Question 1

A penetration tester ran the following Nmap scan on a computer
nmap -sV 192.168.1.5
The organization said it had disabled Telnet from its environment However, the results of the Nmap scan show port 22 as closed and port 23 as open to SSH Which of the following is the BEST explanation for what happened?
  • Question 2

    A tester has determined that null sessions are enabled on a domain controller. Which of the following attacks can be performed to leverage this vulnerability?
  • Question 3

    A penetration tester has been asked to conduct a penetration test on a REST-based web service. Which of the following items is required?
  • Question 4

    When calculating the sales price of a penetration test to a client, which of the following is the MOST important aspect to understand?
  • Question 5

    A security consultant found a SCADA device in one of the VLANs in scope. Which of the following actions would BEST create a potentially destructive outcome against device?