GPEN Exam Questions
442 real GPEN exam questions with expert-verified answers and explanations. Page 7 of 9.
- Question #349Penetration Testing Foundations & Reconnaissance
Anonymizers are the services that help make a user's own Web surfing anonymous. An anonymizer removes all the identifying information from a user's computer while the user surfs th...
anonymizersweb privacyJava appletsActiveX controls - Question #350Penetration Testing Foundations & Reconnaissance
You configure a wireless router at your home. To secure your home Wireless LAN (WLAN), you implement WEP. Now you want to connect your client computer to the WLAN. Which of the fol...
WEPSSIDwireless authenticationWLAN configuration - Question #351Vulnerability Discovery & Scanning
Which of the following vulnerability scanner scans from CGI, IDA, Unicode, and Nimda vulnerabilities?
vulnerability scannersCGI vulnerabilitiesNimdaweb scanning tools - Question #352Exploitation & Post-Exploitation Techniques
You work as a Network Administrator in the SecureTech Inc. The SecureTech Inc. is using Linuxbased server. Recently, you have updated the password policy of the company in which th...
brute force attackaccount lockoutpassword policyauthentication hardening - Question #353Penetration Testing Foundations & Reconnaissance
Which of the following is the correct sequence of packets to perform the 3-way handshake method?
TCP 3-way handshakeSYN SYN/ACK ACKTCP fundamentalsnetwork protocols - Question #354Reporting & Remediation
John is a black hat hacker. FBI arrested him while performing some email scams. Under which of the following US laws will john be charged?
CFAA18 U.S.C. 1030cyber lawlegal frameworks - Question #355Penetration Testing Foundations & Reconnaissance
Which of the following is a person-to-person attack in which an attacker convinces the target that he or she has a problem or might have a certain problem in the future and that he...
reverse social engineeringsocial engineeringhuman-based attackspretexting - Question #356Vulnerability Discovery & Scanning
As a professional hacker, you want to crack the security of secureserver.com. For this, in the information gathering step, you performed scanning with the help of nmap utility to r...
nmapIP protocol scan-sO switchservice enumeration - Question #357Vulnerability Discovery & Scanning
Which of the following tools is a Windows-based commercial wireless LAN analyzer for IEEE802.11b and supports all high level protocols such as TCP/IP, NetBEUI, and IPX?
AiroPeekwireless LAN analyzerIEEE 802.11bpacket analysis tools - Question #358Exploitation & Post-Exploitation Techniques
Which of the following tools will you use to prevent from session hijacking? Each correct answer represents a complete solution. Choose all that apply.
session hijackingOpenSSHSSL/TLSencrypted communications - Question #359Exploitation & Post-Exploitation Techniques
Which of the following tools can be used to assign, display, or modify ACLs (access control lists) to files or folders and could also be used within batch files in Windows NT/2000/...
cacls.exeACL managementWindows permissionspost-exploitation - Question #360Reporting & Remediation
You have received a file named new.com in your email as an attachment. When you execute this file in your laptop, you get the following message: 'EICAR-STANDARD-ANTIVIRUS-TEST-FILE...
EICAR test fileantivirus testingmalware identificationincident response - Question #361Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Tech Perfect Inc. The company has a TCP/IP-based network. Rick, your assistant, is configuring some laptops for wireless access. For securit...
WEPwireless access pointkey mismatchWLAN authentication - Question #362Reporting & Remediation
Which of the following security policies will you implement to keep safe your data when you connect your Laptop to the office network over IEEE 802.11 WLANs? Each correct answer re...
WLAN security policyIPSec VPNpersonal firewallwireless hardening - Question #363Reporting & Remediation
Adam works as a professional Computer Hacking Forensic Investigator. A project has been assigned to him to investigate a multimedia enabled mobile phone, which is suspected to be u...
mobile forensicsDevice Seizuredeleted data recoveryforensic tools - Question #364Reporting & Remediation
John works as a professional Ethical Hacker. He has been assigned a project to test the security server. Now, he suggests some countermeasures to avoid such brute force attacks on...
brute force countermeasuresCAPTCHAlogin attempt limitingauthentication hardening - Question #365Exploitation & Post-Exploitation Techniques
Which of the following attacks allows an attacker to recover the key in an RC4 encrypted stream from a large number of messages in that stream?
