nerdexam
EC-Council

312-50V12 · Question #2

John, a disgruntled ex-employee of an organization, contacted a professional hacker to exploit the organization. In the attack process, the professional hacker installed a scanner on a machine belongi

The correct answer is A. Agent-based scanner. The scenario describes a scanner installed directly on a victim's machine to scan other machines on the same network, which is the defining characteristic of an agent-based scanner.

Submitted by zhang_li· Mar 4, 2026Conduct Discovery

Question

John, a disgruntled ex-employee of an organization, contacted a professional hacker to exploit the organization. In the attack process, the professional hacker installed a scanner on a machine belonging to one of the victims and scanned several machines on the same network to identify vulnerabilities to perform further exploitation. What is the type of vulnerability assessment tool employed by John in the above scenario?

Options

  • AAgent-based scanner
  • BNetwork-based scanner
  • CCluster scanner
  • DProxy scanner

How the community answered

(41 responses)
  • A
    95% (39)
  • B
    2% (1)
  • C
    2% (1)

Why each option

The scenario describes a scanner installed directly on a victim's machine to scan other machines on the same network, which is the defining characteristic of an agent-based scanner.

AAgent-based scannerCorrect

An agent-based scanner involves installing scanning software (an agent) directly onto a host machine within the network. In this scenario, the hacker installed the scanner on a victim's machine, allowing it to operate from within the network perimeter to identify vulnerabilities on other networked systems - this inside-out scanning approach is the hallmark of agent-based vulnerability assessment tools.

BNetwork-based scanner

A network-based scanner operates remotely from a central location over the network to probe target systems, and is not installed directly on a victim's machine within the target environment.

CCluster scanner

A cluster scanner is not a standard classification of vulnerability assessment tool in this context; it does not describe the method of installing a scanner on a compromised internal host.

DProxy scanner

A proxy scanner routes scanning traffic through a proxy server to assess vulnerabilities, which is a different architecture from installing a scanner agent directly on a victim's machine.

Concept tested: Types of vulnerability assessment scanning tools

Source: https://www.eccouncil.org/cybersecurity-exchange/ethical-hacking/vulnerability-assessment-tools/

Topics

#Vulnerability scanning#Vulnerability assessment tools#Agent-based scanning

Community Discussion

No community discussion yet for this question.

Full 312-50V12 Practice