When performing a vulnerability scan on an environment that contains sensitive operational technology, such as an industrial control system, what type of scanning is recommended to minimize potential disruptions?
Passive scanning is recommended for environments with industrial control systems because it is less intrusive and reduces the risk of disrupting the sensitive systems that often operate with precise timing and control. Active scanning, on the other hand, could potentially interrupt ICS operations due to the probing and test traffic it generates.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is passive scanning, and why is it less intrusive?
Open an interactive chat with Bash
What is the main difference between passive and active scanning?
Open an interactive chat with Bash
Why are industrial control systems (ICS) particularly sensitive to active scanning?