A municipal broadband team wants OSINT on a pole-attachment contractor and also wants the analyst to scan the contractor's exposed remote-desktop service. What should the analyst do?
Select an answer to reveal the explanation.
Short Explanation
Looking up a shop in the phone book is not kicking the back door to see if it is unlocked. Public websites, filings, and news are the OSINT lane. Scanning or probing the contractor's remote-desktop service is pentest work, not Fundamentals research.
Full Explanation
PORP collection is passive and public. Active scanning of a contractor's remote-desktop service, login attempts, and wireless interception are penetration-testing techniques, not OSINT Fundamentals. An open service on the internet does not make intrusive probing an open source. The broadband team can still research the contractor through public websites, business filings, news, and similar artifacts without crossing into exploitation.