100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

D 484 / D484 Final Exam Review (Latest Update 2025 / 2026) Penetration Testing | Study Guide Questions with Verified Answers | Grade A | 100% Correct - WGU

Rating
-
Sold
-
Pages
113
Grade
A+
Uploaded on
27-03-2025
Written in
2024/2025

D 484 / D484 Final Exam Review (Latest Update 2025 / 2026) Penetration Testing | Study Guide Questions with Verified Answers | Grade A | 100% Correct - WGU Question: A security team plans a lateral move within a client's Windows network. The intent is to exploit a flaw in the Distributed Component Object Model (DCOM) during the move. How does the team achieve this? A.Issue commands using SMB B.Use RPC as a transport mechanism C.Install the WinRM service D.Use remote access services Answer: B.Use RPC as a transport mechanism The Remote Procedure Call (RPC) enables inter-process communications between local and remote systems. DCOM applications use RPC as a transport mechanism. Question: A PenTester looks to automate some scanning that is required at a client site. What will the Nmap options -sV --script vulners accomplish? (Select all that apply.) A.Version detection on open ports B.OS detection on a target host C.Look for common vulnerabilities and exposures D.Exploit vulnerabilities Answer: A.Version detection on open ports C.Look for common vulnerabilities and exposures Question: A PenTester conducts a stealth scan of a network server from across a network. What does the tester know is true about scanning this way with Nmap? (Select all that apply.) A.Complete TCP three-way handshake B.Limited effectiveness C.Credentials are not used D.Credentials are used Answer: B.Limited effectiveness C.Credentials are not used

Show more Read less











Whoops! We can’t load your doc right now. Try again or contact support.

Document information

Uploaded on
March 27, 2025
Number of pages
113
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

D 484 / D484 Final Exam Review
(Latest Update )
Penetration Testing | Study Guide
Questions with Verified Answers |
Grade A | 100% Correct - WGU


Question:
A security team plans a lateral move within a client's Windows network. The
intent is to exploit a flaw in the Distributed Component Object Model
(DCOM) during the move. How does the team achieve this?
A.Issue commands using SMB
B.Use RPC as a transport mechanism
C.Install the WinRM service
D.Use remote access services
Answer:
B.Use RPC as a transport mechanism


The Remote Procedure Call (RPC) enables inter-process communications
between local and remote systems. DCOM applications use RPC as a
transport mechanism.

,Question:
A PenTester looks to automate some scanning that is required at a client site.
What will the Nmap options -sV --script vulners accomplish? (Select all that
apply.)
A.Version detection on open ports
B.OS detection on a target host
C.Look for common vulnerabilities and exposures
D.Exploit vulnerabilities
Answer:
A.Version detection on open ports
C.Look for common vulnerabilities and exposures




Question:
A PenTester conducts a stealth scan of a network server from across a
network. What does the tester know is true about scanning this way with
Nmap? (Select all that apply.)
A.Complete TCP three-way handshake
B.Limited effectiveness
C.Credentials are not used
D.Credentials are used
Answer:
B.Limited effectiveness
C.Credentials are not used

,Question:
A penetration tester focuses on working on a particular server at a host
organization that contains critical information and is of the highest priority
to harden. At this time, there are no regulatory requirements to fulfill. What
approach should the pen tester use to best assess this situation? (Select all
that apply.)
A.Goals
B.Compliance
C.Teams
D.Objectives
Answer:
A.Goals
D.Objectives




Question:
A project manager is reviewing the scope of a penetration test. Which of the
following is least likely to be included?
A.Location
B.Target exclusions
C.Framework
D.Tools
Answer:
C.Framework

, The penetration testing framework is not likely to be included in scoping
discussions. However, this can be beneficial outside the scope.




Question:
A public school system wishes to educate its student population with
cybersecurity knowledge. They're particularly interested in a resource that
provides a holistic, structured approach to PenTesting and offers its core
materials without any cost. Which of the following is most suitable?
A.OWASP
B.NIST
C.OSSTMM
D.PTES
Answer:
C.OSSTMM


The Open-source Security Testing Methodology Manual (OSSTMM) provides
a holistic, structured approach to PenTesting and is open-source, meaning its
core materials are available without cost. This makes it suitable for a public
school system looking to provide cybersecurity education without incurring
additional expenses.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
quiz_bit Rasmussen College
View profile
Follow You need to be logged in order to follow users or courses
Sold
11516
Member since
5 year
Number of followers
5218
Documents
7067
Last sold
1 day ago
Nursing school is hard...Here are some tools to help ♡

Hello FUTURE NURSES! I'm here to make nursing school a little bit EASIER. Good luck with studying! Appreciate you all and wish you the best of luck going forward.. now go kick ass!

3.9

1927 reviews

5
946
4
381
3
291
2
100
1
209

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions