Question 61

A penetration tester gains access to the target network and observes a running SSH server.
Which of the following techniques should the penetration tester use to obtain the version of SSH running on the target server?
  • Question 62

    The provision that defines the level of responsibility between the penetration tester and the client for preventing unauthorized disclosure is found in the:
  • Question 63

    A penetration tester is conducting a vulnerability scan. The tester wants to see any vulnerabilities that may be visible from outside of the organization. Which of the following scans should the penetration tester perform?
  • Question 64

    find . -type f -exec egrep -i "token|key|login" {} \;
    Which of the following is the penetration tester conducting?
  • Question 65

    A penetration tester needs to help create a threat model of a custom application. Which of the following is the most likely framework the tester will use?