312-50v11 Exam Question 26

Sam is a penetration tester hired by Inception Tech, a security organization. He was asked to perform port scanning on a target host in the network. While performing the given task, Sam sends FIN/ACK probes and determines that an RST packet is sent in response by the target host, indicating that the port is closed.
What is the port scanning technique used by Sam to discover open ports?
  • 312-50v11 Exam Question 27

    Suppose that you test an application for the SQL injection vulnerability. You know that the backend database is based on Microsoft SQL Server. In the login/password form, you enter the following credentials:
    Username: attack' or 1=1 -
    Password: 123456
    Based on the above credentials, which of the following SQL commands are you expecting to be executed by the server, if there is indeed an SQL injection vulnerability?
  • 312-50v11 Exam Question 28

    Websites and web portals that provide web services commonly use the Simple Object Access Protocol (SOAP).
    Which of the following is an incorrect definition or characteristics of the protocol?
  • 312-50v11 Exam Question 29

    Don, a student, came across a gaming app in a third-party app store and Installed it. Subsequently, all the legitimate apps in his smartphone were replaced by deceptive applications that appeared legitimate. He also received many advertisements on his smartphone after Installing the app. What is the attack performed on Don in the above scenario?
  • 312-50v11 Exam Question 30

    You are attempting to run an Nmap port scan on a web server. Which of the following commands would result in a scan of common ports with the least amount of noise in order to evade IDS?