FMS attackRC4 encryptionWEP crackingcryptographic attacks - Question #367Penetration Testing Foundations & Reconnaissance
One of the sales people in your company complains that sometimes he gets a lot of unsolicited messages on his PDA. After asking a few questions, you determine that the issue only o...
Bluetoothbluejackingwireless attacksmobile security - Question #368Penetration Testing Foundations & Reconnaissance
You are concerned about attackers simply passing by your office, discovering your wireless network, and getting into your network via the wireless connection. Which of the followin...
wireless securitySSID broadcastMAC filteringWEP/WPA - Question #369Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Tech Perfect Inc. The company has a Windows Active Directory-based single domain single forest network. The functional level of the forest i...
wireless networkinginfrastructure modeaccess pointsWLAN topology - Question #370Penetration Testing Foundations & Reconnaissance
You work as a Network Administrator for Tech Perfect Inc. The company has a Windows Active Directory-based single domain single forest network. The functional level of the forest i...
802.1XEAP-TLSsmart card authenticationwireless security - Question #371Penetration Testing Foundations & Reconnaissance
Which of the following are considered Bluetooth security violations? Each correct answer represents a complete solution. Choose two.
Bluetooth securitybluesnarfingbluebugwireless attacks - Question #372Vulnerability Discovery & Scanning
John works as a professional Ethical Hacker. He has been assigned the project of testing the and applications running on the We-are-secure server. For this purpose, he wants to ini...
IDLE scanstealth scanningIP spoofingport scanning - Question #373Exploitation & Post-Exploitation Techniques
Which of the following methods can be used to detect session hijacking attack?
session hijackingnetwork sniffingattack detectionnetwork monitoring - Question #374Penetration Testing Foundations & Reconnaissance
Which of the following is generally practiced by the police or any other recognized governmental authority?
wiretappinglawful interceptlegal authoritynetwork monitoring - Question #375Vulnerability Discovery & Scanning
Victor wants to use Wireless Zero Configuration (WZC) to establish a wireless network connection using his computer running on Windows XP operating system. Which of the following a...
Wireless Zero Configurationrogue access pointwireless probingWZC threats - Question #376Penetration Testing Foundations & Reconnaissance
Which of the following tools can be used by a user to hide his identity? Each correct answer represents a complete solution. Choose all that apply.
anonymizationproxy serveridentity concealmentIPchains - Question #377Vulnerability Discovery & Scanning
Which of the following techniques are NOT used to perform active OS fingerprinting? Each correct answer represents a complete solution. Choose all that apply.
OS fingerprintingactive vs passive fingerprintingICMP probingFIN scanning - Question #378Vulnerability Discovery & Scanning
Victor works as a professional Ethical Hacker for SecureEnet Inc. He wants to scan the wireless network of the company. He uses a tool that is a free open-source utility for networ...
Nmapnetwork explorationwireless scanningservice detection - Question #379Web Application Penetration Testing
John works as a professional Ethical Hacker. He is assigned a project to test the security of Weare- secure Web site and receives the following error message: Microsoft OLE DB Prov...
SQL injectionOLE DB error messagesdatabase errorsweb vulnerability - Question #380Vulnerability Discovery & Scanning
Which of the following ports must you filter to check null sessions on your network?
null sessionsSMBNetBIOSport filtering - Question #382Exploitation & Post-Exploitation Techniques
Which of the following tools can be used to perform Windows password cracking, Windows enumeration, and VoIP session sniffing?
Cain & Abelpassword crackingWindows enumerationVoIP sniffing - Question #383Web Application Penetration Testing
You enter the following URL on your Web browser: af../windows/system32/cmd.exe?/c+dir+c:\ What task do you want to perform?
directory traversalcommand injectionURL manipulationweb exploitation - Question #385Penetration Testing Foundations & Reconnaissance
ACME corporation has decided to setup wireless (IEEE 802.11) network in it's sales branch at Tokyo and found that channels 1, 6, 9,11 are in use by the neighboring offices. Which i...
802.11 channelschannel interferencenon-overlapping channelsWLAN configuration - Question #386Exploitation & Post-Exploitation Techniques
Which Metasploitvncinject stager will allow VNC communications from the attacker to a listening port of the attacker's choosing on the victim machine?
MetasploitVNC injectionreverse TCP stagerpost-exploitation - Question #387Penetration Testing Foundations & Reconnaissance
What is the MOST important document to obtain before beginning any penetration testing?
penetration testing methodologywritten authorizationlegal documentationrules of engagement - Question #388Exploitation & Post-Exploitation Techniques
While reviewing traffic from a tcpdump capture, you notice the following commands being sent from a remote system to one of your web servers: C:\>sc winternet.host.com create ncser...
netcat backdoorWindows servicessc commandpersistence - Question #389Exploitation & Post-Exploitation Techniques
Which of the following best describes a client side exploit?
client-side exploitsexploit typesattack vectors - Question #390Vulnerability Discovery & Scanning
Which of the following TCP packet sequences are common during a SYN (or half-open) scan? (a) The source computer sends SYN and the destination computer responds with RST (b) The so...
SYN scanhalf-open scanTCP packet sequencesport scanning - Question #391Penetration Testing Foundations & Reconnaissance
Which of the following describes the direction of the challenges issued when establishing a wireless (IEEE 802.11) connection?
IEEE 802.11wireless authenticationchallenge-responseWEP - Question #392Cloud & Pivoting Techniques
You have gained shell on a Windows host and want to find other machines to pivot to, but the rules of engagement state that you can only use tools that are already available. How c...
ping sweepnetwork discoveryWindows built-in toolspivoting - Question #393Exploitation & Post-Exploitation Techniques
A penetration tester obtains telnet access to a target machine using a captured credential. While trying to transfer her exploit to the target machine, the network intrusion detect...
IDS evasionfile transferFTP passive modeexploit delivery - Question #394Reporting & Remediation
What section of the penetration test or ethical hacking engagement final report is used to detail and prioritize the results of your testing?
pentest report structureexecutive summaryfindings prioritization - Question #395Exploitation & Post-Exploitation Techniques
You are pen testing a Windows system remotely via a raw netcat shell. You want to quickly change directories to where the Windows operating system resides, what command could you u...
Windows shellenvironment variablesnetcat shellsystemroot - Question #396Reporting & Remediation
A client with 7200 employees in 14 cities (all connected via high speed WAN connections) has suffered a major external security breach via a desktop which cost them more than SI 72...
vulnerability assessmentpatch managementdesktop standardizationremediation strategy - Question #397Exploitation & Post-Exploitation Techniques
Which Metasploit payload includes simple upload and download functionality for moving files to and from compromised systems?
MetasploitMeterpreterpayload capabilitiesfile transfer - Question #398Web Application Penetration Testing
A junior penetration tester at your firm is using a non-transparent proxy for the first time to test a web server. He sees the web site In his browser but nothing shows up In the p...
web proxybrowser configurationnon-transparent proxyHTTP proxy - Question #399Exploitation & Post-Exploitation Techniques
Which of the following describe the benefits to a pass-the-hash attack over traditional password cracking?
pass-the-hashNTLM authenticationcredential attacksIDS evasion - Question #400Exploitation & Post-Exploitation Techniques
You are pen testing a Linux target from your windows-based attack platform. You just moved a script file from the windows system to the Linux target, but it will not execute proper...
line endingsCRLF vs LFcross-platform scriptingfile transfer - Question #401Web Application Penetration Testing
Which of the following is the JavaScript variable used to store a cookie?
JavaScriptdocument.cookiecookie accessweb storage