During a civic WLAN security assessment, testers compile SSID inventories, AP locations, and client device types before launching active attack techniques. Which phase does this describe?
Select an answer to reveal the explanation.
Short Explanation
Before you poke the bear, you map the woods—SSIDs, where the APs live, what clients show up. That recon pass is information gathering, not the attack itself.
Full Explanation
Information gathering in WLAN security testing inventories wireless presence: SSIDs/BSSIDs, AP placement, and client populations. It precedes scanning and authorized attack phases so later work is informed and scoped. It is distinct from remediation approvals or unrelated PKI mass-revocation actions.