ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 311 - PT0-002 discussion

Report
Export

A security analyst is conducting an unknown environment test from 192.168 3.3. The analyst wants to limit observation of the penetration tester's activities and lower the probability of detection by intrusion protection and detection systems. Which of the following Nmap commands should the analyst use to achieve This objective?

A.
Nmap --F 192.168.5.5
Answers
A.
Nmap --F 192.168.5.5
B.
Map --datalength 2.192.168.5.5
Answers
B.
Map --datalength 2.192.168.5.5
C.
Nmap --D 10.5.2.2.168.5.5
Answers
C.
Nmap --D 10.5.2.2.168.5.5
D.
Map --scanflags SYNFIN 192.168.5.5
Answers
D.
Map --scanflags SYNFIN 192.168.5.5
Suggested answer: D

Explanation:

To limit observation of the penetration tester's activities and lower the probability of detection by intrusion protection and detection systems, the security analyst should use theNmap -D 10.5.2.2 192.168.3.3command1. The -D option is used to conceal the identity of the attacker by using decoy IP addresses.This option can be used to confuse the IDS/IPS and lower the probability of detection1.

asked 02/10/2024
Muhammad Imran
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first