Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU D484 Task 1 Practice Questions: Complete Penetration Testing Report Exam Prep Bank with Verified Explanations (GUARANTEED PASS)

Rating
-
Sold
-
Pages
129
Grade
A+
Uploaded on
21-07-2026
Written in
2025/2026

This premium study guide delivers highly relevant, exam-style multiple-choice questions tailored for cybersecurity and penetration testing curriculums. Each question features an instantly verified answer paired with a bolded, deep-dive explanation detailing technical frameworks, exploit mechanisms, and remediation strategies. It serves as an essential, high-density academic resource perfect for students aiming to master compliance regulations, network scanning, and post-exploitation workflows.

Show more Read less

Content preview

WGU D484 Task 1 Practice Questions: Complete
Penetration Testing Report Exam Prep Bank with
Verified Explanations (GUARANTEED PASS)

INTRODUCTION
Master your cybersecurity assessments with this high-yield,
comprehensive exam preparation bank featuring verified multi-choice
questions with explicit rationales. Designed specifically for students
tackling network architecture audits, compliance mapping, and
penetration testing frameworks, this study guide simplifies complex
defense metrics into accessible learning points. Secure your academic
success or build a premium study resource with these expert-verified
questions.


Question 1
An enterprise network administrator notices unauthorized VLAN hopping
attacks within the company switches. Which of the following configuration
changes is the most effective mitigation strategy against this exploit?
A. Implementing strict dynamic NAT mapping rules across the core
firewalls.
B. Disabling Dynamic Trunking Protocol (DTP) and moving unused ports to
an isolated VLAN.

,C. Enforcing AES-256 encryption protocol keys on all active layer-2 switch
loops.
D. Configuring port-security with sticky MAC address properties on trunk
links.
VERIFIED ANSWER: B
EXPLANATION: VLAN hopping relies heavily on Dynamic Trunking
Protocol (DTP) spoofing or double-tagging. By disabling DTP (forcing
ports to stay non-negotiable) and moving all unused ports away
from the default native VLAN (VLAN 1) into an isolated, non-routed
VLAN, an attacker cannot automatically establish a trunk link to
intercept inter-VLAN traffic routing streams.


Question 2
During an internal penetration testing engagement at Western View
Hospital, an analyst needs to quietly capture authentication strings over
an unencrypted local segment without triggering endpoint protection
alerts. Which technique is most appropriate?
A. Executing an aggressive Nmap TCP Connect scan against the core
domain controller.
B. Running a passive network packet sniffing utility like Wireshark via a
configured TAP or SPAN port.
C. Directing the Social Engineering Toolkit (SET) to brute-force local
administrative assets.

,D. Spawning an interactive reverse shell on the endpoint using uncompiled
PowerShell scripts.
VERIFIED ANSWER: B
EXPLANATION: Passive network sniffing via a network TAP (Test
Access Point) or SPAN (Switched Port Analyzer) port generates
zero traffic on the wire. This makes it virtually invisible to host-
based endpoint detection and response (EDR) systems while
allowing the analyst to successfully view clear-text protocols (e.g.,
HTTP, FTP, SMTP) containing active credentials or PHI data.


Question 3
A security engineering team wants to restrict external network
reconnaissance. The external firewall rules must prevent threat actors
from mapping internal topologies using ICMP time-exceeded messages.
Which packet parameter should be closely monitored?
A. Time-to-Live (TTL) expiration limits.
B. Fragment Offset header values.
C. Window Size scaling adjustments.
D. Sequence Number predictability rates.
VERIFIED ANSWER: A
EXPLANATION: Tools like Traceroute map networks by sending
packets with sequentially increasing Time-to-Live (TTL) values. When
a router receives a packet with a TTL of 1, it drops the packet and

, sends back an ICMP Type 11 (Time Exceeded) message. Restricting or
blocking these outbound error responses disrupts external topology
mapping.


Question 4
While conducting an external penetration test against a corporate target,
you run an Nmap scan using the -sV flag. What is the explicit technical
objective of utilizing this specific command switch?
A. Forcing the scanner to run an active operating system fingerprinting
routine.
B. Instructing the engine to determine the exact software version names
running on open ports.
C. Executing a fast, non-blocking SYN stealth scan over common ports.
D. Automating vulnerability exploitation scripts from the integrated Nmap
Scripting Engine.
VERIFIED ANSWER: B
EXPLANATION: The -sV flag in Nmap activates service version
detection. It works by communicating with open ports and
comparing the returned banners against a signature database to
pinpoint the exact application version, which helps testers find
known exploits.


Question 5

Written for

Document information

Uploaded on
July 21, 2026
Number of pages
129
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$27.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
PROFEXAMINAR NURSING
View profile
Follow You need to be logged in order to follow users or courses
Sold
280
Member since
3 year
Number of followers
192
Documents
815
Last sold
13 hours ago

EXCELLENT HOMEWORK HELP AND TUTORING ALL KIND OF QUIZ AND EXAMS WITH GUARANTEE OF A+ Am an expert on major courses especially;Nursing, psychology, and Mathemtics Assisting students with quality work is my first priority. I ensure scholarly standards in my documents and that\'s why i\'m one of the BEST GOLD RATED TUTORS in STUVIA. I assure a GOOD GRADE if you will use my work.Message me for any enquiry am always ready to server you

4.9

1016 reviews

5
972
4
27
3
8
2
2
1
7

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions