nerdexam
CompTIA

CAS-002 · Question #415

What is the goal of a black-box penetration testing?

The correct answer is B. To simulate an external hacking or cyber warfare attack. Black Box is a kind of Penetration testing, which assumes no prior knowledge of the infrastructure to be tested. The testers must first determine the location and extent of the systems before commencing their analysis. Black box testing simulates an attack from someone who is…

Enterprise Security

Question

What is the goal of a black-box penetration testing?

Options

  • ATo simulate a user to include customizable scripts, additional tools and configurable kernels
  • BTo simulate an external hacking or cyber warfare attack
  • CTo simulate an attacker who has some knowledge of the organization and its infrastructure
  • DTo simulate a malicious insider who has some knowledge and possibly basic credentials to

How the community answered

(28 responses)
  • A
    4% (1)
  • B
    93% (26)
  • D
    4% (1)

Explanation

Black Box is a kind of Penetration testing, which assumes no prior knowledge of the infrastructure to be tested. The testers must first determine the location and extent of the systems before commencing their analysis. Black box testing simulates an attack from someone who is unfamiliar with the system. Answer option D is incorrect. A white box penetration testing has a goal to simulate a malicious insider who has some knowledge and possibly basic credentials to the target system. Answer option A is incorrect. BackTrack has a goal to simulate a user to include customizable scripts, additional tools and configurable kernels in personalized distributions. Answer option C is incorrect. A grey box penetration testing has a goal to simulate an attacker who has some knowledge of the organization and its infrastructure.

Topics

#penetration testing#black-box testing#ethical hacking#security assessment

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice