adplus-dvertising
frame-decoration

Question

During an Nmap scan, Casey uses the -O flag. The scan identifies the host as follows:
Running: Linux 2.6.X
OS CPE: cpe:/o:linux:linux_kernel:2.6
OS details: Linux 2.6.9 - 2.6.33

What can she determine from this information?

a.

The Linux distribution installed on the target

b.

The patch level of the installed Linux kernel

c.

The date the remote system was last patched

d.

That the system is running a Linux 2.6 kernel between .9 and .33

Answer: (d).That the system is running a Linux 2.6 kernel between .9 and .33 Explanation:OS identification in Nmap is based on a variety of response attributes. In this case, Nmap’s best guess is that the remote host is running a Linux 2.6.9–2.6.33 kernel, but it cannot be more specific. It does not specify the distribution, the patch level, or when the system was last patched.

Engage with the Community - Add Your Comment

Confused About the Answer? Ask for Details Here.

Know the Explanation? Add it Here.

Q. During an Nmap scan, Casey uses the -O flag. The scan identifies the host as follows: Running: Linux 2.6.X OS CPE: cpe:/o:linux:linux_kernel:2.6 OS details: Linux 2.6.9 -...

Similar Questions

Discover Related MCQs

Q. What is the full range of ports that a UDP service can run on?

Q. Steve is working from an unprivileged user account that was obtained as part of a penetration test. He has discovered that the host he is on has Nmap installed, and he wants to scan other hosts in his subnet to identify potential targets as part of a pivot attempt. What Nmap flag will Steve probably have to use to successfully scan hosts from this account?

Q. Which of the following provides information about a domain’s registrar and physical location?

Q. Chris runs an Nmap scan of the 10.10.0.0/16 network that his employer uses as an internal network range for the entire organization. If he uses the -T0 flag, what issue is he likely to encounter?

Q. Which of the following Nmap output formats is unlikely to be useful for a penetration tester?

Q. During an early phase of his penetration test, Mike recovers a binary executable file that he wants to quickly analyze for useful information. Which of the following will quickly give him a view of potentially useful information in the binary?

Q. Jack is conducting a penetration test for a customer in Japan. What NIC will he most likely have to check for information about his client’s networks?

Q. Lin believes that the organization she is scanning may have load balancers in use. Which of the following techniques will help her detect them if they are DNS-based load balancers?

Q. Charles uses the following hping command to send traffic to a remote system:
hping remotesite.com -S -V -p 80

What type of traffic will the remote system see?

Q. What does a result of * * * mean during a traceroute?

Q. Rick wants to describe flaws found in an organization’s internally developed web applications using a standard model. Which of the following is best suited to his need?

Q. Why would a penetration tester look for expired certificates as part of an information-gathering and enumeration exercise?

Q. John has gained access to a system that he wants to use to gather more information about other hosts in its local subnet. He wants to perform a port scan but cannot install other tools to do so. Which of the following tools isn’t usable as a port scanner?