Certified Ethical Hacker (CEH) — Question 96
Which of the following statements regarding ethical hacking is incorrect?
Answer options
- A. Ethical hackers should never use tools or methods that have the potential of exploiting vulnerabilities in an organization's systems.
- B. Testing should be remotely performed offsite.
- C. An organization should use ethical hackers who do not sell vendor hardware/software or other consulting services.
- D. Ethical hacking should not involve writing to or modifying the target systems.
Correct answer: A
Explanation
Answer A is correct because ethical hackers are often required to use tools that can exploit vulnerabilities during testing to identify weaknesses. Options B, C, and D are not inherently incorrect as they may align with best practices or organizational policies regarding ethical hacking engagements.