing the exact first match for the tested flow.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
3437
Module 12 · Applied Domain 3 · Security network firewall Unanswered

During an e-commerce application review (ECOM-WEB-M12-3437), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A rule trace showing the exact first match for the tested flow.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
3438
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3438), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A rule trace showing the exact first match for the tested flow.
Practice
3439
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3439), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A rule trace showing the exact first match for the tested flow.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
3440
Module 12 · Advanced Domain 3 · Security network firewall Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3440), which evidence best supports an assessment of "network firewall"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A rule trace showing the exact first match for the tested flow.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
3441
Module 12 · Foundation Domain 4 · Tools / Systems / Programs Snort Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3441), which statement most accurately defines "Snort"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A rule-driven network intrusion detection and prevention engine.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
3442
Module 12 · Foundation Domain 4 · Tools / Systems / Programs Snort Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3442), which statement most accurately defines "Snort"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  3. A rule-driven network intrusion detection and prevention engine.
  4. A search service that indexes Internet-connected devices and service banners.
Practice
3443
Module 12 · Foundation Domain 4 · Tools / Systems / Programs Snort Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3443), which statement most accurately defines "Snort"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A modular reconnaissance framework used to organize authorized OSINT collection.
  3. A search service that indexes Internet-connected devices and service banners.
  4. A rule-driven network intrusion detection and prevention engine.
Practice
3444
Module 12 · Applied Domain 4 · Tools / Systems / Programs Snort Unanswered

During a financial-services purple-team test (FIN-PT-M12-3444), which statement most accurately defines "Snort"?

View answer choices
  1. A rule-driven network intrusion detection and prevention engine.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
Practice
3445
Module 12 · Applied Domain 4 · Tools / Systems / Programs Snort Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3445), which statement most accurately defines "Snort"?

View answer choices
  1. A search service that indexes Internet-connected devices and service banners.
  2. A rule-driven network intrusion detection and prevention engine.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
3446
Module 12 · Applied Domain 4 · Tools / Systems / Programs Snort Unanswered

During a government risk-validation project (GOV-RISK-M12-3446), which statement most accurately defines "Snort"?

View answer choices
  1. A rule-driven network intrusion detection and prevention engine.
  2. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. A search service that indexes Internet-connected devices and service banners.
Practice
3447
Module 12 · Applied Domain 4 · Tools / Systems / Programs Snort Unanswered

During an e-commerce application review (ECOM-WEB-M12-3447), which statement most accurately defines "Snort"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A modular reconnaissance framework used to organize authorized OSINT collection.
  3. A search service that indexes Internet-connected devices and service banners.
  4. A rule-driven network intrusion detection and prevention engine.
Practice
3448
Module 12 · Advanced Domain 4 · Tools / Systems / Programs Snort Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3448), which statement most accurately defines "Snort"?

View answer choices
  1. A rule-driven network intrusion detection and prevention engine.
  2. A modular reconnaissance framework used to organize authorized OSINT collection.
  3. A search service that indexes Internet-connected devices and service banners.
  4. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
Practice
3449
Module 12 · Advanced Domain 4 · Tools / Systems / Programs Snort Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3449), which statement most accurately defines "Snort"?

View answer choices
  1. A search service that indexes Internet-connected devices and service banners.
  2. A rule-driven network intrusion detection and prevention engine.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
3450
Module 12 · Advanced Domain 4 · Tools / Systems / Programs Snort Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3450), which statement most accurately defines "Snort"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A rule-driven network intrusion detection and prevention engine.
Practice