This is just a sample of the 125 questions in the final exam. 

 

Question 1

  

 

The __________ vulnerability is a vulnerability present in some servers that can be exploited by hackers in the browser address window and cause commands to be run on the server.

Question 2

  

 

When an ethical hacker uses nslookup, which protocol are they querying?

Question 3

 

 

 

Attackers can use a simple test to find out if an application is vulnerable to an OLE DB error. They can fill in the username and password fields with __________.

Question 4

  

 

__________ is a small utility that lists all USB devices currently connected to a computer, as well as all previously used USB devices.

Question 5

 

Question 6

  

 

The __________ stores confidential information that is accessible only from inside the organization.

  

 

The __________ method appends data in the URL field.

Question 7

 

 

 

Which of the following password attacks is conducted using nontechnical means?

Question 8

 

 

 

__________ is a command-line utility provided by Microsoft with SQL Server 2000 (and Microsoft SQL Server 2000 Desktop Engine) that allows users to issue queries to the server.

Question 9

  

 

__________ is a Microsoft-proprietary protocol that authenticates users and computers based on an authentication challenge and response.

Question 10

  

 

__________ is the exploitation of an organization's telephone, dial, and private branch exchange (PBX) system to infiltrate the internal network in order to abuse computing resources.

Question 121

 

1 / 1 point

 

Which of the following attacks would you choose to seize control of a legitimate user's web application session while the session is still in progress?

Question 122

 

1 / 1 point

 

Private data stored by Firefox can be quickly deleted by selecting __________ in the Tools menu.

Question 123

 

1 / 1 point

 

A hacker has successfully used a tool to intercept communications between two entities and establish credentials with both sides of the connection. The two remote ends of the communication never notice that the attacker is relaying the information between the two. This is called a(n) __________ attack.

Question 124

  

In a hit-and-run attack, __________.

The __________ tool traces various application calls from Windows API functions to the Oracle Call Interface.

Question 125

 

 

The __________ tool traces various application calls from Windows API functions to the Oracle Call Interface.

 

1 / 1 point

    • 10 years ago
    CMIT312 - Final exam
    NOT RATED

    Purchase the answer to view it

    blurred-text
    • attachment
      final_exam.docx