How can you limit breadth and scope of a vulnerability scan

Assignment Help Computer Engineering
Reference no: EM131152977

Lab- Performing a Vulnerability Assessment

Overview

In this lab, you used Nmap commands within the Zenmap application to scan the virtual network and identify the devices on the network and the operating systems and services running on them. You also used OpenVAS to conduct a vulnerability assessment and record the high risk vulnerabilities identified by the tool. Finally, you used the information you gathered from the report to discover mitigations for those risks and make mitigation recommendations based on your findings.

Lab Assessment Questions & Answers

1. What is Zenmap typically used for? How is it related to Nmap? Describe a scenario in which you would use this type of application.

2. Which application can be used to perform a vulnerability assessment scan in the reconnaissance phase of the ethical hacking process?

3. What must you obtain before you begin the ethical hacking process or penetration test on a live production network, even before performing the reconnaissance step?

4. What is a CVE listing? Who hosts and sponsors the CVE database listing Web site?

5. Can Zenmap detect which operating systems are present on IP servers and workstations? Which option includes that scan?

6. How can you limit the breadth and scope of a vulnerability scan?

7. Once a vulnerability has been identified by OpenVAS, where would you check for more information regarding the identified vulnerability, exploits, and any risk mitigation solution?

8. What is the major difference between Zenmap and OpenVAS?

9. Why do you need to run both tools like Zenmap and OpenVAS to complete the reconnaissance phase of the ethical hacking process?

Reference no: EM131152977

Questions Cloud

Could americans make such adjustments : How could the surveillance society liberate a culture from antiquated norms or push cultural consensus toward a new morality based on actual harm as opposed to group preferences, opinions or traditions?
Significance level for hypothesis testing : A clothing factory needs to determine whether a new machine was producing a breaking strength of 70 pounds and standard deviation of 3.5 pounds. A sample of 36 pieces revealed a sample mean of 69.7 pounds. Is there evidence that the machine is not..
Amount of cash spent without being aware : Consumers spend of $21 per week in cash without being aware of where it goes. Assume that the amount of cash spent without being aware of where it goes is normally distributed and that the Standard Deviation is $5 a.) What is the probability that ..
Purchasing agent of company : As the purchasing agent of your company you are deciding what type of Xerox machine to buy for your company. You have narrowed your choices to brand X and brand Y.
How can you limit breadth and scope of a vulnerability scan : What is a CVE listing? Who hosts and sponsors the CVE database listing Web site? What is Zenmap typically used for? How is it related to Nmap?  How can you limit the breadth and scope of a vulnerability scan?
Container of liquid laundry detergent : A container of liquid laundry detergent promises over 100 loads from the bottle. You sample 45 bottles and find a mean of 102 loads with a standard deviation of 3.75 loads. At the 0.01 level of significance, is the manufacturer's claim supported?
Development of the clients presentation : Investigate and outline the prevalence/incidence of depression AND suicide in Australia - Ensure your answer covers: gender, age groups. Specific risk groups. hospitalization and recovery.
Identify the first step in the student guide to research : Define the basic concepts used in the discipline of sociology. Define the various methodologies for sociological research. Use technology and information resources to research issues in sociology.
Conduct a hypothesis test : She randomly surveys 426 schoolmates and finds that 150 report they fear public speaking. Conduct a hypothesis test at the 5% level of significance to determine if the percent at her school is less than 40%

Reviews

Write a Review

Computer Engineering Questions & Answers

  Write down a 200- to 300-word short-answer response for the

write a 200- to 300-word short-answer response for the followingin what business database environments is

  What are the advantages of using this model

What are the stages of the CCM? What happens at each stage.What are the advantages of using this model.

  The cio at your organization wants you to evluate a plan to

the cio at your organization wants you to assess a plan to replace the current usernamepassword authentication methods

  Main window with a game menu

Change your code so that when the purchase button is pressed, a dialog box appears to allow the user to enter purchasing information and to confirm the purchase.

  Obtain the truth table of the functions

Obtain the truth table of the functions, and express each function in sum-of-min-terms and product-of-maxterms forms:

  What are some of the more popular exception handling uses

Exception Handling in Java is a very powerful capability. Exception Handling allows us to check input, verify if files exist, precent division by zero, prevent array out of bounds, and a whole host of other things.

  You have just been hired as an information security

you have just been hired as an information security engineer for a large multi-international corporation.

  Identity theft contribution to terrorism

Pharming, Phishing and Various types of Identity theft contribution to Terrorism in 21st Century.  Provide supporting facts in the form of "charts/graphs" (3 to 4 graphs, no more than 2 pages) and should provide citations for the source work.

  Advanced qos configuration

Advanced QoS Configuration, Write a paragraph below that summarizes what was accomplished in this lab and what you learned by performing it

  The readings for this week mention six stages of the

the readings for this week mention six stages of the systems development life cycle. there are other models however

  Create a c program that accepts a string of characters

Write a C program that accepts a string of characters from a terminal and displays the string one word per line. Make your array 80 characters and suppose the entered text will be less than 80 characters. A complete C program is included as well a..

  Find the shortest path from a to z

Given the following network with noted distances, use DP to find the shortest path from A to Z.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd