The source notes a web client capable of fetching a file from a web server. In reconnaissance, what is the primary use of such a web client?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

The source notes a web client capable of fetching a file from a web server. In reconnaissance, what is the primary use of such a web client?

Explanation:
Using a web client in reconnaissance is about pulling resources from a web server over HTTP/HTTPS. This lets you fetch web pages and files to map what the target hosts publicly, discover available endpoints, and gather content that may reveal clues about the server, its structure, or potential sensitive files. It’s the go-to activity for obtaining visible web content from the target. The other options represent different protocols and don't fit the primary web-content retrieval role: an SSH client opens remote shells, an FTP client handles FTP file transfers, and a Telnet client provides a remote command-line interface.

Using a web client in reconnaissance is about pulling resources from a web server over HTTP/HTTPS. This lets you fetch web pages and files to map what the target hosts publicly, discover available endpoints, and gather content that may reveal clues about the server, its structure, or potential sensitive files. It’s the go-to activity for obtaining visible web content from the target.

The other options represent different protocols and don't fit the primary web-content retrieval role: an SSH client opens remote shells, an FTP client handles FTP file transfers, and a Telnet client provides a remote command-line interface.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy