ExamGecko
Question list
Search
Search

Related questions











Question 259 - CISA discussion

Report
Export

In which phase of penetration testing would host detection and domain name system (DNS) interrogation be performed?

A.
Discovery
Answers
A.
Discovery
B.
Attacks
Answers
B.
Attacks
C.
Planning
Answers
C.
Planning
D.
Reporting
Answers
D.
Reporting
Suggested answer: A

Explanation:

Penetration testing is a method of evaluating the security of a system or network by simulating an attack from a malicious source. Penetration testing typically consists of four phases: planning, discovery, attacks, and reporting. In the discovery phase, penetration testers gather information about the target system or network, such as host detection, domain name system (DNS) interrogation, port scanning, service identification, operating system fingerprinting, vulnerability scanning, etc. This information can help to identify potential entry points, weaknesses, or vulnerabilities that can be exploited in the subsequent attack phase. Host detection and DNS interrogation are techniques that can be used in the discovery phase to determine the active hosts and their IP addresses and hostnames on the target network.Reference:[ISACA CISA Review Manual 27th Edition], page 368.

asked 18/09/2024
Ryan Harris
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first