Certified Ethical Hacker (CEH v11) — Question 215
What firewall evasion scanning technique make use of a zombie system that has low network activity as well as its fragment identification numbers?
Answer options
- A. Packet fragmentation scanning
- B. Spoof source address scanning
- C. Decoy scanning
- D. Idle scanning
Correct answer: D
Explanation
The correct answer is D, Idle scanning, which employs a 'zombie' host to send packets without revealing the scanner's IP address. The other options do not utilize a low-activity zombie system in their methods: A focuses on fragmenting packets, B involves altering source addresses, and C uses decoy addresses but not a zombie system.