Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

CSE 470M FINAL EXAM QUESTIONS WITH VERIFIED ANSWERS

Rating
-
Sold
-
Pages
10
Uploaded on
22-02-2025
Written in
2024/2025

CSE 470M FINAL EXAM QUESTIONS WITH VERIFIED ANSWERS....

Institution
CSE 470M
Course
CSE 470M

Content preview

If you were to see that someone was using OpenVAS, followed by Nessus, what
might you assume? - ANSWER They were trying to reduce false positives.

What is the difference between a false positive and a false negative? -
ANSWER A false positive indicates a finding that doesn't exist, while a false
negative doesn't indicate a finding that does exist.

Which of these may be considered worst practice when it comes to vulnerability
scans? - ANSWER Taking no action on the results

Which of these may be considered an evasive technique? - ANSWER
Encoding data

If you were to notice operating system commands inside a DNS request while
looking at a packet capture, what might you be looking at? - ANSWER
Tunneling attack

What would be a reason to use the Override feature in OpenVAS? - ANSWER
You want to change a severity rating on a finding.

What would you use credentials for in a vulnerability scanner? - ANSWER
Scanning for local vulnerabilities

What is fragroute primarily used for? - ANSWER Fragmenting application
traffic

Olivia, a black hat hacker, captures the information transmitted by the remote
host to expose the application type, application version, and even operating
system type and version. Which of the following techniques will she use to
obtain information about the target system? - ANSWER Banner grabbing

Which of the following tools is used to scan for vulnerabilities on a target
system or a network? - ANSWER Nessus

, Laura, a penetration tester, is asked to identify which services and desktops
have missing security patches. Which of the following will she use to
accomplish the task? - ANSWER Vulnerability scanner

Marry, a deployment manager, works with a software development group to
assess the security of a new version of the organization's internally developed
ERP tool. The organization prefers focusing on assessing security throughout
the life cycle. Which of the following methods should she perform to assess the
security of the product? - ANSWER Vulnerability scanning of the production
environment

Which of the following are the countermeasures for port scanning? Each correct
answer represents a complete solution. Choose all that apply. - ANSWER
Configure firewall and IDS rules to detect and block probes.
Ensure that anti-scanning and anti-spoofing rules are configured.
Filter all ICMP messages at the firewalls and router.

You are hired to perform a technical assessment on the network for discovering
vulnerabilities on a Windows-based computer. Which of the following tools
will you use? - ANSWER Nessus

Juan, a penetration tester, is asked to perform a penetration test from an external
IP address with no prior knowledge of the internal IT systems. What kind of test
will Juan perform? - ANSWER Black box

Who is the creator of Metasploit? - ANSWER HD Moore

What is Phrack? Select all that apply - ANSWER longest-running hacker
magazine at the time
IRC chat room

T or F: The biggest issue penetration testers faced in the 90s was getting the
necessary exploits to demonstrate machine vulnerabilities - ANSWER T

What is Metasploit? - ANSWER An exploit toolkit

Written for

Institution
CSE 470M
Course
CSE 470M

Document information

Uploaded on
February 22, 2025
Number of pages
10
Written in
2024/2025
Type
Exam (elaborations)
Contains
Unknown

Subjects

$15.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Mirror Liberty University
Follow You need to be logged in order to follow users or courses
Sold
425
Member since
3 year
Number of followers
137
Documents
4987
Last sold
1 week ago

3.8

59 reviews

5
23
4
18
3
9
2
4
1
5

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions