- Study guides, Class notes & Summaries
Looking for the best study guides, study notes and summaries about ? On this page you'll find 151 study documents about .
151 results
Exam (elaborations)
Ethical Hacking Midterm Exam 2024-2025
Ethical Hacking Midterm Exam ...
Exam (elaborations)
Ethical Hacking Exam 1 (1-5) Practice Questions and 100% Correct Answers
What is the main purpose of malware? Financial gain or destruction 
A computer _________ relies on a host to propagate throughout a network. Virus 
An exploit that attacks computer systems by inserting executable code in areas of memory because of poorly written code is called which of the following? Buffer overflow 
Which of the following exploits might hide jit's destructive payload in a legitimate application or game? Trojan program 
Antivirus software should be updated annually. True or Fal...
Exam (elaborations)
Ethical Hacking Final Exam Questions and Correct Answers
Web servers use the ___ element in an HTML document to allow customers to submit information to the web server <Form> 
The column TAG in CFML is <CFCOL> 
The javascript get element BYLD {} function defined by the____Document Object Model [DOM] W3C 
__ is a standard database access method developed by the SQLACCESS Group ODBC 
Connecting to an MS SQL server database with OLE DB requires using___ as the provider ADSDSOOBJECT 
Connecting to a VSAM database with OLE DB requires using____...
Exam (elaborations)
Ethical Hacking Quizzes 1-10 Study Questions and Correct Answers
A major difference between a hacker and an ethical hacker is the: a) level of technological proficiency each has accomplished. b) social position each has reached. c) education level each has obtained. d) code of ethics to which each subscribes. d) code of ethics to which each subscribes. 
Breaking the trust of the client has placed in the ethical hacker can lead to the: a) rules of engagement having to be rewritten. b) planning stage being deemed incomplete. c) failure of the testing results to...
Exam (elaborations)
Ethical Hacking ITS2 Unit 5 Practice Questions and Correct Answers
Kali Linux Linux security distribution which includes advanced penetration testing tools. 
Port Scanning Using a program to remotely determine which ports on a system are open (e.g., whether systems allow connections through those ports). 
Packet Sniffer Software or hardware that can intercept and log traffic that passes over a network. 
Packet crafting Creating a packet according to various requirements to carry out attacks and to exploit vulnerabilities in a network. 
Vulnerability A weakness ...
Exam (elaborations)
Ethical Hacking 2.4.4 Review Questions and Correct Answers
Which type of penetration test is required to ensure an organization is folowing federal laws and regulations? Compliance-based 
Which of the following defines the security standards for any organization that handles cardholder information for any type of payment card? PCI DSS 
Michael is performing a penetration test for a hospital. Which federal regulation does Michael need to ensure he follows? HIPAA 
Charles found a song he wrote being used without his permission on YouTube. Which law will h...
Exam (elaborations)
Ch 11 Ethical Hacker Pro Review Questions and Answers
An IT technician receives an IDS alert on the company network she manages. A seemingly random user now has administration privileges in the system, some files are missing, and other files seem to have just been created. Which of the following alerts did this technician receive? True positive 
An IDS can perform many types of intrusion detections. Three common detection methods are signature-based, anomaly-based, and protocol-based. Which of the following best describes protocol-based detection? ...
Exam (elaborations)
Ch 14 Ethical Hacker Pro Test Questions and Correct Answers
A company has subscribed to a cloud service that offers cloud applications and storage space. Through acquisition, the number of company employees quickly doubled. The cloud service vendor was able to add cloud services for these additional employees without requiring hardware changes. Which of the following cloud concepts does this represent? Rapid elasticity 
You are employed by a small start-up company. The company is in a small office and has several remote employees. You must find a busines...
Exam (elaborations)
Ethical Hacking Final Exam Questions and 100% Correct Answers
Which part of the security triad is concerned about denial-of-service attacks Availability 
Which phase of the Hacking Methodology is the safest in regards to the target becoming aware that you are planning an attack against it? Reconnaissance with OSINT 
What type of hacker can be either ethical or unethical, usually dependent on the highest bidder? gray hat 
What type of threat actor would hack a system to discover the names of doctors who perform abortions and then release those names to the ...
Exam (elaborations)
Module 1 - Introduciton to Ethical Hacking Test Questions and Correct Answers
Information Security A state of well-being of information and infrastructure in which the possibility of THEFT, TAMPERING and DISRUPTION OF INFORMATION AND SERVICES is low or tolerable 
Elements of Information Security (EIS) (Confidentiality -> Integrity - > Availability) -> Authenticity -> Non-repudiation 
Confidentiality (EIS) Assurance tha the information is accessible only to those AUTHORIZED TO HAVE ACCESS 
Integrity (EIS) The TRUSTWORTHINESS OF DATA OR RESOURCES in terms of pre...
