Get GPEN Braindumps & GPEN Real Exam Questions
GIAC GPEN Actual Questions and Braindumps
The GPEN certification is an excellent investment for IT professionals who want to develop their skills in the area of penetration testing. GIAC Certified Penetration Tester certification demonstrates a commitment to excellence and helps professionals stand out in a highly competitive job market. With the increasing demand for skilled penetration testers, the GPEN certification can help professionals advance their careers and achieve their goals.
NEW QUESTION # 45
Which of the following penetration testing phases involves gathering data from whois, DNS, and network scanning, which helps in mapping a target network and provides valuable information regarding the operating system and applications running on the systems?
- A. On-attack phase
- B. Post-attack phase
- C. Attack phase
- D. Pre-attack phase
Answer: D
NEW QUESTION # 46
You want to run the nmap command that includes the host specification of 202.176.56-57.*. How many hosts will you scan?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: D
Explanation:
Section: Volume D
NEW QUESTION # 47
Which of the following is an open source Web scanner?
- A. Internet scanner
- B. Nikto
- C. NetRecon
- D. GFI LANguird
Answer: B
NEW QUESTION # 48
Which of the following enables an inventor to legally enforce his right to exclude others from using his invention?
- A. Artistic license
- B. Patent
- C. Spam
- D. Phishing
Answer: B
NEW QUESTION # 49
Which of the following tasks can be performed by using netcat utility?
Each correct answer represents a complete solution. Choose all that apply.
- A. Port scanning and service identification
- B. Creating a Backdoor
- C. Checking file integrity
- D. Firewall testing
Answer: A,B,D
NEW QUESTION # 50
Which of the following modes describes a wireless interface that is configured to passively grab wireless frames from one wireless channel and pass them to the operating system?
- A. Managed Mode
- B. Monitor Mode
- C. Promiscuous Mode
- D. Master Mode
Answer: A
Explanation:
Explanation/Reference:
Reference:
http://www.willhackforsushi.com/books/377_eth_2e_06.pdf
NEW QUESTION # 51
You have received a file named new.com in your email as an attachment. When you execute this file in your laptop, you get the following message:
'EICAR-STANDARD-ANTIVIRUS-TEST-FILE!'
When you open the file in Notepad, you get the following string:
X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*
What step will you take as a countermeasure against this attack?
- A. Immediately shut down your laptop.
- B. Traverse to all of your drives, search new.com files, and delete them.
- C. Do nothing.
- D. Clean up your laptop with antivirus.
Answer: C
Explanation:
Section: Volume C
NEW QUESTION # 52
Which of the following commands can be used for port scanning?
- A. nc -z
- B. nc -t
- C. nc -w
- D. nc -g
Answer: A
NEW QUESTION # 53
Anonymizers are the services that help make a user's own Web surfing anonymous. An anonymizer removes all the identifying information from a user's computer while the user surfs the Internet. It ensures the privacy of the user in this manner. After the user anonymizes a Web access with an anonymizer prefix, every subsequent link selected is also automatically accessed anonymously. Which of the following are limitations of anonymizers?
Each correct answer represents a complete solution. Choose all that apply.
- A. Java applications
- B. JavaScript
- C. ActiveX controls
- D. Plugins
- E. Secure protocols
Answer: A,B,C,D,E
Explanation:
Section: Volume B
NEW QUESTION # 54
Which of the following attacks can be overcome by applying cryptography?
- A. Buffer overflow
- B. DoS
- C. Sniffing
- D. Web ripping
Answer: C
NEW QUESTION # 55
John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He is using a tool to crack the wireless encryption keys. The description of the tool is as follows:
Which of the following tools is John using to crack the wireless encryption keys?
- A. AirSnort
- B. PsPasswd
- C. Cain
- D. Kismet
Answer: A
Explanation:
Section: Volume D
NEW QUESTION # 56
Victor wants to use Wireless Zero Configuration (WZC) to establish a wireless network connection using his computer running on Windows XP operating system. Which of the following are the most likely threats to his computer?
Each correct answer represents a complete solution. Choose two.
- A. Information of probing for networks can be viewed using a wireless analyzer and may be used to gain access.
- B. Attacker by creating a fake wireless network with high power antenna cause Victor's computer to associate with his network to gain access.
- C. Attacker can use the Ping Flood DoS attack if WZC is used.
- D. It will not allow the configuration of encryption and MAC filtering. Sending information is not secure on wireless network.
Answer: A,B
NEW QUESTION # 57
You are done pen testing a Windows system and need to clean up some of the changes you have made. You created an account 'pentester' on the system, what command would you use to delete that account?
- A. Net localuser pentester /del
- B. Net name pentester /del
- C. Net user pentester /del
- D. Net account pentester /del
Answer: D
NEW QUESTION # 58
When attempting to crack a password using Rainbow Tables, what is the output of the reduction function?
- A. A new potential table
- B. A new potential hash
- C. A new potential chain
- D. A new potential password
Answer: B
Explanation:
Reference:
http://en.wikipedia.org/wiki/Rainbow_table
NEW QUESTION # 59
Which of the following characters will you use to check whether an application is vulnerable to an SQL injection attack?
- A. Double quote (")
- B. Semi colon (;)
- C. Dash (-)
- D. Single quote (')
Answer: D
Explanation:
Section: Volume C
NEW QUESTION # 60
Which of the following TCP flags shows that the system is forwarding the buffered data?
- A. FIN
- B. RST
- C. URG
- D. PSH
Answer: D
NEW QUESTION # 61
Which of the following tools is based on the SATAN tool?
- A. Internet scanner
- B. Retina
- C. GFI LANguard
- D. SAINT
Answer: D
NEW QUESTION # 62
__________ firewall architecture uses two NICs with a screening router inserted between the host and the untrusted network.
- A. Screened subnet
- B. Screened host
- C. packet filtering
- D. Dual homed host
Answer: B
NEW QUESTION # 63
......
GIAC GPEN (GIAC Certified Penetration Tester) Exam is an internationally recognized certification exam for security professionals who aim to demonstrate a thorough understanding of the concept of penetration testing. The GPEN validates the skills of candidates in the field of penetration testing and ethical hacking, allowing them to show their knowledge of the methods, techniques, and tools used to identify vulnerabilities and assess security weaknesses in network systems.
GPEN Dumps To Pass GIAC Exam in 24 Hours - VCEEngine: https://www.vceengine.com/GPEN-vce-test-engine.html
Buy Latest GPEN Exam Q&A PDF - One Year Free Update: https://drive.google.com/open?id=1Mko5R5PJ7l6rjBafP0Zk0bdxsVn4UyNn
