GPEN Exam Questions
442 real GPEN exam questions with expert-verified answers and explanations. Page 4 of 9.
- Question #166Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Tech Perfect Inc. The company requires a secure wireless network. To provide security, you are configuring ISA Server 2006 as a firewall. Wh...
ISA Serverfirewall configurationnetwork securityVPN - Question #167Penetration Testing Foundations & Reconnaissance
Network mapping provides a security testing team with a blueprint of the organization. Which of the following steps is NOT a part of manual network mapping?
network mappingmanual reconnaissancefootprintingbanner grabbing - Question #168Penetration Testing Foundations & Reconnaissance
You want to retrieve the default security report of nessus. Which of the following google search queries will you use?
Google hackingsearch operatorsOSINTNessus reports - Question #170Vulnerability Discovery & Scanning
You work as a Penetration Tester for the Infosec Inc. Your company takes the projects of security auditing. Recently, your company has assigned you a project to test the security o...
TCP wrapperstelnet behavior analysishoneypot detectionnetwork anomaly - Question #171Penetration Testing Foundations & Reconnaissance
Which of the following can be used to mitigate the evil twin phishing attack?
evil twin attackwireless securityIPSec VPNattack mitigation - Question #172Penetration Testing Foundations & Reconnaissance
Which of the following attacks can be overcome by applying cryptography?
cryptographysniffing attacksencryption countermeasuresnetwork security - Question #174Web Application Penetration Testing
Which of the following can be used as a countermeasure against the SQL injection attack? Each correct answer represents a complete solution. Choose two.
SQL injectionprepared statementsinput sanitizationweb defenses - Question #175Penetration Testing Foundations & Reconnaissance
You want to perform passive footprinting against we-are-secure Inc. Web server. Which of the following tools will you use?
passive footprintingNetcraftOSINTreconnaissance tools - Question #176Exploitation & Post-Exploitation Techniques
Which of the following are considered Bluetooth security violations? Each correct answer represents a complete solution. Choose two.
Bluetooth securityBluebugBluesnarfingwireless attacks - Question #178Reporting & Remediation
You work as a Penetration Tester for the Infosec Inc. Your company takes the projects of security auditing. Recently, your company has assigned you a project to test the security o...
SNMP enumerationcommunity stringsSNMP hardeningvulnerability remediation - Question #180Penetration Testing Foundations & Reconnaissance
Every network device contains a unique built in Media Access Control (MAC) address, which is used to identify the authentic device to limit the network access. Which of the followi...
MAC addressnetwork addressingOSI layer 2hardware identification - Question #181Penetration Testing Foundations & Reconnaissance
You want to search the Apache Web server having version 2.0 using google hacking. Which of the following search queries will you use?
Google hackingGHDBApache fingerprintingsearch operators - Question #182Vulnerability Discovery & Scanning
What happens when you scan a broadcast IP address of a network? Each correct answer represents a complete solution. Choose all that apply.
broadcast scanningsmurf attacknetwork scanningIDS detection - Question #183Reporting & Remediation
John works as a professional Ethical Hacker. He has been assigned a project to test the security server. Now, he suggests some countermeasures to avoid such brute force attacks on...
brute force countermeasuresCAPTCHAaccount lockoutpassword policy - Question #184Penetration Testing Foundations & Reconnaissance
Peter, a malicious hacker, obtains e-mail addresses by harvesting them from postings, blogs, DNS listings, and Web pages. He then sends large number of unsolicited commercial e-mai...
email spamemail harvestingOSINTUCE - Question #186Vulnerability Discovery & Scanning
TCP/IP stack fingerprinting is the passive collection of configuration attributes from a remote device during standard layer 4 network communications. The combination of parameters...
OS fingerprintingnmapTCP/IP stack fingerprinting-O flag - Question #187Penetration Testing Foundations & Reconnaissance
You have received a file named new.com in your email as an attachment. When you execute this file in your laptop, you get the following message: 'EICAR-STANDARD-ANTIVIRUS-TEST-FILE...
EICAR test fileantivirus testingmalware identificationfalse positive - Question #189Exploitation & Post-Exploitation Techniques
Which of the following statements are true about session hijacking? Each correct answer represents a complete solution. Choose all that apply.
session hijackingTCP hijackingsession keyunauthorized access - Question #190Reporting & Remediation
Which of the following are the countermeasures against WEP cracking? Each correct answer represents a part of the solution. Choose all that apply.
WEP securitywireless encryptionkey managementWEP countermeasures - Question #191Penetration Testing Foundations & Reconnaissance
Which of the following enables an inventor to legally enforce his right to exclude others from using his invention?
intellectual propertypatentlegal frameworksethical hacking law - Question #192Exploitation & Post-Exploitation Techniques
John, a novice web user, makes a new E-mail account and keeps his password as "apple", his favorite fruit. John's password is vulnerable to which of the following password cracking...
dictionary attackhybrid attackbrute forceweak passwords - Question #193Penetration Testing Foundations & Reconnaissance
Adam works as a professional Computer Hacking Forensic Investigator. He works with the local police. A project has been assigned to him to investigate an iPod, which was seized fro...
digital forensicsmobile device forensicsMac OSforensic tools - Question #194Penetration Testing Foundations & Reconnaissance
Which of the following tools allows you to download World Wide Web sites from the Internet to a local computer?
HTTrackwebsite mirroringreconnaissance toolsOSINT - Question #197Exploitation & Post-Exploitation Techniques
One of the sales people in your company complains that sometimes he gets a lot of unsolicited messages on his PDA. After asking a few questions, you determine that the issue only o...
Bluetooth securitybluejackingwireless attacksunsolicited messages - Question #198Vulnerability Discovery & Scanning
You want to run the nmap command that includes the host specification of 202.176.56-57.*. How many hosts will you scan?
nmaphost specificationIP range calculationnetwork scanning - Question #199Exploitation & Post-Exploitation Techniques
Which of the following is the most common method for an attacker to spoof email?
email spoofingopen relaySMTP abusesocial engineering - Question #201Exploitation & Post-Exploitation Techniques
Adam, a malicious hacker, hides a hacking tool from a system administrator of his company by using Alternate Data Streams (ADS) feature. Which of the following statements is true i...
NTFS ADSalternate data streamsdata hidinganti-forensics - Question #202Exploitation & Post-Exploitation Techniques
John works as a professional Ethical Hacker. He has been assigned the project of testing the description of the tool is as follows: Which of the following tools is John using to cr...
AirSnortWEP crackingwireless toolsencryption cracking - Question #203Vulnerability Discovery & Scanning
Which of the following is a Windows-based tool that is used for the detection of wireless LANs using the IEEE 802.11a, 802.11b, and 802.11g standards and also detects wireless netw...
NetStumblerwireless detection802.11 standardsGPS mapping - Question #204Penetration Testing Foundations & Reconnaissance
Which of the following is NOT an example of passive footprinting?
passive footprintingactive reconnaissanceport scanningOSINT - Question #206Penetration Testing Foundations & Reconnaissance
The employees of CCN Inc. require remote access to the company's proxy servers. In order to provide solid wireless security, the company uses LEAP as the authentication protocol. W...
LEAP protocolwireless authenticationdynamic key encryptionpassword hashing - Question #207Penetration Testing Foundations & Reconnaissance
What does APNIC stand for?
APNICregional internet registriesWHOISOSINT - Question #208Penetration Testing Foundations & Reconnaissance
Which of the following is NOT a valid DNS zone type?
DNS zone typesstub zonesecondary zoneprimary zone - Question #209Vulnerability Discovery & Scanning
Which of the following nmap switches is used to perform NULL scan?
nmapNULL scanstealth scanningTCP flags - Question #211Vulnerability Discovery & Scanning
Which of the following tools is used for SNMP enumeration?
SNMP enumerationGetifnetwork enumerationMIB - Question #212Exploitation & Post-Exploitation Techniques
If a password is seven characters or less, the second half of the LM hash is always ___________________.
LM hashpassword crackingWindows authenticationhash constants - Question #213Penetration Testing Foundations & Reconnaissance
What does TCSEC stand for?
TCSECsecurity evaluation criteriaorange booksecurity standards - Question #214Cloud & Pivoting Techniques
Which of the following tools is used for port redirection?
port redirectionFpipetraffic pivotingtunneling - Question #215Exploitation & Post-Exploitation Techniques
Which of the following is the default port value of beast Trojan?
Beast TrojanTrojan portsmalwarebackdoor - Question #216Exploitation & Post-Exploitation Techniques
Which of the following Trojans does not use TCP protocol?
Back OrificeUDP Trojanremote access Trojanprotocol selection - Question #218Penetration Testing Foundations & Reconnaissance
In which layer of the OSI model does a sniffer operate?
network sniffingOSI modeldata link layerpacket capture - Question #219Exploitation & Post-Exploitation Techniques
In which of the following attacks does the attacker overload the CAM table of the switch?
MAC floodingCAM tableswitch exploitationnetwork attacks - Question #220Web Application Penetration Testing
Which of the following tools can be used for session splicing attacks?
session splicingIDS evasionWhiskerweb attack tools - Question #221Penetration Testing Foundations & Reconnaissance
__________ firewall architecture uses two NICs with a screening router inserted between the host and the untrusted network.
screened host firewallnetwork architectureDMZdual NIC - Question #223Vulnerability Discovery & Scanning
Which of the following worms performs random scanning?
Code Red wormrandom scanningworm propagationnetwork worms - Question #224Web Application Penetration Testing
Which of the following syntaxes is the correct syntax for the master.dbo.sp_makewebtask procedure?
sp_makewebtaskSQL Serverstored proceduresSQL injection - Question #226Exploitation & Post-Exploitation Techniques
Which of the following is the second half of the LAN manager Hash?
LAN Manager hashLM hashWindows credential storagehash values - Question #228Penetration Testing Foundations & Reconnaissance
Which of the following types of Penetration testing provides the testers with complete knowledge of the infrastructure to be tested?
white box testingpenetration testing typesfull disclosuretest methodology - Question #229Penetration Testing Foundations & Reconnaissance
Which of the following Penetration Testing steps includes network mapping and OS fingerprinting?
network mappingOS fingerprintingreconnaissance phaseinformation gathering - Question #230Penetration Testing Foundations & Reconnaissance
Which of the following techniques is used to monitor telephonic and Internet conversations by a third party?
wiretappinginterceptionpassive surveillanceeavesdropping