• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 2 out of 15 pages
Exam (elaborations)

WGU D385 SOFTWARE SECURITY AND TESTING PRE ASSESSMENT ACTUAL QUESTIONS AND CORRECT ANSWERS

Document preview thumbnail
Preview 2 out of 15 pages

WGU D385 SOFTWARE SECURITY AND TESTING PRE ASSESSMENT ACTUAL QUESTIONS AND CORRECT ANSWERS

Content preview

WGU D385 SOFTWARE SECURITY AND
TESTING PRE ASSESSMENT ACTUAL
QUESTIONS AND CORRECT ANSWERS

◉ CLASS: The Task 2 scenario in one line
Answer: Internal Construction Equipment Rental API (v2.2.0,
endpoints under /api/v1/) is suffering unauthorized access
attempts, suspicious input patterns, and failing authorization logic -
you are the developer securing it


◉ CLASS: What goes in the final Task 2 submission?
Answer: ONE zip containing the written report (Word docx) plus the
modified Python script and the test script - the starter tells you to
save your fixed app as app_solution.py


◉ CLASS: The evidence files provided with the starter
Answer: app_student.py (vulnerable code), task_2_flake8_report.txt
(general vulns for Section A), task_2_bandit_report.txt (API vulns for
Section B), network_security_log.txt (attack evidence),
penetration_test_report.json (fill-in template)


◉ CLASS: Security principles the task intro names

, Answer: Least privilege, defense in depth, encryption, API keys, and
OAuth - be ready to explain how each protects modern APIs


◉ CLASS: Course textbook to cite in the report
Answer: Full Stack Python Security by Dennis Byrne -
hashing/salting, TLS, and attack chapters map directly to D1-D4


◉ CLASS: The two submission gates before evaluation
Answer: WGU similarity checker (wait for the report and review it)
and Grammarly for Education (submission cannot pass without
professional communication passing)


◉ RUBRIC: Section A pattern (A1-A3)
Answer: Pick 2 GENERAL vulnerabilities from the flake8 report. A1
screenshot the insecure code WITH line numbers, A2 implement a
secure replacement using industry practice, A3 comment out the
original code so it no longer executes - never delete it


◉ RUBRIC: Section B pattern (B1-B3)
Answer: Same three-step evidence for 2 API security vulnerabilities
sourced from the bandit report: insecure screenshot with line
numbers, secure replacement, original commented out


◉ RUBRIC: Section C requirements (C1-C5)

Document information

Uploaded on
September 8, 2026
Number of pages
15
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$17.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TopGradeInsider
4.2
(13)
Sold
176
Followers
2
Items
57333
Last sold
16 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions