GPEN Exam Questions
442 real GPEN exam questions with expert-verified answers and explanations. Page 1 of 9.
- Question #1Security Testing Methodologies
Which of the following are the scanning methods used in penetration testing? Each correct answer represents a complete solution. Choose all that apply.
penetration testingvulnerability scanningport scanningnetwork scanning - Question #2Network and Mobile Security Threats
An executive in your company reports odd behavior on her PDA. After investigation you discover that a trusted device is actually copying data off the PDA. The executive tells you t...
BluesnarfingBluetooth attackmobile securitywireless threats - Question #3Web Application Security Testing
John works as a professional Ethical Hacker. He has been assigned a project to test the security local disk and obtains all the files on the Web site. Which of the following techni...
web rippingethical hackingweb application securitypenetration testing techniques - Question #4Authentication and Authorization Mechanisms
Which of the following statements is true about the Digest Authentication scheme?
Digest AuthenticationHTTP authenticationchecksumcredential security - Question #5Network Security Tools and Analysis
Which of the following tools is used to verify the network structure packets and confirm that the packets are constructed according to specification?
Snort decoderpacket analysisnetwork security toolspacket verification - Question #6Penetration Testing Foundations & Reconnaissance
Which of the following is NOT an example of passive footprinting?
passive footprintingactive reconnaissanceOSINTport scanning - Question #7Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Infosec Inc. Nowadays, you are facing an unauthorized access in your Wi-Fi network. Therefore, you analyze a log that has been recorded by y...
NetStumbler802.11bwireless tool identificationpacket analysis - Question #8Penetration Testing Foundations & Reconnaissance
Which of the following options holds the strongest password?
password strengthcomplexity requirementsauthentication - Question #9Penetration Testing Foundations & Reconnaissance
Which of the following encryption modes are possible in WEP? Each correct answer represents a complete solution. Choose all that apply.
WEPwireless encryptionencryption modes - Question #10Exploitation & Post-Exploitation Techniques
Which of the following tools can be used to perform brute force attack on a remote database? Each correct answer represents a complete solution. Choose all that apply.
brute forcedatabase attackSQL Serverpassword cracking tools - Question #11Penetration Testing Foundations & Reconnaissance
Which of the following statements are true about WPA? Each correct answer represents a complete solution. Choose all that apply.
WPAWPA-PSKwireless securitypassphrase vulnerability - Question #12Web Application Penetration Testing
Which of the following are the limitations for the cross site request forgery (CSRF) attack? Each correct answer represents a complete solution. Choose all that apply.
CSRFreferrer headerweb attack limitationsform input validation - Question #13Vulnerability Discovery & Scanning
You want to integrate the Nikto tool with nessus vulnerability scanner. Which of the following steps will you take to accomplish the task? Each correct answer represents a complete...
NiktoNessus integrationvulnerability scannertool configuration - Question #14Penetration Testing Foundations & Reconnaissance
Which of the following tools can be used to read NetStumbler's collected data files and present street maps showing the logged WAPs as icons, whose color and shape indicates WEP mo...
StumbVerterNetStumblerWAP mappingwireless reconnaissance - Question #15Penetration Testing Foundations & Reconnaissance
Which of the following types of cyber stalking damage the reputation of their victim and turn other people against them by setting up their own Websites, blogs or user pages for th...
cyber stalkingfalse accusationssocial engineeringreputation attack - Question #16Exploitation & Post-Exploitation Techniques
Which of the following statements are true about MS-CHAPv2? Each correct answer represents a complete solution. Choose all that apply.
MS-CHAPv2PPTPEAP-TLSdictionary attack - Question #17Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Net World International. The company has a Windows Active Directory-based single domain single forest network. The functional level of the f...
WEPShared Key authenticationwireless configurationWindows XP - Question #18Vulnerability Discovery & Scanning
Which of the following ports will you scan to search for SNMP enabled devices in the network?
SNMPport 161network enumerationUDP scanning - Question #19Exploitation & Post-Exploitation Techniques
Which of the following attacks is a form of active eavesdropping in which the attacker makes independent connections with the victims and relays messages between them, making them...
man-in-the-middleactive eavesdroppingnetwork interceptionrelay attack - Question #20Vulnerability Discovery & Scanning
In which of the following scanning techniques does a scanner connect to an FTP server and request that server to start data transfer to the third system?
FTP bounce scanningport scanning techniquesNmapthird-party relay - Question #21Reporting & Remediation
Which of the following enables an inventor to legally enforce his right to exclude others from using his invention?
patentintellectual propertylegal frameworkscompliance - Question #22Vulnerability Discovery & Scanning
When you conduct the XMAS scanning using Nmap, you find that most of the ports scanned do not give a response. What can be the state of these ports?
XMAS scanNmapTCP flagsopen port behavior - Question #23Penetration Testing Foundations & Reconnaissance
You work as a Desktop Technician in we-are-secure.com Inc. Due to some misunderstanding you are terminated from the company. You feel that you were wrongly terminated. Due to this,...
DNS zone transferAXFRDIG toolDNS enumeration - Question #24Vulnerability Discovery & Scanning
Which of the following can be the countermeasures to prevent NetBIOS NULL session enumeration in Windows 2000 operating systems? Each correct answer represents a complete solution....
NetBIOS NULL sessionenumeration countermeasuresSMB hardeningWindows registry - Question #25Exploitation & Post-Exploitation Techniques
Which TCP and UDP ports can be used to start a NULL session attack in NT and 2000 operating systems?
NULL sessionNetBIOSport 139port 445 - Question #26Penetration Testing Foundations & Reconnaissance
John works as a professional Ethical Hacker. He is assigned a project to test the security of you want to perform the next information-gathering step, i.e., passive OS fingerprinti...
passive OS fingerprintingP0freconnaissance toolsinformation gathering - Question #28Exploitation & Post-Exploitation Techniques
Which of the following tools can be used for cracking the password of Server Message Block (SMB)? Each correct answer represents a complete solution. Choose all that apply.
SMB crackingSMBRelayL0phtCrackpassword attacks - Question #29Penetration Testing Foundations & Reconnaissance
The employees of CCN Inc. require remote access to the company's proxy servers. In order to provide solid wireless security, the company uses LEAP as the authentication protocol. W...
LEAP protocolwireless authenticationdynamic key encryptionWPA security - Question #30Penetration Testing Foundations & Reconnaissance
Which of the following TCP flags shows that the system is forwarding the buffered data?
TCP flagsPSH flagTCP/IP fundamentalsnetwork protocols - Question #31Web Application Penetration Testing
Which of the following functions can be used as a countermeasure to a Shell Injection attack? Each correct answer represents a complete solution. Choose all that apply.
shell injectionescapeshellargescapeshellcmdinput sanitization - Question #32Penetration Testing Foundations & Reconnaissance
You want to obtain the Information of a Web server, whose IP address range comes in the IP address range used in Brazil. Which of the following registries can be used to get inform...
LACNICregional internet registryWHOISIP address lookup - Question #33Exploitation & Post-Exploitation Techniques
Which of the following tools is used to make fake authentication certificates?
SSL certificate spoofingWinSSLMiMMitM attackfake certificates - Question #34Web Application Penetration Testing
Which of the following functions can you use to mitigate a command injection attack? Each correct answer represents a complete solution. Choose all that apply.
command injectionescapeshellargescapeshellcmdinput validation - Question #35Exploitation & Post-Exploitation Techniques
Which of the following programming languages are NOT vulnerable to buffer overflow attacks? Each correct answer represents a complete solution. Choose two.
buffer overflowmemory-safe languagesJavalanguage security - Question #36Web Application Penetration Testing
You work as a Computer Hacking Forensic Investigator for SecureNet Inc. You want to investigate Cross-Site Scripting attack on your company's Website. Which of the following method...
XSS investigationweb server logsweb proxy analysisforensic analysis - Question #38Penetration Testing Foundations & Reconnaissance
You want that some of your Web pages should not be crawled. Which one of the following options will you use to accomplish the task?
robots.txtweb crawlinginformation disclosureOSINT - Question #39Exploitation & Post-Exploitation Techniques
Which of the following attacks allows the bypassing of access control lists on servers or routers, and helps an attacker to hide? Each correct answer represents a complete solution...
IP spoofingMAC spoofingACL bypassnetwork evasion - Question #40Web Application Penetration Testing
What is the maximum limit of the file size that a user can upload according to the code snippet given below? <form enctype="multipart/form-data" action="index.php" method="post"> <...
file uploadMAX_FILE_SIZEHTML formsweb security - Question #41Exploitation & Post-Exploitation Techniques
Which of the following tools uses exploits to break into remote operating systems?
Metasploitexploitation frameworkremote exploitationpenetration testing tools - Question #42Vulnerability Discovery & Scanning
In which of the following scanning methods does an attacker send the spoofed IP address to send a SYN packet to the target?
IDLE scanzombie scanIP spoofingstealth scanning - Question #43Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Tech Perfect Inc. The company requires a secure wireless network. To provide security, you are configuring ISA Server 2006 as a firewall. Wh...
ISA Serverfirewall configurationnetwork securityVPN - Question #44Penetration Testing Foundations & Reconnaissance
John works as a contract Ethical Hacker. He has recently got a project to do security checking for in the information gathering step. Which of the following commands will he use to...
banner grabbingnmap OS detectionnetcatinformation gathering - Question #45Web Application Penetration Testing
You enter the following URL on your Web browser: af../windows/system32/cmd.exe?/c+dir+c:\ What kind of attack are you performing?
directory traversalpath traversalURL manipulationweb attacks - Question #46Penetration Testing Foundations & Reconnaissance
Which of the following is a valid google searching operator that is used to search a specified file type?
Google dorkingOSINTfiletype operatorsearch operators - Question #47Exploitation & Post-Exploitation Techniques
Which of the following can be used to mitigate the evil twin phishing attack?
evil twin attackwireless phishingIPSec VPNwireless countermeasures - Question #48Vulnerability Discovery & Scanning
TCP/IP stack fingerprinting is the passive collection of configuration attributes from a remote device during standard layer 4 network communications. The combination of parameters...
NmapOS fingerprintingTCP/IP stack fingerprintingnetwork scanning - Question #49Penetration Testing Foundations & Reconnaissance
Which of the following protocols is the mandatory part of the WPA2 standard in the wireless networking?
WPA2CCMPwireless encryption802.11 security - Question #50Exploitation & Post-Exploitation Techniques
You want to get the Windows administrator account even when it is renamed. Which of the following tools will you use?
Windows enumerationSIDrenamed administratorSid2user - Question #51Web Application Penetration Testing
Which of the following can be used to perform session hijacking? Each correct answer represents a complete solution. Choose all that apply.
session hijackingsession fixationsession sidejackingXSS - Question #52Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Tech Perfect Inc. The company has a Windows Active Directory-based single domain single forest network. The functional level of the forest i...
802.1X authenticationwireless securityWEPgroup policy