Prelim - Pen Testing Flashcards
(9 cards)
1
Q
Penetration Testing
A
An attempt to exploit vulnerabilities to determine whether unauthorized access or other malicious activity is possible
2
Q
Computer System Servers/Networks, Applications Vulnerabilities
A
- Design and implementation
- Poor system configuration
- Insecure network
- System complexity
- Human errors - coding errors
3
Q
Primary purpose of Penetration Testing
A
- To discover vulnerabilities
- Test for security compliance
- Verify staff awareness
4
Q
Penetration Testing Types
A
Web Application
Network Services
Social Engineering
Client Side
5
Q
Types of Penetration Testing Based on Knowledge of Target
A
- Black Box testing
- Grey Box Testing
- White Box Testing
6
Q
Black Box testing
A
Zero Knowledge of Target
7
Q
Grey Box Testing
A
Some Knowledge of Target
8
Q
White Box Testing
A
Full Knowledge of Target
9
Q
Types of Penetration Testing Based on Position of Penetration Tester
A
External Penetration Testing
Internal Penetration Testing
Targeted
Blind Test
D-Blind