D484 PENETRATION TESTING MULTIPLE CHOICE EXAM QUESTIONS AND ANSWERS A+ GRADED
A public school system wishes to educate its student population with
cybersecurity knowledge. They're particularly interested in a resource
that provides a holistic, structured approach to Pen Testing and offers its
core materials without any cost. Which of the following is most suitable?
A.OWASP
B.NIST
C.OSSTMM
D.PTES
Verified Answer -C. OSSTMM
The Open-source Security Testing Methodology Manual (OSSTMM)
provides a holistic, structured approach to PenTesting and is opensource, meaning its core materials are available without cost. This makes
it suitable for a public school system looking to provide cybersecurity
education without incurring additional expenses.
While performing a PenTest at a customer site, engineers configure
address resolution protocol spoofing on a Windows system while trying to
find vulnerabilities on a network. What will result from the engineer's
actions?
A.Traffic will be directed to the spoofed system instead of the real system.
B.The spoofed system will receive traffic from any NetBIOS resolution
requests.
C.Traffic will be directed to both the real system and the spoofed system.
D.The incorrect IP address will be returned during a query from the real
system.
Verified Answer -A.Traffic will be directed to the spoofed system instead
of the real system.
Category | Study Material |
Comments | 0 |
Rating | |
Sales | 0 |