nerdexam
CompTIA

CAS-003 · Question #735

A system administrator recently conducted a vulnerability scan of the internet. Subsequently, the organization was successfully attacked by an adversary. Which of the following in the MOST likely…

The correct answer is B. The system administrator did not perform a full system sun. The administrator scanned 'the internet' (likely only external-facing assets) rather than conducting a comprehensive scan of all internal systems. This incomplete scope left internal vulnerable hosts undiscovered and unpatched, giving attackers an undetected entry point. Option…

Enterprise Security Operations

Question

A system administrator recently conducted a vulnerability scan of the internet. Subsequently, the organization was successfully attacked by an adversary. Which of the following in the MOST likely explanation for why the organization network was compromised?

Options

  • AThere was a false positive since the network was fully patched.
  • BThe system administrator did not perform a full system sun.
  • CThe systems administrator performed a credentialed scan.
  • DThe vulnerability database was not updated.

How the community answered

(24 responses)
  • A
    4% (1)
  • B
    75% (18)
  • C
    8% (2)
  • D
    13% (3)

Explanation

The administrator scanned 'the internet' (likely only external-facing assets) rather than conducting a comprehensive scan of all internal systems. This incomplete scope left internal vulnerable hosts undiscovered and unpatched, giving attackers an undetected entry point. Option A is incorrect because false positives report non-existent vulnerabilities - they would not cause a missed compromise. Option C is incorrect because credentialed scans are actually more thorough than unauthenticated scans, not less. Option D (outdated vulnerability database) is plausible but is secondary to the more fundamental problem of not scanning all systems in the first place.

Topics

#vulnerability scanning#patch management#scan coverage#security operations

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice