Multiple Choice
A penetration test is being scoped for a set of web services with API endpoints. The APIs will be hosted on existing web application servers. Some of the new APIs will be available to unauthenticated users, but some will only be available to authenticated users. Which of the following tools or activities would the penetration tester MOST likely use or do during the engagement? (Choose two.)
A) Static code analyzer
B) Intercepting proxy
C) Port scanner
D) Reverse engineering
E) Reconnaissance gathering
F) User acceptance testing
Correct Answer:

Verified
Correct Answer:
Verified
Q295: A security analyst is classifying data based
Q296: A company has decided to lower costs
Q297: An electric car company hires an IT
Q298: A systems administrator has deployed the latest
Q299: A newly hired Chief Information Security Officer
Q301: An attacker has been compromising banking institution
Q302: An administrator is working with management to
Q303: A government contracting company issues smartphones to
Q304: Given the following output from a local
Q305: An analyst is investigating anomalous behavior on