WITH 125 QUESTIONS AND WELL-
VERIFIED CORRECT ANSWERS |
ALREADY GRADED A+ |
GUARANTEED PASS | WEB APP
PRACTICE EXAM
Select a technique that is used for discovering hidden web content in addition to
using spider functionality. - ANSWER-Use of public information
Which of the following HTTP response codes indicates the issue is with the client
request. - ANSWER-404 not found
Setting the X-Frame-options header is a defensive setting to prevent Cross Site
Scripting - ANSWER-True
HTTPS should only be used on web pages that pass username and password
information - ANSWER-False
, ASCII is designed to convert international writing systems into browser readable
text - ANSWER-False
The HttpOnly parameter for the set-cookies header tells the browser to allow the
use of client side JavaScript to send the cookie - ANSWER-False
The User-Agent request header provides the following information to the server
Except: - ANSWER-Accepted Encoding type
HTTPS provides verification of server identity via a X.509 certificate - ANSWER-
True
SQL Injection is the only form of injection attack available to a hacker -
ANSWER-False
String building allows untrusted data to be inserted into a database query -
ANSWER-True
Injected SQL queries run under the context of which account? - ANSWER-
Application Account
In order to assess current vulnerabilities, the following resources would be used
except: - ANSWER-exploit-db.com website
By the year 2020 there will be more devices than people in use worldwide. -
ANSWER-True
Companies that perform monthly penetration tests should be confident their web
applications are secure 24/7. - ANSWER-False