Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU C701: ETHICAL HACKING AND PENETRATION TESTING EXAM 2025|184 QUESTIONS WITH ACCURATE SOLUTIONS

Rating
-
Sold
-
Pages
57
Grade
A+
Uploaded on
17-03-2025
Written in
2024/2025

If Jake had been trained in cybersecurity awareness, how might he have responded differently to the friend request to avoid falling victim to the honey trap? He would have provided minimal information without concern. He would have accepted the request and shared his work email. He would have engaged in conversation to verify her identity. He would have ignored the friend request from an unknown person and reported it. 2. An attacker submitted a modified uniform resource locator (URL) link to a website that eventually established connections to back-end databases and exposed internal service configurations. The attacker did not hijack a user to perform this attack. This describes which of the following types of attacks? Server-side request forgery Client-side request forgery Cross-site scripting Resource exhaustion 3. Joan, a professional hacker, was hired to retrieve sensitive information from a target organization. In this process, she used a post-exploitation tool to check common misconfigurations and find a way to escalate privileges. Which of the following tools helps Joan in escalating privileges? ShellPhish

Show more Read less
Institution
WGU C701: ETHICAL HACKING AND PENETRATION
Course
WGU C701: ETHICAL HACKING AND PENETRATION

Content preview

WGU C701: ETHICAL HACKING AND PENETRATION TESTING EXAM
2025|184 QUESTIONS WITH ACCURATE SOLUTIONS


1. If Jake had been trained in cybersecurity awareness, how might he have
responded differently to the friend request to avoid falling victim to the
honey trap?

He would have provided minimal information without concern.

He would have accepted the request and shared his work email.

He would have engaged in conversation to verify her identity.

He would have ignored the friend request from an unknown
person and reported it.

2. An attacker submitted a modified uniform resource locator (URL) link to a
website that eventually established connections to back-end databases
and exposed internal service configurations. The attacker did not hijack a
user to perform this attack. This describes which of the following types of
attacks?

Server-side request forgery

Client-side request forgery

Cross-site scripting

Resource exhaustion

3. Joan, a professional hacker, was hired to retrieve sensitive information
from a target organization. In this process, she used a post-exploitation
tool to check common misconfigurations and find a way to escalate
privileges. Which of the following tools helps Joan in escalating
privileges?

ShellPhish

BeRoot

,GFI LanGuard

, Netcraft

4. The _____ group in the CVSS represents the basic qualities of a
vulnerability that are constant over time and across user environments.

Base

Temporal

Environmental

Security Requirements

5. On a compromised computer, you have found that a user without
administrative privileges was able to perform a task limited to only
administrative accounts. What type of exploit has occurred?

DNS cache poisoning

Privilege escalation

Man-in-the-middle

ARP poisoning

6. Describe the primary goal of a Bluesmacking attack in the context of
Bluetooth security.

Bluesmacking is used to steal personal information from
Bluetooth devices.

The primary goal of a Bluesmacking attack is to exploit a
vulnerability in Bluetooth devices by sending oversized packets
to cause a buffer overflow, potentially leading to device crashes
or unauthorized access.

The goal of Bluesmacking is to send unsolicited messages to
Bluetooth-enabled devices.

Bluesmacking aims to intercept data being transmitted between
Bluetooth devices.

, 7. What type of information can an attacker gather by analyzing AWS error
messages?

S3 bucket names

AWS account IDs

Bucket permissions

IAM roles

8. Which of the following techniques helps the attacker in identifying the OS
used on the target host in order to detect vulnerabilities on a target
system?

source routing.

port scanning.

IP address decoy.

banner grabbing.

9. In one of the following social engineering techniques, an attacker
assumes the role of a knowledgeable professional so that the
organization's employees ask them for information. The attacker then
manipulates questions to draw out the required information. What is this
technique?

Baiting

Reverse social engineering

Quid pro quo

Dumpster diving

10. What is the term for the automated process of collecting information
from a target website?

Website mirroring

Website link extraction

Written for

Institution
WGU C701: ETHICAL HACKING AND PENETRATION
Course
WGU C701: ETHICAL HACKING AND PENETRATION

Document information

Uploaded on
March 17, 2025
Number of pages
57
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$20.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
YANCHY Herzing University
Follow You need to be logged in order to follow users or courses
Sold
1781
Member since
4 year
Number of followers
1159
Documents
23402
Last sold
3 weeks ago
Ace Your Exams with Elite Study Resources | ExamEliteHub on Stuvia

I offer genuine and dependable exam papers that are directly obtained from well-known, reputable institutions as a highly regarded professional who specializes in sourcing study materials. These papers are invaluable resources made to help people who want to become nurses and people who work in other fields prepare for exams. Because of my extensive experience and in-depth knowledge of the subject, I take great care to ensure that each exam paper meets the highest quality, accuracy, and relevance standards, making them an essential component of any successful study plan.

Read more Read less
4.1

448 reviews

5
253
4
57
3
84
2
19
1
35

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions