When performing a vulnerability scan on an environment that contains sensitive operational technology, such as an industrial control system, what type of scanning is recommended to minimize potential disruptions?
Passive scanning is recommended for environments with industrial control systems because it is less intrusive and reduces the risk of disrupting the sensitive systems that often operate with precise timing and control. Active scanning, on the other hand, could potentially interrupt ICS operations due to the probing and test traffic it generates.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is passive scanning and how does it differ from active scanning?
Open an interactive chat with Bash
Why are traditional vulnerability scanning methods problematic for operational technology?
Open an interactive chat with Bash
What tools are commonly used for passive scanning?