GradePack

    • Home
    • Blog
Skip to content
bg
bg
bg
bg

Author Archives: Anonymous

Which password-cracking method requires extensive storage ca…

Which password-cracking method requires extensive storage capacity, sometimes more than 300 GB in total?

Read Details

Which of the following is an identifier provided for CWE ent…

Which of the following is an identifier provided for CWE entries?

Read Details

Which of the following are items typically addressed in a ma…

Which of the following are items typically addressed in a master service agreement (MSA)? (Choose two.)

Read Details

Which penetration testing methodology may require valid auth…

Which penetration testing methodology may require valid authentication credentials or other information granting intimate knowledge of an environment or network?

Read Details

During the engagement, the clients blue team (the defenders)…

During the engagement, the clients blue team (the defenders) identifies your scans and sets a firewall rule to block all traffic to their environment from your IP address. Of the following options, which would be the most appropriate course of action to continue the penetration test?

Read Details

What is the effect of the -PS flag in nmap?

What is the effect of the -PS flag in nmap?

Read Details

Which of the following data sources is not a valid option in…

Which of the following data sources is not a valid option in theharvester?

Read Details

If travel to remote field offices or data centers is require…

If travel to remote field offices or data centers is required as part of a penetration test, in what contractual document would this usually be found?

Read Details

Refer to the following scenario for the next five questions:…

Refer to the following scenario for the next five questions: You have been contracted for a penetration test by a local hospital. The client has requested a third-party security assessment to provide confirmation that they are adhering to HIPAA guidelines. In addition, the client requests that you perform a detailed penetration test of a proprietary web application that they use to manage their inventories. To further assist this effort, they have provided a detailed map of their network architecture in addition to authorized administrative credentials, source code, and related materials for the web application. Your master service agreement with the client indicates that your written authorization is to be a separately delivered document, and that it should be digitally delivered one week before the scheduled start date of the engagement. It is currently three days before the start date agreed upon in preliminary meetings, and you do not yet have a signed authorization letter. What type of penetration test is most likely being requested by the client in this scenario?

Read Details

Which method of collecting open-source intelligence consists…

Which method of collecting open-source intelligence consists of the collection of published documents, such as Microsoft Office or PDF files, and parsing the information hidden within to reveal usernames, e-mail addresses, or other sensitive data?

Read Details

Posts pagination

Newer posts 1 … 35 36 37 38 39 … 96,370 Older posts

GradePack

  • Privacy Policy
  • Terms of Service
Top