Exam (elaborations)
Ethical Hacking Final Exam Study Guide with Questions and Correct Answers
Which of the following is a non-profit organization that is in favor of hacking in the traditional sense and advocates for the expression of electronic freedom? a) Freetonic b) Free Internet c) Electronic Frontier Foundation d) Anonymous Electronic Frontier Foundation 
is considered a hacktivist group. a) Skids b) Free Internet c) Hack Justice d) WikiLeaks WikiLeaks 
For the U.S. Department of Justice, which of the following is not treated the same with regard to the law for combatting cybercrim...
Exam (elaborations)
Ethical Hacking Exam 2 (Book Questions) with Questions and Correct Answers
How can a Linux user list which processes are running if he suspects something has been loaded thatis not approved? The ps command gives a snapshot of the currently running processes, including ps itself. 
You have been hired by Bob's Burgers to scan its network for vulnerabilities. They would like you toperform a system-level scan. Which of the following programs should you use? SARA is a system-level scanner that can scan various ports and attempt to verify what is running on each and what vu...
Exam (elaborations)
Ethical Hacking Final Exam Review Questions and Correct Answers
GET Request Used for requests for pages, resources, etc. 
POST Requests Used for form submissions, logins, etc. 
OS Command Attacks a web security vulnerability that allows an attacker to execute arbitrary operating system (OS) commands on the server that is running an application, and typically fully compromise the application and all its data. 
SQL injection attack a common attack vector that uses malicious SQL code for backend database manipulation to access information that was not intended ...
Exam (elaborations)
Multiple choice Certified Ethical Hacker Book Questions and Correct Answers
If you have been contracted to perform an attack against a target system, you are what type of hacker? A. White hat B. Gray hat C. Black hat D. Red hat A. A white hat hacker always has permission to perform pen testing against a target system. 
Which of the following describes an attacker who goes after a target to draw attention to a cause? A. Terrorist B. Criminal C. Hacktivist D. Script kiddie C. A hacktivist is an individual or group that performs hacking and other disruptive activities with...
Exam (elaborations)
Introduction to Ethical Hacking Review Questions and Complete Solutions
Hacker Classifications: White Hats Considered the good guys of hacking. These are the Ethical Hackers. These people are normally hired by companies to improve security by conducting pen test. The don't conduct test without getting permission first. Also known as Security Analysts.... 
Hacker Classifications: Black Hats Considered the bad guys, these are the crackers who illegally use their skill for either personal reasons or malicious intent. They normally seek to steal (copy) or destroy data ...
Exam (elaborations)
Module 01 Ethical Hacking Overview Questions and Correct Answers
Penetration test An ethical hacker attempts to break into a company's network or applications to find weak links. 
Vulnerability assessment The tester attempts to enumerate all the vulnerabilities found in an application or on a system. 
Security test Breaking into company network or application. They also analyze a company's security policy and procedures and report any vulnerabilities to management. 
Correcting vulnerabilities Entail task such as updating an operating system (OS), eliminatin...
Exam (elaborations)
Ethical Hacker Pro Test Questions and Correct Answers
Ethical hacking Perpetrating exploits against a system with the intent to find vulnerabilities so that security weaknesses can be addressed and the system can be made more secure. 
Penetration testing The practice of finding vulnerabilities and risks with the purpose of securing the computer or network system. 
Red team An offensive security team that attempts to discover vulnerabilities in a network or computer system. 
Blue team A defensive security team that attempts to close vulnerabilities ...
Exam (elaborations)
An Introduction to Ethical Hacking Practice Questions and Solutions
The Security Triad (Goals of Security), known as CIA consist of 1. Confidentiality 2. Integrity 3. Availability 
Confidentiality - addresses how secret the information is 
- if someone obtains the information, the _______ has been compromised 
Physical examples of Confidentiality locked doors, fences, and guards 
- passwords, encryption, and firewalls can be used to secure computer systems and networks 
Integrity - addresses the correctness of the data 
- data must be protected both while in sto...
Exam (elaborations)
Ethical Hacking Chapter 1 Test Questions and Correct Answers
1. Which of the following would be the best example of a deterrent control? A. A log aggregation system B. Hidden cameras onsite C. A guard posted outside the door D. Backup recovery systems C. If you're doing something as a deterrent, you're trying to prevent an attack in the first place. In this physical security deterrent control, a guard visible outside the door could help prevent physical attacks. 
2. Enacted in 2002, this U.S. law requires every federal agency to implement information se...
Exam (elaborations)
An Introduction to Ethical Hacking Study Questions and Correct Answers
What are the three main tenets of security? a. Confidentiality, integrity, and availability b. Authorization, authentication, and accountability c. Deter, delay, and detect d. Acquire, authenticate, and analyze a. Confidentiality, integrity, and availability 
Which of the following laws pertains to accountability for public companies relating to financial information? a. FISMA b. SOX c. 18 U.S.C. 1029 d. 18 U.S.C. 1030 b. SOX 
Which type of testing occurs when individuals know the entire layout ...