Certified Ethical Hacker (CEH v12) — Question 243

A skilled ethical hacker was assigned to perform a thorough OS discovery on a potential target. They decided to adopt an advanced fingerprinting technique and sent a TCP packet to an open TCP port with specific flags enabled. Upon receiving the reply, they noticed the flags were SYN and ECN-Echo. Which test did the ethical hacker conduct and why was this specific approach adopted?

Answer options

Correct answer: C

Explanation

The correct answer is C because the SYN and ECN-Echo flags are specifically used to elicit responses that help identify the operating system's fingerprinting. Options A and B describe tests that do not align with the flag combination used, and D focuses on a scenario that would not provide the necessary OS information.