Question 6

A penetration tester is starting an assessment but only has publicly available information about the target company. The client is aware of this exercise and is preparing for the test.
Which of the following describes the scope of the assessment?
  • Question 7

    A penetration tester is preparing to perform activities for a client that requires minimal disruption to company operations. Which of the following are considered passive reconnaissance tools? (Choose two.)
  • Question 8

    The results of an Nmap scan are as follows:

    Which of the following would be the BEST conclusion about this device?
  • Question 9

    A penetration tester ran the following commands on a Windows server:

    Which of the following should the tester do AFTER delivering the final report?
  • Question 10

    You are a security analyst tasked with hardening a web server.
    You have been given a list of HTTP payloads that were flagged as malicious.
    INSTRUCTIONS
    Given the following attack signatures, determine the attack type, and then identify the associated remediation to prevent the attack in the future.
    If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.