Question 1
A penetration tester runs the following command on a system:
find / -user root -perm -4000 -print 2>/dev/null
Which of the following is the tester trying to accomplish?
Question 2
A client has requested that the penetration test scan include the following UDP services: SNMP, NetBIOS, and DNS. Which of the following Nmap commands will perform the scan?
Question 3
The results of an Nmap scan are as follows:
Which of the following would be the BEST conclusion about this device?
Question 4
A penetration tester is explaining the MITRE ATT&CK framework to a company's chief legal counsel.
Which of the following would the tester MOST likely describe as a benefit of the framework?
Question 5
Which of the following web-application security risks are part of the OWASP Top 10 v2017? (Choose two.)
