GAQM
CPEH-001 · Question #979
John, a security analyst working for an organization, found a critical vulnerability on the organization's LAN that allows him to view financial and personal information about the rest of the…
The correct answer is A. Acybercriminal. See the full explanation below for the reasoning.
Question
John, a security analyst working for an organization, found a critical vulnerability on the organization's LAN that allows him to view financial and personal information about the rest of the employees. Before reporting the vulnerability, he examines the information shown by the vulnerability for two days without disclosing any information to third parties or other internal employees. He does so out of curiosity about the other employees and may take advantage of this information later. What would John be considered as?
Options
- AAcybercriminal
- BBlack hat
- CWhite hat
- DGray hat
How the community answered
(36 responses)- A78% (28)
- B6% (2)
- C3% (1)
- D14% (5)
Community Discussion
No community discussion yet for this question.