nerdexam
Exams312-50V9Questions#122
EC-Council

312-50V9 · Question #122

312-50V9 Question #122: Real Exam Question with Answer & Explanation

The correct answer is A: Active and passive. Network sniffing is broadly categorized as active or passive, based on whether the attacker must inject traffic to intercept communications.

Question

How is sniffing broadly categorized?

Options

  • AActive and passive
  • BBroadcast and unicast
  • CUnmanaged and managed
  • DFiltered and unfiltered

Explanation

Network sniffing is broadly categorized as active or passive, based on whether the attacker must inject traffic to intercept communications.

Common mistakes.

  • B. Broadcast and unicast describe network transmission addressing modes, not methodologies for intercepting or capturing network traffic.
  • C. Unmanaged and managed describe switch capability and administration levels, not sniffing techniques or their operational categories.
  • D. Filtered and unfiltered describe Berkeley Packet Filter (BPF) settings applied to a running capture session, not a broad classification of sniffing approaches.

Concept tested. Active versus passive network sniffing classification

Community Discussion

No community discussion yet for this question.

Full 312-50V9 Practice