<< Prev Question Next Question >>

Question 3/35

An engineer, who is conducting a penetration test for a web application, discovers the user login process sends from field data using the HTTP GET method. To mitigate the risk of exposing sensitive information, the form should be sent using an:

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (35q)
Question 1: Which of the following CPU registers does the penetration te...
Question 2: A client has requested an external network penetration test ...
Question 3: An engineer, who is conducting a penetration test for a web ...
Question 4: Which of the following types of intrusion techniques is the ...
1 commentQuestion 5: The following line was found in an exploited machine's histo...
1 commentQuestion 6: A penetration tester is able to move laterally throughout a ...
2 commentQuestion 7: Black box penetration testing strategy provides the tester w...
Question 8: A penetration tester is performing ARP spoofing against a sw...
Question 9: A penetration tester executes the following commands: (Exhib...
Question 10: A software developer wants to test the code of an applicatio...
Question 11: A penetration tester wants to script out a way to discover a...
1 commentQuestion 12: A penetration tester is reviewing the following output from ...
1 commentQuestion 13: A security consultant is trying to attack a device with a pr...
Question 14: A security consultant receives a document outlining the scop...
Question 15: An energy company contracted a security firm to perform a pe...
Question 16: Which of the following is an example of a spear phishing att...
Question 17: While monitoring WAF logs, a security analyst discovers a su...
Question 18: Which of the following is the reason why a penetration teste...
Question 19: A security assessor is attempting to craft specialized XML f...
Question 20: A penetration tester observes that several high-numbered por...
Question 21: Which of the following tools would a penetration tester leve...
Question 22: Consumer-based IoT devices are often less secure than system...
Question 23: During testing, a critical vulnerability is discovered on a ...
Question 24: An email sent from the Chief Executive Officer (CEO) to the ...
Question 25: Given the following Python script: (Exhibit) Which of the fo...
Question 26: A penetration tester has successfully deployed an evil twin ...
Question 27: A malicious user wants to perform an MITM attack on a comput...
Question 28: A penetration tester was able to enter an SQL injection comm...
Question 29: A penetration tester was able to retrieve the initial VPN us...
Question 30: During a web application assessment, a penetration tester di...
Question 31: A penetration tester wants to target NETBIOS name service. W...
Question 32: A penetration tester is performing a remote scan to determin...
Question 33: A healthcare organization must abide by local regulations to...
Question 34: After gaining initial low-privilege access to a Linux system...
Question 35: A penetration tester reviews the scan results of a web appli...