โ† All EJPT Flashcard Decks

Host and Network Auditing Flashcards

7 cards from real EJPT practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Host and Network Auditing flashcards as text
  1. What does 'passive reconnaissance' mean in the context of host and network auditing?

    Answer: Gathering information without directly interacting with the target systems

    Passive reconnaissance collects information from public sources (OSINT) without sending packets to the target.

  2. Which file on a Linux system contains a list of hostname-to-IP mappings that are checked before DNS?

    Answer: /etc/hosts

    /etc/hosts is a local file that maps hostnames to IP addresses and takes precedence over DNS resolution.

  3. During a network audit, what does the term 'pivot' refer to?

    Answer: Using a compromised host to gain access to other network segments not directly reachable

    Pivoting uses a compromised host as a relay point to reach and attack systems in other network segments.

  4. What Nmap command combines OS detection, version scanning, script scanning, and traceroute?

    Answer: nmap -A

    The -A flag enables aggressive mode, combining -O, -sV, -sC, and --traceroute in a single scan.

  5. Which port is associated with the HTTPS service during a web server audit?

    Answer: 443

    TCP port 443 is the standard port for HTTPS (HTTP over TLS/SSL) encrypted web traffic.

  6. What is the primary goal of network segmentation from a security auditing perspective?

    Answer: To limit lateral movement by isolating network zones so a breach in one zone doesn't spread

    Network segmentation creates security boundaries that contain breaches, limiting an attacker's ability to move laterally.

  7. Which Nmap flag disables DNS resolution to speed up scanning?

    Answer: -n

    The -n flag tells Nmap to skip DNS resolution, which significantly speeds up scans against large IP ranges.