EC-Council Certified Ethical Hacker (CEH) v12Reconnaissance TechniquesEasy

A security analyst is conducting reconnaissance on a target organization. They are attempting to gather information about the organization's network infrastructure, including IP address ranges, domain names, and contact information, without directly interacting with the target's systems. Which of the following techniques is being employed?

  1. APassive footprinting
  2. BPenetration testing
  3. CActive scanning
  4. DVulnerability assessment
Show answer & explanation

Correct answer: A. Passive footprinting

Passive footprinting involves gathering information about a target without direct interaction, often using publicly available resources. This aligns with the scenario of collecting IP ranges, domain names, and contact information without directly engaging the target's systems.

Why the other options are wrong

  • B. Penetration testing encompasses both active and passive techniques, but 'passive footprinting' is the specific technique described here.
  • C. Active scanning involves direct interaction with target systems, which is contrary to the scenario.
  • D. Vulnerability assessment is a broader process that often includes active scanning and analysis of identified weaknesses, not just passive information gathering.

Passive Footprinting

The process of gathering information about a target without directly interacting with their systems, primarily through publicly available sources.

  • No direct interaction with target.
  • Relies on public data (OSINT).
  • Includes searching WHOIS, DNS records, public websites, social media.

Memory trick: Passive means 'no touchy,' Active means 'poke around.'

More Reconnaissance Techniques questions