Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 11 pages
Exam (elaborations)

Ethical Hacking Final Exam Study Guide with Questions and Correct Answers

Document preview thumbnail
Preview 2 out of 11 pages

Which of the following is a non-profit organization that is in favor of hacking in the traditional sense and advocates for the expression of electronic freedom? a) Freetonic b) Free Internet c) Electronic Frontier Foundation d) Anonymous Electronic Frontier Foundation is considered a hacktivist group. a) Skids b) Free Internet c) Hack Justice d) WikiLeaks WikiLeaks For the U.S. Department of Justice, which of the following is not treated the same with regard to the law for combatting cybercrimes because their activities may not break the law? a) Hackers b) Crackers c) Packet monkeys d) None of the above None of the above Which of the following is not considered a type of social engineering activity that an ethical hacking can conduct? a) Sending phishing email to a company's employees. b) Making phone calls targeting a company's employees in attempt to test the likelihood that some of them may give away login credentials c) Using the kindness card when talking to a company's employees in an attempt make them comfortable and reveal secrets that may jeopardize the company's network security d) Contacting companies' employees through social media to establish trust with the goal of getting them to reveal sensitive information e) None of the above None of the above Analyzing computer programs manually trying to discover bad programming that is done without security in mind is part of what ethical hackers do. a) True b) False True This is called code review. Which of the following should be used to scan a Windows-based computer in order to generate a report showing the applications installed and the potential exposures? a) Netsparker b) AirCrack c) MBSA d) All of the above MBSA Netsparker is a scanner for scanning Web applications for vulnerabilities. AirCrack is packet sniffer a key cracking tool for wireless networks. Which of the following is typically automated using computer-based tools? (Choose the best answer? a) A Security test b) A penetration test c) A vulnerability assessment d) Shoulder surfing A vulnerability assessment

Content preview

Ethical Hacking Final Exam Study Guide
with Questions and Correct Answers
Which of the following is a non-profit organization that is in favor of hacking in the
traditional sense and advocates for the expression of electronic freedom?
a) Freetonic
b) Free Internet
c) Electronic Frontier Foundation
d) Anonymous ✅Electronic Frontier Foundation

is considered a hacktivist group.
a) Skids
b) Free Internet
c) Hack Justice
d) WikiLeaks ✅WikiLeaks

For the U.S. Department of Justice, which of the following is not treated the same with
regard to the law for combatting cybercrimes because their activities may not break the
law?
a) Hackers
b) Crackers
c) Packet monkeys
d) None of the above ✅None of the above

Which of the following is not considered a type of social engineering activity that an
ethical hacking can conduct?
a) Sending phishing email to a company's employees.
b) Making phone calls targeting a company's employees in attempt to test the likelihood
that some of them may give away login credentials
c) Using the kindness card when talking to a company's employees in an attempt make
them comfortable and reveal secrets that may jeopardize the company's network
security
d) Contacting companies' employees through social media to establish trust with the
goal of getting them to reveal sensitive information
e) None of the above ✅None of the above

Analyzing computer programs manually trying to discover bad programming that is done
without security in mind is part of what ethical hackers do.
a) True
b) False ✅True
This is called code review.

Which of the following should be used to scan a Windows-based computer in order to
generate a report showing the applications installed and the potential exposures?

, a) Netsparker
b) AirCrack
c) MBSA
d) All of the above ✅MBSA
Netsparker is a scanner for scanning Web applications for vulnerabilities. AirCrack is
packet sniffer a key cracking tool for wireless networks.

Which of the following is typically automated using computer-based tools? (Choose the
best answer?
a) A Security test
b) A penetration test
c) A vulnerability assessment
d) Shoulder surfing ✅A vulnerability assessment

Vulnerability assessment is an activity that security testers conduct in order to know
about potential systems' vulnerabilities before engaging in their testing. Penetration
testing involves probing or attacking a system in order to exploit potential vulnerabilities.
One of the differences between penetration testing and security testing is that security
testing involves analyzing a company's security policies in order to find potential
weaknesses that may jeopardize security.

Which of the following may not be included in a penetration test report?
a) How risks of exploiting exposures are rated
b) Recommendations about dealing with potential exposures
c) Technical details about vulnerabilities, and possible mitigation options
d) Details about attacks conducted
e) None of the above ✅None of the above

A ________________________ can help determine that a company's specific security
procedures are not implemented.
a) Penetration testing
b) Security testing
c) Vulnerability assessment
d) Only a and b ✅Security testing

An ethical hacker can launch a denial of service attack against a company's server.
a) True
b) False ✅True

During the last few months, almost all of InfoSec Inc.'s computers have been infected by
a malicious piece of software called Mytob. The malware was able to harvest email
addresses from the Windows address book. The malware primarily spread using its own
SMTP email engine. Mytob has the potential of deleting files on the infected computers
and seriously slowing down communication on the network by consuming the victims'
processing capacity. Which of the following best describes this malware?
a) A DoS attack

Document information

Uploaded on
September 23, 2024
Number of pages
11
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$9.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
twishfrancis
3.9
(42)
Sold
225
Followers
43
Items
10596
Last sold
1 day ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions