CAS-005 · Question #337
CAS-005 Question #337: Real Exam Question with Answer & Explanation
Sign in or unlock CAS-005 to reveal the answer and full explanation for question #337. The question stem and answer options stay visible for context.
Question
A security engineer receives reports through the organization's bug bounty program about remote code execution in a specific component in a custom application. Management wants to properly secure the component and proactively avoid similar issues. Which of the following is the best approach to uncover additional vulnerable paths in the application?
Options
- ALeverage an exploitation framework to uncover vulnerabilities.
- BUse fuzz testing to uncover potential vulnerabilities in the application.
- CUtilize a software composition analysis tool to report known vulnerabilities.
- DReverse engineer the application to look for vulnerable code paths.
- EAnalyze the use of an HTTP intercepting proxy to dynamically uncover issues.
Unlock CAS-005 to see the answer
You've previewed enough free CAS-005 questions. Unlock CAS-005 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.