In Metasploit, which category includes auxiliary scanners like portscan/tcp and portscan/syn?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

In Metasploit, which category includes auxiliary scanners like portscan/tcp and portscan/syn?

Explanation:
Scanning and information-gathering tools are grouped under auxiliary modules in Metasploit. Portscan/tcp and portscan/syn are classic examples of scanners that probe a target to discover open ports and services, not code that exploits vulnerabilities or runs after access. Since they’re used for probing rather than gaining or maintaining access, they belong in the Auxiliary Scanner Modules category. Exploits aim to break in, post-exploitation modules run after access is gained, and payloads are the code executed on the target, so those categories don’t fit.

Scanning and information-gathering tools are grouped under auxiliary modules in Metasploit. Portscan/tcp and portscan/syn are classic examples of scanners that probe a target to discover open ports and services, not code that exploits vulnerabilities or runs after access. Since they’re used for probing rather than gaining or maintaining access, they belong in the Auxiliary Scanner Modules category. Exploits aim to break in, post-exploitation modules run after access is gained, and payloads are the code executed on the target, so those categories don’t fit.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy