4_3_1 Section 4 – Operations and Incident Response - 4.3 – Investigations- Vulnerability Scan Output
21 Questions
0 Views

Choose a study mode

Play Quiz
Study Flashcards
Spaced Repetition
Chat to lesson

Podcast

Play an AI-generated podcast conversation about this lesson

Questions and Answers

What is the primary purpose of a vulnerability scanner?

  • To identify potential vulnerabilities before an attacker can exploit them (correct)
  • To scan devices for malware
  • To monitor network traffic
  • To patch vulnerabilities automatically
  • What does a vulnerability scanner look for when scanning a device?

  • Signatures of known malware
  • Signatures of known vulnerabilities (correct)
  • Weak passwords on the device
  • Open ports on the device
  • Where can you find information on known vulnerabilities and how to resolve them?

  • National Vulnerability Database only
  • Google search
  • Both National Vulnerability Database and Microsoft Security Bulletins (correct)
  • Microsoft Security Bulletins only
  • What may a vulnerability scanner indicate about a potential vulnerability?

    <p>It may provide an obvious indication of a vulnerability, or a suggestion that a vulnerability may be present</p> Signup and view all the answers

    What can a vulnerability scan reveal about a device?

    <p>A lack of security controls, among other things</p> Signup and view all the answers

    What may be required to confirm a potential vulnerability indicated by a vulnerability scanner?

    <p>Manual research and connection to the device</p> Signup and view all the answers

    What is a potential consequence of not having the latest signatures for your scanner?

    <p>Undetected vulnerabilities in the system</p> Signup and view all the answers

    What can cause false positives and false negatives in a vulnerability scanner?

    <p>Network configurations or system settings</p> Signup and view all the answers

    Why is it important to work with your vulnerability scanner manufacturer?

    <p>To configure the scanner correctly for your system</p> Signup and view all the answers

    What is the purpose of updating scanner signatures?

    <p>To provide the most accurate set of signatures</p> Signup and view all the answers

    What is a potential outcome of a false negative in a vulnerability scanner?

    <p>The system is vulnerable to unknown attacks</p> Signup and view all the answers

    What is one of the things that a vulnerability scan can identify?

    <p>An open network share that does not require authentication</p> Signup and view all the answers

    Why is it important to update the database in a vulnerability scanner?

    <p>To identify new vulnerabilities as they are discovered</p> Signup and view all the answers

    What is a critical vulnerability found in the scan?

    <p>Unix operating system unsupported version detection</p> Signup and view all the answers

    What is a false positive in a vulnerability scan report?

    <p>A problem that doesn't exist at all, but was miscategorized as a vulnerability</p> Signup and view all the answers

    What is the concern with a false negative in a vulnerability scan?

    <p>It may not be identified by the scanner</p> Signup and view all the answers

    What is the purpose of a vulnerability scan?

    <p>To inform us of problems with the system, such as lack of antivirus software</p> Signup and view all the answers

    What is an example of a medium category vulnerability found in the scan?

    <p>A system with an unencrypted telnet server</p> Signup and view all the answers

    What does a vulnerability scan report provide?

    <p>A list of all vulnerabilities found on the system, categorized by severity</p> Signup and view all the answers

    What is an example of informational vulnerabilities found in the scan?

    <p>A large number of informational vulnerabilities on the system</p> Signup and view all the answers

    What is the significance of a system running an unsupported version of Ubuntu?

    <p>It is a critical vulnerability</p> Signup and view all the answers

    More Like This

    Use Quizgecko on...
    Browser
    Browser