nerdexam
GIAC

GPEN · Question #329

John works as a professional Ethical Hacker. He has been assigned the project of testing the preattack phase to check the security of the We-are-secure network: l Gathering information l Determining…

The correct answer is B. SuperScan. SuperScan is a port scanning tool used to discover open ports and identify applications running on target systems during the pre-attack reconnaissance phase.

Vulnerability Discovery & Scanning

Question

John works as a professional Ethical Hacker. He has been assigned the project of testing the preattack phase to check the security of the We-are-secure network:

l Gathering information l Determining the network range l Identifying active systems Now, he wants to find the open ports and applications running on the network. Which of the following tools will he use to accomplish his task?

Options

  • AAPNIC
  • BSuperScan
  • CRIPE
  • DARIN

How the community answered

(46 responses)
  • A
    11% (5)
  • B
    80% (37)
  • C
    7% (3)
  • D
    2% (1)

Why each option

SuperScan is a port scanning tool used to discover open ports and identify applications running on target systems during the pre-attack reconnaissance phase.

AAPNIC

APNIC (Asia-Pacific Network Information Centre) is a Regional Internet Registry used for IP address allocation lookups, not port scanning.

BSuperScanCorrect

SuperScan is a Windows-based port scanning tool that performs TCP/UDP port scans, pings, and banner grabbing to identify open ports and running services on a network. It is specifically designed for the task of enumerating active ports and applications, making it the correct tool for this stage of ethical hacking.

CRIPE

RIPE (Reseaux IP Europeens) is a Regional Internet Registry for Europe and surrounding regions, used for WHOIS and IP registration queries, not port scanning.

DARIN

ARIN (American Registry for Internet Numbers) is a Regional Internet Registry used to look up IP address ownership information, not to scan for open ports.

Concept tested: Port scanning tools in ethical hacking reconnaissance

Source: https://learn.microsoft.com/en-us/security/operations/incident-response-playbook-reconnaissance

Topics

#SuperScan#port scanning#service identification#reconnaissance

Community Discussion

No community discussion yet for this question.

Full GPEN Practice