Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

SANS 560 ~ GPEN Study Set ACTUAL QUESTIONS AND CORRECT ANSWERS

Beoordeling
-
Verkocht
-
Pagina's
43
Cijfer
A+
Geüpload op
25-09-2025
Geschreven in
2025/2026

SANS 560 ~ GPEN Study Set ACTUAL QUESTIONS AND CORRECT ANSWERS Which of the following correctly defines the Nmap Scripting Engine "intrusive" category? Detects network-accessible backdoors Looks for a vulnerability Detects the version of a target's services May leave logs, guess passwords, or otherwise impact the target - Correct answersMay leave logs, guess passwords, or otherwise impact the target After scanning a network, a penetration tester has a list of open ports to be investigated. Which Nmap feature can be used to probe the target machine and determine what software is actually

Meer zien Lees minder
Instelling
Vak

Voorbeeld van de inhoud

SANS 560 ~ GPEN Study Set ACTUAL
QUESTIONS AND CORRECT ANSWERS
Which of the following correctly defines the Nmap Scripting Engine "intrusive" category?



Detects network-accessible backdoors



Looks for a vulnerability



Detects the version of a target's services



May leave logs, guess passwords, or otherwise impact the target - Correct answers✔May leave
logs, guess passwords, or otherwise impact the target



After scanning a network, a penetration tester has a list of open ports to be investigated. Which
Nmap feature can be used to probe the target machine and determine what software is actually
listening on those ports?



TCP connect scan



Version scanning



UDP port scan



TCP SYN scan - Correct answers✔Version scanning

,A penetration tester executes the command "dnsrecon -d [domain] -t axfr" to target the DNS
infrastructure of an organization. What are they doing?



Attempting a zone transfer



Performing a DNSSEC zone walk



Performing a reverse DNS lookup for IPaddress or CIDRrange



Scanning for DNS cache snooping using a supplied dictionary file - Correct
answers✔Attempting a zone transfer



Which Regional Internet Registry is responsible for Europe, the Middle East, and parts of
Central Asia?



RIPE NCC



ARIN



LACNIC



APNIC - Correct answers✔RIPE NCC



Which of the following implies that you are measuring things against a fixed, pre-determined,
rigorous set of standards?


Penetration testing

,Vulnerability scan



Security audit



Security assessment - Correct answers✔Security audit



In retaliation for being fired, a former employee wants to cause a network outage in an
organization. What is the former employee an example of?



Risk



Threat



Exploit



Vulnerability - Correct answers✔Threat



During a penetration testing engagement, the tester poses as a targeted user to a call center
operator and requests that the user's password be changed. What sort of penetration test is being
performed?



Network services test



Web application test

, Client-side test



Social engineering test - Correct answers✔Social engineering test



What is the default -T speed used by Nmap when scanning a target?



3



1



2



4 - Correct answers✔3



An organization is contracted to perform an external penetration test on a very large target
network. Which technique would be most effective to limit the scope of the scanning needed to
identify targets?



Scan using Nessus unsafe plugins.



Scan using a TCP SYN scan for all ports.



Scan using a TCP connect scan for all ports.


Scan a subset of commonly used ports. - Correct answers✔Scan a subset of commonly used
ports.

Geschreven voor

Vak

Documentinformatie

Geüpload op
25 september 2025
Aantal pagina's
43
Geschreven in
2025/2026
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

$11.49
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper
Seller avatar
GENIOUSTOPCLASS
3.0
(1)

Maak kennis met de verkoper

Seller avatar
GENIOUSTOPCLASS Stanford
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
1
Lid sinds
11 maanden
Aantal volgers
0
Documenten
1857
Laatst verkocht
7 maanden geleden
ACADEMIC EXAMS PLATFORM

I create high-quality, easy-to-understand academic documents to help students learn faster and perform better. My materials are well-researched, clearly organized, and cover key exam topics to make studying simple and effective.

3.0

1 beoordelingen

5
0
4
0
3
1
2
0
1
0

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen