ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 53 - 212-82 discussion

Report
Export

Tristan, a professional penetration tester, was recruited by an organization to test its network infrastructure. The organization wanted to understand its current security posture and its strength in defending against external threats. For this purpose, the organization did not provide any information about their IT infrastructure to Tristan. Thus, Tristan initiated zero-knowledge attacks, with no information or assistance from the organization.

Which of the following types of penetration testing has Tristan initiated in the above scenario?

A.
Black-box testing
Answers
A.
Black-box testing
B.
White-box testing
Answers
B.
White-box testing
C.
Gray-box testing
Answers
C.
Gray-box testing
D.
Translucent-box testing
Answers
D.
Translucent-box testing
Suggested answer: A

Explanation:

Black-box testing is a type of penetration testing where the tester has no prior knowledge of the target system or network and initiates zero-knowledge attacks, with no information or assistance from the organization. Black-box testing simulates the perspective of an external attacker who tries to find and exploit vulnerabilities without any insider information. Black-box testing can help identify unknown or hidden vulnerabilities that may not be detected by other types of testing. However, black-box testing can also be time-consuming, costly, and incomplete, as it depends on the tester's skills and tools.

asked 18/09/2024
Audrey Buan
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first