PCCET · Question #186
Network vulnerability scanners and analyzers, such as Nessus and Wireshark, are used in which step of the cyberattack lifecycle?
The correct answer is C. Reconnaissance. This question asks to identify the step in the cyberattack lifecycle where tools like Nessus (vulnerability scanner) and Wireshark (network analyzer) are primarily used.
Question
Network vulnerability scanners and analyzers, such as Nessus and Wireshark, are used in which step of the cyberattack lifecycle?
Options
- AInstallation
- BExploitation
- CReconnaissance
- DWeaponization
How the community answered
(13 responses)- A8% (1)
- C92% (12)
Why each option
This question asks to identify the step in the cyberattack lifecycle where tools like Nessus (vulnerability scanner) and Wireshark (network analyzer) are primarily used.
Installation occurs after exploitation, involving placing malware or backdoors on compromised systems to maintain access.
Exploitation involves leveraging identified vulnerabilities to gain unauthorized access to a system, typically after reconnaissance has identified targets.
Reconnaissance is the initial phase where an attacker gathers information about a target network and systems to identify potential weaknesses. Tools like Nessus are used for vulnerability scanning, and Wireshark for network traffic analysis, both crucial for information gathering in the reconnaissance stage.
Weaponization is the stage where an attacker bundles an exploit with a backdoor into a deliverable payload, preceding the actual attack.
Concept tested: Cyberattack lifecycle phases and tools
Source: https://learn.microsoft.com/en-us/security/compass/incident-response-overview#the-cyberattack-kill-chain-and-incident-response-phases
Topics
Community Discussion
No community discussion yet for this question.