g g g g g
rrect Answers g
(B2,gPg122)gWhatgdoesgitgmeangwhengagcomputergprogramgisg"multi-threaded"?
g
A) Itgcallsgmultiplegexternalglibraries
B) Itghasgmultiplegserialgnumbergforgdifferentgusers
C) Itgcangrungmultiplegchunksgofgcodegconcurrently
D) Itghasgmultiplegfunctionsgdefinedgingthegprogram
✓ ~~~g Itgcangrungmultiplegchunksgofgcodegconcurrently
(B3,gPg162)gWhichgofgthegfollowinggisgagcommongresultgofgagreflectedgcross-site
scriptinggattack?
A) Trickinggagusergintogmakinggangauthenticatedgtransaction
B) Sendinggagwebsiteguser'sgsessiongcookiegtogangattacker
C) Embeddinggthegattacker'sgmalwaregingwebgapplicationgsourcegcode
D) Stealinggpasswordghashesgfromgagwebsite'sgbackgendgdatabase
*HINT*gItgmaygbegundergthegsessiongguessinggsection,gbutgifgyougreadgfurthergintogit,
yougwillgseegwheregitgmentionsgXSSgattack.
, ✓ ~~~g Sendinggagwebsiteguser'sgsessiongcookiegtogangattacker
(B3,gPg90)gWhatgtoolgcangbegusedgtogfingerprintgthegoperatinggsystemgofgaghost?
A) netstat
B) dig
C) nslookup
D) nmap
✓ ~~~g Nmap
(B3,gPg151)gWhatgtypegofgvulnerabilitygisgillustratedgwheregtheregisgcodegingthegweb
page?
A) FilegInclusion
B) Clickjacking
C) Cross-SitegScripting
D) SQLginjection
*HINT*gWhilegitgdoesn'tgexactlygsayg"codegingthegwebgpage",gitgmentionsghowgyougcan
sometimesgviewgagpagegthatglooksglikegPHPgcodegandghowgthatgcodegcanggaingyou
accessgtogthegaccessglogsgofgthegserver.
, ✓ ~~~g FilegInclusion
(B3,gPg88-89)gAngalertgindicatesgthatgagcompromisedghostgwasgusedgbygangattackergto
rungthegcommandgbelow.gWhatgwasgthegattackergattemptinggtogdo?
$gnmapg-sSg192.168.10.0/24
A) Mapgagnetworkgdrivegtogagremoteghost
B) Identifygservicesgrunninggongnetworkghosts
C) Executegagscriptgongagremoteghost
D) SendgSpoofedgpacketsgtognetworkghosts
✓ ~~~g Identifygservicesgrunninggongnetworkghosts
Whatgtypegofgartifactgcangagbluegteamgmembergusegtogidentifygthegnamegthatgis
associatedgtogthegfile?
A) Metadata
B) Windowsgsecurityglogs
C) Prefetch
D) FilegOwnership
✓ ~~~g Metadata
, (B3,gPg307-308)gWhatgis
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
consideredgtogbe?
A) DomaingName
B) LoggFilegPath
C) RegistrygKey
D) YogMama'sgNumber
✓ ~~~g AgRegistrygKey
(B1,gPg236)gIfgagusergagentgisgused,gwheregwouldgitgbegfoundgingthegHTTPgProtocol?
A) Ingthegresponsegheader
B) Ingthegresponsegbody
C) Delimitedgbygangh1gtag
D) IngagGETgRequest
✓ ~~~g IngagGETgRequest
Whatgbenefitgdoesgmovinggfromglocalglogginggtogusinggagloggservergprovide
organizations?