質問 1:What is the difference between penetration testing and vulnerability testing?
A. Penetration testingis based on purely online vulnerability analysis while vulnerability testing engages ethical hackers to find vulnerabilities
B. Vulnerability testing is more expensive than penetration testing
C. Penetration testing goes one step further than vulnerability testing; while vulnerability tests check for known vulnerabilities, penetration testing adopts the concept of 'in-depth ethical hacking'
D. Penetration testing is conducted purely for meeting compliance standards while vulnerability testing is focused on online scans
正解:C
質問 2:John, a penetration tester from a pen test firm, was asked to collect information about the host file in a Windows system directory. Which of the following is the location of the host file in Window system directory?
A. C:\Windows\System32\restore
B. C:\Windows\System32\Boot
C. C:\WINDOWS\system32\cmd.exe
D. C:\WINNT\system32\drivers\etc
正解:D
解説: (Topexam メンバーにのみ表示されます)
質問 3:Security auditors determine the use of WAPs on their networks with Nessus vulnerability scanner which identifies the commonly used WAPs. One of the plug-ins that the Nessus Vulnerability Scanner uses is ID #11026 and is named "Access Point Detection". This plug-in uses four techniques to identify the presence of a WAP. Which one of the following techniques is mostly used for uploading new firmware images while upgrading the WAP device?
A. FTP fingerprinting
B. NMAP TCP/IP fingerprinting
C. HTTP fingerprinting
D. SNMP fingerprinting
正解:A
質問 4:Internet Control Message Protocol (ICMP) messages occur in many situations, such as whenever a datagram cannot reach the destination or the gateway does not have the buffering capacity to forward a datagram. Each ICMP message contains three fields: type, code, and checksum. Different types of Internet Control Message Protocols (ICMPs) are identified by a type and code field.

Which of the following ICMP messages will be generated if the destination port is not reachable?
A. ICMP Type 3 code 2
B. ICMP Type 11 code 1
C. ICMP Type 3 code 3
D. ICMP Type 5 code 3
正解:C
質問 5:ARP spoofing is a technique whereby an attacker sends fake ("spoofed") Address Resolution Protocol (ARP) messages onto a Local Area Network. Generally, the aim is to associate the attacker's MAC address with the IP address of another host (such as the default gateway), causing any traffic meant for that IP address to be sent to the attacker instead.
ARP spoofing attack is used as an opening for other attacks.

What type of attack would you launch after successfully deploying ARP spoofing?
A. Parameter Filtering
B. Social Engineering
C. Session Hijacking
D. Input Validation
正解:C
解説: (Topexam メンバーにのみ表示されます)
質問 6:Which of the following is not a condition specified by Hamel and Prahalad (1990)?
A. Core competency should be aimed at protecting company interests
B. Core competency can be leveraged widely to many products and markets
C. Core competency is hard for competitors to imitate
D. Core competency provides customer benefits
正解:A
解説: (Topexam メンバーにのみ表示されます)
質問 7:Which of the following statement holds true for TCP Operation?
A. Flow control shows the trend of a transmitting host overflowing the buffers in the receiving host
B. Sequence numbers are used to track the number of packets lost in transmission
C. Port numbers are used to know which application the receiving host should pass the data to
D. Data transfer begins even before the connection is established
正解:D
質問 8:Which of the following contents of a pen testing project plan addresses the strengths, weaknesses, opportunities, and threats involved in the project?
A. Project Goal
B. Objectives
C. Success Factors
D. Assumptions
正解:D
質問 9:From where can clues about the underlying application environment can be collected?
A. From source code
B. From executable file
C. From the extension of the file
D. From file types and directories
E. Explanation:
QUESTIONNO: 16 Which of the following information gathering techniques collects information from an organization's web-based calendar and email services?
A. Anonymous Information Gathering
B. Private Information Gathering
C. Passive Information Gathering
D. Active Information Gathering
正解:C
解説: (Topexam メンバーにのみ表示されます)
一年間の無料更新サービスを提供します
君が弊社のEC-COUNCIL 412-79v8をご購入になってから、我々の承諾する一年間の更新サービスが無料で得られています。弊社の専門家たちは毎日更新状態を検査していますから、この一年間、更新されたら、弊社は更新されたEC-COUNCIL 412-79v8をお客様のメールアドレスにお送りいたします。だから、お客様はいつもタイムリーに更新の通知を受けることができます。我々は購入した一年間でお客様がずっと最新版のEC-COUNCIL 412-79v8を持っていることを保証します。
弊社は無料EC-COUNCIL 412-79v8サンプルを提供します
お客様は問題集を購入する時、問題集の質量を心配するかもしれませんが、我々はこのことを解決するために、お客様に無料412-79v8サンプルを提供いたします。そうすると、お客様は購入する前にサンプルをダウンロードしてやってみることができます。君はこの412-79v8問題集は自分に適するかどうか判断して購入を決めることができます。
412-79v8試験ツール:あなたの訓練に便利をもたらすために、あなたは自分のペースによって複数のパソコンで設置できます。
弊社は失敗したら全額で返金することを承諾します
我々は弊社の412-79v8問題集に自信を持っていますから、試験に失敗したら返金する承諾をします。我々のEC-COUNCIL 412-79v8を利用して君は試験に合格できると信じています。もし試験に失敗したら、我々は君の支払ったお金を君に全額で返して、君の試験の失敗する経済損失を減少します。
弊社のEC-COUNCIL 412-79v8を利用すれば試験に合格できます
弊社のEC-COUNCIL 412-79v8は専門家たちが長年の経験を通して最新のシラバスに従って研究し出した勉強資料です。弊社は412-79v8問題集の質問と答えが間違いないのを保証いたします。

