IBM Security AppScan Standard Edition Implementation v8.7 - C2150-199 Exam Practice Test
What information is available when a vulnerability is discovered via traditional dynamic testing (i.e. not via Glassbox testing or JavaScript analysis)?
Correct Answer: C
Vote an answer
A starting URL is http://test_domain1 .com. scan only links in and below this directory is enabled. Test_domain2.com is included in the additional servers and domains in this scan.
What would happen in this situation?
What would happen in this situation?
Correct Answer: A
Vote an answer
Which type of attack relies on an authenticated user to click a malicious link to perform an unintended action on the target application?
Correct Answer: B
Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
What is the goal of a sidejacking web application attack?
Correct Answer: D
Vote an answer
A user has recorded a login. AppScan is still reporting an out-of-session error during testing.
What should the user check to correct the issue?
What should the user check to correct the issue?
Correct Answer: B
Vote an answer
Which log file would be useful in verifying whether or not a particular security test was executed during a test?
Correct Answer: D
Vote an answer