Pen Test Final Exam with all Correct & 100% Verified Answers |Actual
Complete Exam |Already Graded A+
What Unix command can you use to listed for input on a network port? - (ANSWER)nc
Examine the code snippet below. In what language is this code written?
begin
system 'nmap' + ip
rescue
puts "An error occurred.'
end - (ANSWER)Ruby
Alexa carefully pays attention to an employee as they type in their security code to her target
organization's high security area and writes down the code that she observes. What type of attack has
she conducted? - (ANSWER)Shoulder Surfing
Which one of the following is not a common category of remediation activity? - (ANSWER)Testing
Adam is conducting a penetration test of an organization and is reviewing source code of an application
for vulnerabilities. What type of code testing is Adam conducting? - (ANSWER)Static Code Analysis
Lisa wants to enumerate possible user accounts and has discovered an accessible SMTP server. What
SMTP commands are most useful for this? - (ANSWER)EXPN and VRFY
Which of the following operating systems support Powershell interpreters? - (ANSWER)Windows, Mac,
Linux (All of the Above)
Matt wants to pivot from a Linux host to other hosts in the network but is unable to install additional
tools beyond those found on a typical Linux server. How can he leverage the system he is on to allow
vulnerability scans of those remote hots if they are !rewalled against inbound connections and protected
from direct access from his penetration testing workstation? - (ANSWER)SSH Tunneling
, Pen Test Final Exam with all Correct & 100% Verified Answers |Actual
Complete Exam |Already Graded A+
Which type of organization is the most likely to face a regulatory requirement to conduct vulnerability
scans? - (ANSWER)Government Agency
Which one of the following commands will allow the owner to execute a Bash script? - (ANSWER)chmod
u+x script.sh
Which one of the following activities assumes that an organization has already been compromised? -
(ANSWER)Threat hunting
What is required for Jason to conduct a cold-boot attack against a system? - (ANSWER)Remote Access
What is the default read-only community string for many SNMP devices? - (ANSWER)Public
Selah wants to use a brute-force attack against the SSH service provided by one of her targets. Which of
the following tools is not designed to brute-force services like this? - (ANSWER)Minotaur
Chris is conducting an onsite penetration test. The test is a gray box test, and he is permitted onsite but
has not been given access to the wired or wireless networks. He knows he needs to gain access to both
to make further progress.
If Chris wants to set up a false AP, which tool is best sutied to his needs? - (ANSWER)Aircrack-ng
Chris is conducting an onsite penetration test. The test is a gray box test, and he is permitted onsite but
has not been given access to the wired or wireless networks. He knows he needs to gain access to both
to make further progress.
Once Chris has gained access to the network, what technique can he use to gather additional
credentials? - (ANSWER)ARP Spoofing to become a man in the middle
Where is the list of Linux users who can use elevated privileges via sudo typically found? -
(ANSWER)/etc/sudoers
Complete Exam |Already Graded A+
What Unix command can you use to listed for input on a network port? - (ANSWER)nc
Examine the code snippet below. In what language is this code written?
begin
system 'nmap' + ip
rescue
puts "An error occurred.'
end - (ANSWER)Ruby
Alexa carefully pays attention to an employee as they type in their security code to her target
organization's high security area and writes down the code that she observes. What type of attack has
she conducted? - (ANSWER)Shoulder Surfing
Which one of the following is not a common category of remediation activity? - (ANSWER)Testing
Adam is conducting a penetration test of an organization and is reviewing source code of an application
for vulnerabilities. What type of code testing is Adam conducting? - (ANSWER)Static Code Analysis
Lisa wants to enumerate possible user accounts and has discovered an accessible SMTP server. What
SMTP commands are most useful for this? - (ANSWER)EXPN and VRFY
Which of the following operating systems support Powershell interpreters? - (ANSWER)Windows, Mac,
Linux (All of the Above)
Matt wants to pivot from a Linux host to other hosts in the network but is unable to install additional
tools beyond those found on a typical Linux server. How can he leverage the system he is on to allow
vulnerability scans of those remote hots if they are !rewalled against inbound connections and protected
from direct access from his penetration testing workstation? - (ANSWER)SSH Tunneling
, Pen Test Final Exam with all Correct & 100% Verified Answers |Actual
Complete Exam |Already Graded A+
Which type of organization is the most likely to face a regulatory requirement to conduct vulnerability
scans? - (ANSWER)Government Agency
Which one of the following commands will allow the owner to execute a Bash script? - (ANSWER)chmod
u+x script.sh
Which one of the following activities assumes that an organization has already been compromised? -
(ANSWER)Threat hunting
What is required for Jason to conduct a cold-boot attack against a system? - (ANSWER)Remote Access
What is the default read-only community string for many SNMP devices? - (ANSWER)Public
Selah wants to use a brute-force attack against the SSH service provided by one of her targets. Which of
the following tools is not designed to brute-force services like this? - (ANSWER)Minotaur
Chris is conducting an onsite penetration test. The test is a gray box test, and he is permitted onsite but
has not been given access to the wired or wireless networks. He knows he needs to gain access to both
to make further progress.
If Chris wants to set up a false AP, which tool is best sutied to his needs? - (ANSWER)Aircrack-ng
Chris is conducting an onsite penetration test. The test is a gray box test, and he is permitted onsite but
has not been given access to the wired or wireless networks. He knows he needs to gain access to both
to make further progress.
Once Chris has gained access to the network, what technique can he use to gather additional
credentials? - (ANSWER)ARP Spoofing to become a man in the middle
Where is the list of Linux users who can use elevated privileges via sudo typically found? -
(ANSWER)/etc/sudoers