312-50v11 Exam Question 6

Annie, a cloud security engineer, uses the Docker architecture to employ a client/server model in the application she is working on. She utilizes a component that can process API requests and handle various Docker objects, such as containers, volumes. Images, and networks. What is the component of the Docker architecture used by Annie in the above scenario?
  • 312-50v11 Exam Question 7

    While testing a web application in development, you notice that the web server does not properly ignore the
    "dot dot slash" (../) character string and instead returns the file listing of a folder structure of the server.
    What kind of attack is possible in this scenario?
  • 312-50v11 Exam Question 8

    SQL injection (SQLi) attacks attempt to inject SQL syntax into web requests, which may bypass authentication and allow attackers to access and/or modify data attached to a web application.
    Which of the following SQLi types leverages a database server's ability to make DNS requests to pass data to an attacker?
  • 312-50v11 Exam Question 9

    Johnson, an attacker, performed online research for the contact details of reputed cybersecurity firms. He found the contact number of sibertech.org and dialed the number, claiming himself to represent a technical support team from a vendor. He warned that a specific server is about to be compromised and requested sibertech.org to follow the provided instructions. Consequently, he prompted the victim to execute unusual commands and install malicious files, which were then used to collect and pass critical Information to Johnson's machine. What is the social engineering technique Steve employed in the above scenario?
  • 312-50v11 Exam Question 10

    What is the common name for a vulnerability disclosure program opened by companies in platforms such as HackerOne?