Cause all that matters here is passing the GIAC GPEN exam. Cause all that you need is a high score of GPEN GIAC Certified Penetration Tester exam. The only one thing you need to do is downloading Passleader GPEN exam study guides now. We will not let you down with our money-back guarantee.

Also have GPEN free dumps questions for you:

NEW QUESTION 1

Adam works as a professional Computer Hacking Forensic Investigator. He works with the local police. A project has been assigned to him to investigate an iPod, which was seized from a student of the high school. It is suspected that the explicit child pornography contents are stored in the iPod. Adam wants to investigate the iPod extensively. Which of the following operating systems will Adam use to carry out his investigations in more extensive and elaborate manner?

  • A. MINIX 3
  • B. Linux
  • C. Windows XP
  • D. Mac OS

Answer: D

NEW QUESTION 2

You work as a Network Administrator for Tech Perfect Inc. The company has a Windows Active Directory-based single domain single forest network. The functional level of the forest is Windows Server 2003. The company has recently provided laptops to its sales team members. You have configured access points in the network to enable a wireless network. The company's security policy states that all users using laptops must use smart cards for authentication. Which of the following authentication techniques will you use to implement the security policy of the company?

  • A. IEEE 802.1X using EAP-TLS
  • B. IEEE 802.1X using PEAP-MS-CHAP
  • C. Pre-shared key
  • D. Open system

Answer: A

NEW QUESTION 3

You run the following PHP script:
<?php $name = mysql_real_escape_string($_POST["name"]); $password = mysql_real_escape_string($_POST["password"]);?>
What is the use of the mysql_real_escape_string() function in the above script. Each correct answer represents a complete solution. Choose all that apply

  • A. It escapes all special characters from strings $_POST["name"] and $_POST["password"].
  • B. It escapes all special characters from strings $_POST["name"] and $_POST["password"] except ' and ".
  • C. It can be used to mitigate a cross site scripting attac
  • D. It can be used as a countermeasure against a SQL injection attac

Answer: AD

NEW QUESTION 4

Which of the following vulnerability scanner scans from CGI, IDA, Unicode, and Nimda vulnerabilities?

  • A. Hackbot
  • B. SARA
  • C. Nessus
  • D. Cgichk

Answer: A

NEW QUESTION 5

Which of the following does NOT use a proxy software to protect users?

  • A. Stateful inspection
  • B. Packet filtering
  • C. Application layer gateway
  • D. Circuit level proxy server

Answer: D

NEW QUESTION 6

Which of the following tools are used for footprinting?
Each correct answer represents a complete solution. Choose all that apply.

  • A. Brutus
  • B. Sam spade
  • C. Whois
  • D. Traceroute

Answer: BCD

NEW QUESTION 7

You are conducting a penetration test for a private company located in Canada. The scope extends to all internal-facing hosts controlled by the company. You have gathered necessary hold-harmless and non-disclosure agreements. Which action by your group can incur criminal liability under Criminal Code of Canada Sections 184 and 542 CC 184?

  • A. Analyzing internal firewall router software for vulnerabilities
  • B. Exploiting application vulnerabilities on end-user workstations
  • C. Attempting to crack passwords on a development server
  • D. Capturing a VoIP call to a third party without prior notice

Answer: D

NEW QUESTION 8

Which of the following tasks can be performed by using netcat utility? Each correct answer represents a complete solution. Choose all that apply.

  • A. Firewall testing
  • B. Creating a Backdoor
  • C. Port scanning and service identification
  • D. Checking file integrity

Answer: ABC

NEW QUESTION 9

What happens when you scan a broadcast IP address of a network?
Each correct answer represents a complete solution. Choose all that apply.

  • A. It leads to scanning of all the IP addresses on that subnet at the same tim
  • B. It will show an error in the scanning proces
  • C. It may show smurf DoS attack in the network IDS of the victi
  • D. Scanning of the broadcast IP address cannot be performe

Answer: AC

NEW QUESTION 10

Adam, a malicious hacker, hides a hacking tool from a system administrator of his company by using Alternate Data Streams (ADS) feature. Which of the following statements is true in context with the above scenario?

  • A. Alternate Data Streams is a feature of Linux operating syste
  • B. Adam's system runs on Microsoft Windows 98 operating syste
  • C. Adam is using FAT file syste
  • D. Adam is using NTFS file syste

Answer: D

NEW QUESTION 11

Which of the following tools is based on the SATAN tool?

  • A. Retina
  • B. Internet scanner
  • C. GFI LANguard
  • D. SAINT

Answer: D

NEW QUESTION 12

Which of the following tools allows you to download World Wide Web sites from the Internet to a local computer?

  • A. Netstat
  • B. Netcraft
  • C. HTTrack
  • D. Cheops-ng

Answer: C

NEW QUESTION 13

John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He performs a Teardrop attack on the we-are-secure server and observes that the server crashes. Which of the following is the most likely cause of the server crash?

  • A. The spoofed TCP SYN packet containing the IP address of the target is filled in both the source and destination field
  • B. The we-are-secure server cannot handle the overlapping data fragment
  • C. The ICMP packet is larger than 65,536 byte
  • D. Ping requests at the server are too hig

Answer: B

NEW QUESTION 14

Which of the following is a Windows-based tool that is used for the detection of wireless LANs using the IEEE 802.11a, 802.11b, and 802.11g standards and also detects wireless networks marking their relative position with a GPS?

  • A. Kismet
  • B. NetStumbler
  • C. Ettercap
  • D. Tcpdump

Answer: B

NEW QUESTION 15

You run the following command while using Nikto Web scanner:
perl nikto.pl -h 192.168.0.1 -p 443
What action do you want to perform?

  • A. Updating Nikt
  • B. Seting Nikto for network sniffin
  • C. Port scannin
  • D. Using it as a proxy serve

Answer: C

NEW QUESTION 16
......

P.S. Allfreedumps.com now are offering 100% pass ensure GPEN dumps! All GPEN exam questions have been updated with correct answers: https://www.allfreedumps.com/GPEN-dumps.html (385 New Questions)