Question 61
A penetration tester gains access to the target network and observes a running SSH server.
Which of the following techniques should the penetration tester use to obtain the version of SSH running on the target server?
Which of the following techniques should the penetration tester use to obtain the version of SSH running on the target server?
Question 62
The provision that defines the level of responsibility between the penetration tester and the client for preventing unauthorized disclosure is found in the:
Question 63
A penetration tester is conducting a vulnerability scan. The tester wants to see any vulnerabilities that may be visible from outside of the organization. Which of the following scans should the penetration tester perform?
Question 64
find . -type f -exec egrep -i "token|key|login" {} \;
Which of the following is the penetration tester conducting?
Which of the following is the penetration tester conducting?
Question 65
A penetration tester needs to help create a threat model of a custom application. Which of the following is the most likely framework the tester will use?
