nerdexam
ExamsCAS-002Questions#415
CompTIA

CAS-002 · Question #415

CAS-002 Question #415: Real Exam Question with Answer & Explanation

The correct answer is B: To simulate an external hacking or cyber warfare attack. Black Box is a kind of Penetration testing, which assumes no prior knowledge of the infrastructure to be tested. The testers must first determine the location and extent of the systems before commencing their analysis. Black box testing simulates an attack from someone who is unf

Question

What is the goal of a black-box penetration testing?

Options

  • ATo simulate a user to include customizable scripts, additional tools and configurable kernels
  • BTo simulate an external hacking or cyber warfare attack
  • CTo simulate an attacker who has some knowledge of the organization and its infrastructure
  • DTo simulate a malicious insider who has some knowledge and possibly basic credentials to

Explanation

Black Box is a kind of Penetration testing, which assumes no prior knowledge of the infrastructure to be tested. The testers must first determine the location and extent of the systems before commencing their analysis. Black box testing simulates an attack from someone who is unfamiliar with the system. Answer option D is incorrect. A white box penetration testing has a goal to simulate a malicious insider who has some knowledge and possibly basic credentials to the target system. Answer option A is incorrect. BackTrack has a goal to simulate a user to include customizable scripts, additional tools and configurable kernels in personalized distributions. Answer option C is incorrect. A grey box penetration testing has a goal to simulate an attacker who has some knowledge of the organization and its infrastructure.

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice