nerdexam
GIAC

GPEN · Question #121

John works as a professional Ethical Hacker. He has been assigned the project of testing the preattack phase successfully: Information gathering Determination of network range Identification of active

The correct answer is A. Perform OS fingerprinting on the We-are-secure network.. In the ethical hacking pre-attack phase, OS fingerprinting follows port and service discovery as the next logical step in building a complete target profile.

Penetration Testing Foundations & Reconnaissance

Question

John works as a professional Ethical Hacker. He has been assigned the project of testing the preattack phase successfully:

Information gathering Determination of network range Identification of active systems Location of open ports and applications Now, which of the following tasks should he perform next?

Options

  • APerform OS fingerprinting on the We-are-secure network.
  • BMap the network of We-are-secure Inc.
  • CFingerprint the services running on the we-are-secure network.
  • DInstall a backdoor to log in remotely on the We-are-secure server.

How the community answered

(40 responses)
  • A
    73% (29)
  • B
    5% (2)
  • C
    15% (6)
  • D
    8% (3)

Why each option

In the ethical hacking pre-attack phase, OS fingerprinting follows port and service discovery as the next logical step in building a complete target profile.

APerform OS fingerprinting on the We-are-secure network.Correct

OS fingerprinting is the standard next step after identifying open ports and running applications in the CEH pre-attack methodology. Knowing the target operating system allows the tester to identify OS-specific vulnerabilities and tailor subsequent attack strategies. This step logically bridges service discovery and deeper exploitation planning.

BMap the network of We-are-secure Inc.

Network mapping corresponds to the 'determination of network range' step, which has already been completed earlier in the described pre-attack sequence.

CFingerprint the services running on the we-are-secure network.

Fingerprinting services running on the network is a step that follows OS fingerprinting in the methodology, making it premature at this stage of the assessment.

DInstall a backdoor to log in remotely on the We-are-secure server.

Installing a backdoor is an active attack and post-exploitation activity, not part of the pre-attack reconnaissance phase.

Concept tested: Ethical hacking pre-attack phase step ordering

Source: https://www.eccouncil.org/train-certify/certified-ethical-hacker-ceh/

Topics

#OS fingerprinting#reconnaissance methodology#pre-attack phase sequence#ethical hacking workflow

Community Discussion

No community discussion yet for this question.

Full GPEN Practice