Question 1 of 30
Stakeholder feedback indicates a need to enhance the organization\'s threat intelligence capabilities by gathering information on potential adversaries\' online presence. During an investigation, an analyst identifies several promising avenues for OSINT, including public social media profiles, publicly accessible news articles, and a private, invite-only forum discussing cybersecurity vulnerabilities. The analyst also notes the existence of data brokers that claim to sell aggregated online data. Considering the ethical and legal implications of intelligence gathering, which of the following approaches represents the most professional and compliant method for acquiring relevant OSINT?
Systematically collecting information from public social media profiles, news articles, and other clearly public-facing websites using advanced search techniques and publicly available analysis tools, while respecting platform terms of service.
Attempting to gain access to the private, invite-only forum by creating a fictitious persona that aligns with the forum's presumed membership to gather intelligence from within.
Employing aggressive web scraping techniques to download all available content from relevant websites, including those that may not explicitly prohibit scraping but could be impacted by high traffic.
Purchasing aggregated data from a reputable data broker, assuming the data is a compilation of publicly available information, to expedite the intelligence gathering process.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free