この問題集は過去のデータから分析して作成されて、カバー率が高くて、受験者としてのあなたを助けて時間とお金を節約して試験に合格する通過率を高めます。我々の問題集は的中率が高くて、100%の合格率を保証します。我々の高質量のEC-COUNCIL 412-79v8を利用すれば、君は一回で試験に合格できます。
TopExamは君に412-79v8の問題集を提供して、あなたの試験への復習にヘルプを提供して、君に難しい専門知識を楽に勉強させます。TopExamは君の試験への合格を期待しています。
安全的な支払方式を利用しています
Credit Cardは今まで全世界の一番安全の支払方式です。少数の手続きの費用かかる必要がありますとはいえ、保障があります。お客様の利益を保障するために、弊社の412-79v8問題集は全部Credit Cardで支払われることができます。
領収書について:社名入りの領収書が必要な場合、メールで社名に記入していただき送信してください。弊社はPDF版の領収書を提供いたします。
EC-COUNCIL EC-Council Certified Security Analyst (ECSA) 認定 412-79v8 試験問題:
1. What are the scanning techniques that are used to bypass firewall rules and logging mechanisms and disguise themselves as usual network traffic?
A) Stealth Scanning Techniques
B) Connect Scanning Techniques
C) SYN Scanning Techniques
D) Port Scanning Techniques
2. Logs are the record of the system and network activities. Syslog protocol is used for delivering log information across an IP network. Syslog messages can be sent via which one of the following?
A) UDP and TCP
B) TCP and SMTP
C) UDP and SMTP
D) SMTP
3. Why is a legal agreement important to have before launching a penetration test?

A) Guarantees your consultant fees
B) It establishes the legality of the penetration test by documenting the scope of the project and the consent of the company.
C) Allows you to perform a penetration test without the knowledge and consent of the organization's upper management
D) It is important to ensure that the target organization has implemented mandatory security policies
4. Which of the following acts related to information security in the US establish that the management of an organization is responsible for establishing and maintaining an adequate internal control structure and procedures for financial reporting?
A) California SB 1386
B) USA Patriot Act 2001
C) Gramm-Leach-Bliley Act (GLBA)
D) Sarbanes-Oxley 2002
5. If a web application sends HTTP cookies as its method for transmitting session tokens, it may be vulnerable which of the following attacks?
A) Parameter tampering Attack
B) Sql injection attack
C) Session Hijacking
D) Cross-site request attack
質問と回答:
質問 # 1 正解: A | 質問 # 2 正解: A | 質問 # 3 正解: B | 質問 # 4 正解: B | 質問 # 5 正解: D |