nerdexam
EC-Council

312-50V13 · Question #350

Which of the following provides a security professional with most information about the system's security posture?

The correct answer is D. Port scanning, banner grabbing service identification. To gain the most comprehensive understanding of a system's technical security posture, active reconnaissance techniques like port scanning and service identification are essential.

Submitted by anjalisingh· Mar 6, 2026Footprinting and Reconnaissance

Question

Which of the following provides a security professional with most information about the system's security posture?

Options

  • APhishing, spamming, sending trojans
  • BSocial engineering, company site browsing tailgating
  • CWardriving, warchalking, social engineering
  • DPort scanning, banner grabbing service identification

How the community answered

(31 responses)
  • A
    6% (2)
  • C
    3% (1)
  • D
    90% (28)

Why each option

To gain the most comprehensive understanding of a system's technical security posture, active reconnaissance techniques like port scanning and service identification are essential.

APhishing, spamming, sending trojans

Phishing, spamming, and sending Trojans are attack vectors used to compromise systems or users, not techniques for assessing a system's security posture.

BSocial engineering, company site browsing tailgating

Social engineering, company site browsing, and tailgating focus on human vulnerabilities, information gathering from publicly available sources, or physical access, rather than the technical security configuration of a system.

CWardriving, warchalking, social engineering

Wardriving and warchalking are methods for discovering and mapping wireless networks, while social engineering targets human weaknesses; these provide information about wireless or human security but are not the primary means to assess a system's internal security posture.

DPort scanning, banner grabbing service identificationCorrect

Port scanning, banner grabbing, and service identification are active reconnaissance methods that directly interrogate a system to reveal open ports, the specific services running on them, and their versions. This information is crucial for identifying potential vulnerabilities and understanding the system's exposed attack surface, thus providing the most detailed insight into its technical security posture.

Concept tested: Active reconnaissance for system security assessment

Source: https://nmap.org/book/man-briefoptions.html

Topics

#reconnaissance#port scanning#banner grabbing#vulnerability assessment

Community Discussion

No community discussion yet for this question.

Full 312-50V13 Practice