Which term describes the initial information-gathering phase conducted by attackers to map an organization before intrusion?

Study for the EC-Council Certified Ethical Hacker (CEH) v13 Exam. Utilize flashcards and multiple-choice questions with helpful hints and detailed explanations. Excel in your exam preparation!

Multiple Choice

Which term describes the initial information-gathering phase conducted by attackers to map an organization before intrusion?

Explanation:
Footprinting is the process of gathering information about a target to map its network, people, and technologies before attempting intrusion. It pulls data from public and sometimes private sources to build a profile of the organization—domain ownership, IP ranges, DNS records, infrastructure, and key personnel—so an attacker can understand the attack surface and plan the next steps. Scanning comes next, focusing on identifying live hosts, open ports, and services on those systems; exfiltration is the act of stealing data from a compromised system; pivoting means moving laterally within the network after gaining access.

Footprinting is the process of gathering information about a target to map its network, people, and technologies before attempting intrusion. It pulls data from public and sometimes private sources to build a profile of the organization—domain ownership, IP ranges, DNS records, infrastructure, and key personnel—so an attacker can understand the attack surface and plan the next steps. Scanning comes next, focusing on identifying live hosts, open ports, and services on those systems; exfiltration is the act of stealing data from a compromised system; pivoting means moving laterally within the network after gaining access.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy