312-50V13 · Question #468
Lewis, a professional hacker, targeted the loT cameras and devices used by a target venture- capital firm. He used an information-gathering tool to collect information about the loT devices…
The correct answer is A. Censys. Censys is correct because it is a powerful internet-wide scanning and reconnaissance tool specifically designed to discover and monitor IoT devices, open ports, services, and attack surfaces across the entire internet. It collects data from continuous scans and generates…
Question
Options
- ACensys
- BWapiti
- CNeuVector
- DLacework
How the community answered
(58 responses)- A91% (53)
- B5% (3)
- C2% (1)
- D2% (1)
Explanation
Censys is correct because it is a powerful internet-wide scanning and reconnaissance tool specifically designed to discover and monitor IoT devices, open ports, services, and attack surfaces across the entire internet. It collects data from continuous scans and generates statistical reports on usage patterns and trends, making it a preferred tool for both security researchers and threat actors targeting internet-connected devices.
Why the distractors are wrong:
- Wapiti (B) is a web application vulnerability scanner focused on testing website security (e.g., SQL injection, XSS), not IoT device discovery or internet-wide scanning.
- NeuVector (C) is a container security platform designed to protect Kubernetes and Docker environments - it has no IoT reconnaissance functionality.
- Lacework (D) is a cloud security and compliance monitoring platform, focused on cloud infrastructure anomaly detection rather than IoT device enumeration.
Memory Tip: Think of Censys as a "census" of the internet - just like a population census counts and profiles every person in a country, Censys scans and profiles every reachable device on the internet, making it the go-to tool for internet-wide IoT reconnaissance.
Topics
Community Discussion
No community discussion yet for this question.