Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 42 pages
Exam (elaborations)

WGU D415 – Penetration Testing Final Exam Prep (Latest Update 2026/2027) Questions and Verified Answers | 100% Correct | Grade A

Document preview thumbnail
Preview 4 out of 42 pages

Prepare for the WGU D415 – Penetration Testing Final Exam with this comprehensive 2026/2027 study guide. This exam prep resource features expertly organized questions and verified answers covering penetration testing methodologies, ethical hacking principles, reconnaissance, open-source intelligence (OSINT), vulnerability assessment, network and web application testing, wireless security testing, password attacks, privilege escalation, exploitation techniques, post-exploitation, scripting basics, reporting and documentation, vulnerability validation, social engineering concepts, cloud security testing, OWASP Top 10, NIST guidelines, and legal and ethical considerations. Designed to strengthen practical penetration testing skills and reinforce real-world cybersecurity concepts, this guide helps students confidently prepare for the WGU final assessment.

Content preview

WGU D415 – Penetration Testing Final
Prep Exam (Latest Update 2026/2027)
Questions and Verified Answers | 100%
Correct | Grade A.

1. What is the primary objective of a penetration test?
A. To guarantee complete system security
B. To identify and exploit vulnerabilities in a controlled manner
C. To permanently remove malware from systems
D. To replace vulnerability assessments
Rationale: A penetration test simulates real-world attacks to identify
exploitable weaknesses before malicious actors do. Unlike vulnerability
assessments, penetration testing validates whether vulnerabilities can
actually be exploited and evaluates the potential business impact.


2. During which phase of a penetration test is publicly available
information about the target collected?
A. Exploitation
B. Reconnaissance
C. Reporting
D. Post-exploitation

,Rationale: Reconnaissance is the first stage of a penetration test and
involves collecting information from public records, websites, DNS
records, search engines, and social media. This intelligence helps
attackers and ethical hackers understand the target environment before
launching attacks.


3. Which type of reconnaissance involves directly interacting with
the target?
A. Passive reconnaissance
B. Active reconnaissance
C. OSINT reconnaissance
D. Physical reconnaissance
Rationale: Active reconnaissance involves direct interaction with the
target environment, such as performing port scans or banner grabbing.
Passive reconnaissance relies solely on publicly available information
without alerting the target.


4. Which tool is commonly used for network discovery and port
scanning?
A. Wireshark
B. Nmap
C. Metasploit
D. John the Ripper
Rationale: Nmap is one of the most widely used penetration testing
tools for discovering hosts, identifying open ports, detecting operating

,systems, and enumerating services. It provides valuable reconnaissance
data for later attack phases.


5. What does OSINT stand for?
A. Operating System Integrated Network Testing
B. Open Security Internet Technology
C. Open Source Intelligence
D. Online Security Investigation Tool
Rationale: Open Source Intelligence (OSINT) refers to gathering
information from publicly accessible sources such as websites, social
media, DNS records, WHOIS databases, and public repositories. OSINT
plays a significant role in reconnaissance.


6. Which Nmap option performs a SYN scan?
A. -sV
B. -sS
C. -O
D. -A
Rationale: The -sS option performs a TCP SYN (half-open) scan, making it
faster and less detectable than a full TCP connect scan. It is commonly
used during penetration tests to identify listening services.


7. What is the primary purpose of banner grabbing?

, A. Encrypt network traffic
B. Block incoming packets
C. Identify service and software versions
D. Disable vulnerable services
Rationale: Banner grabbing collects information exposed by services
during communication, including software names and version numbers.
This helps identify known vulnerabilities associated with those services.


8. Which protocol commonly operates on TCP port 22?
A. FTP
B. Telnet
C. SSH
D. SMTP
Rationale: SSH operates on TCP port 22 and provides secure encrypted
remote administration. Unlike Telnet, SSH encrypts authentication
credentials and session data.


9. What is the main purpose of vulnerability scanning?
A. Delete compromised files
B. Install security updates automatically
C. Identify known vulnerabilities in systems
D. Replace penetration testing
Rationale: Vulnerability scanning identifies known weaknesses by
comparing system configurations and software versions against

Document information

Uploaded on
August 5, 2026
Number of pages
42
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$27.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
prex001
3.0
(1)
Sold
13
Followers
1
Items
822
Last sold
4 weeks ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions