Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 4 fuera de 42 páginas
Examen

WGU D415 – Penetration Testing Final Exam Prep (Latest Update 2026/2027) Questions and Verified Answers | 100% Correct | Grade A

Document preview thumbnail
Vista previa 4 fuera de 42 páginas

Prepare for the WGU D415 – Penetration Testing Final Exam with this comprehensive 2026/2027 study guide. This exam prep resource features expertly organized questions and verified answers covering penetration testing methodologies, ethical hacking principles, reconnaissance, open-source intelligence (OSINT), vulnerability assessment, network and web application testing, wireless security testing, password attacks, privilege escalation, exploitation techniques, post-exploitation, scripting basics, reporting and documentation, vulnerability validation, social engineering concepts, cloud security testing, OWASP Top 10, NIST guidelines, and legal and ethical considerations. Designed to strengthen practical penetration testing skills and reinforce real-world cybersecurity concepts, this guide helps students confidently prepare for the WGU final assessment.

Vista previa del contenido

WGU D415 – Penetration Testing Final
Prep Exam (Latest Update 2026/2027)
Questions and Verified Answers | 100%
Correct | Grade A.

1. What is the primary objective of a penetration test?
A. To guarantee complete system security
B. To identify and exploit vulnerabilities in a controlled manner
C. To permanently remove malware from systems
D. To replace vulnerability assessments
Rationale: A penetration test simulates real-world attacks to identify
exploitable weaknesses before malicious actors do. Unlike vulnerability
assessments, penetration testing validates whether vulnerabilities can
actually be exploited and evaluates the potential business impact.


2. During which phase of a penetration test is publicly available
information about the target collected?
A. Exploitation
B. Reconnaissance
C. Reporting
D. Post-exploitation

,Rationale: Reconnaissance is the first stage of a penetration test and
involves collecting information from public records, websites, DNS
records, search engines, and social media. This intelligence helps
attackers and ethical hackers understand the target environment before
launching attacks.


3. Which type of reconnaissance involves directly interacting with
the target?
A. Passive reconnaissance
B. Active reconnaissance
C. OSINT reconnaissance
D. Physical reconnaissance
Rationale: Active reconnaissance involves direct interaction with the
target environment, such as performing port scans or banner grabbing.
Passive reconnaissance relies solely on publicly available information
without alerting the target.


4. Which tool is commonly used for network discovery and port
scanning?
A. Wireshark
B. Nmap
C. Metasploit
D. John the Ripper
Rationale: Nmap is one of the most widely used penetration testing
tools for discovering hosts, identifying open ports, detecting operating

,systems, and enumerating services. It provides valuable reconnaissance
data for later attack phases.


5. What does OSINT stand for?
A. Operating System Integrated Network Testing
B. Open Security Internet Technology
C. Open Source Intelligence
D. Online Security Investigation Tool
Rationale: Open Source Intelligence (OSINT) refers to gathering
information from publicly accessible sources such as websites, social
media, DNS records, WHOIS databases, and public repositories. OSINT
plays a significant role in reconnaissance.


6. Which Nmap option performs a SYN scan?
A. -sV
B. -sS
C. -O
D. -A
Rationale: The -sS option performs a TCP SYN (half-open) scan, making it
faster and less detectable than a full TCP connect scan. It is commonly
used during penetration tests to identify listening services.


7. What is the primary purpose of banner grabbing?

, A. Encrypt network traffic
B. Block incoming packets
C. Identify service and software versions
D. Disable vulnerable services
Rationale: Banner grabbing collects information exposed by services
during communication, including software names and version numbers.
This helps identify known vulnerabilities associated with those services.


8. Which protocol commonly operates on TCP port 22?
A. FTP
B. Telnet
C. SSH
D. SMTP
Rationale: SSH operates on TCP port 22 and provides secure encrypted
remote administration. Unlike Telnet, SSH encrypts authentication
credentials and session data.


9. What is the main purpose of vulnerability scanning?
A. Delete compromised files
B. Install security updates automatically
C. Identify known vulnerabilities in systems
D. Replace penetration testing
Rationale: Vulnerability scanning identifies known weaknesses by
comparing system configurations and software versions against

Información del documento

Subido en
5 de agosto de 2026
Número de páginas
42
Escrito en
2026/2027
Tipo
Examen
Contiene
Preguntas y respuestas
$27.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
prex001
3.0
(1)
Vendido
13
Seguidores
1
Artículos
822
Última venta
4 semanas hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes