Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)Network SecurityMedium

A network security team is performing a vulnerability assessment on their internal network. They use a tool that sends various types of packets to target systems and analyzes the responses to identify open ports, active services, and potential weaknesses. This process helps them discover accessible entry points for attackers. What type of reconnaissance activity is being performed?

  1. AMalware Analysis
  2. BSocial Engineering
  3. CPhishing Attack
  4. DPort Scanning
Show answer & explanation

Correct answer: D. Port Scanning

Port scanning is a reconnaissance technique used to identify open ports and services on a target system by sending connection requests and analyzing the responses. This helps discover potential entry points.

Why the other options are wrong

  • A. Malware Analysis involves studying malicious software, not scanning networks for vulnerabilities.
  • B. Social Engineering manipulates people into divulging information or performing actions, not directly scanning ports.
  • C. Phishing is a type of social engineering attack using deceptive emails/messages, unrelated to network port discovery.

Port Scanning

A reconnaissance technique used to identify open ports, active services, and potential vulnerabilities on a network host by sending packets and analyzing responses.

  • Helps attackers (or security teams) discover potential entry points.
  • Can be detected by Intrusion Detection Systems (IDS).
  • Common tools include Nmap.

Memory trick: Reconnaissance: Scouting for weak spots.

More Network Security questions