ECCouncil 412-79v8 - EC-Council Certified Security Analyst (ECSA) Exam

Question #11 (Topic: )
What sort of vulnerability assessment approach starts by building an inventory of protocols
found on the machine?
A. Inference-based Assessment B. Service-based Assessment Solutions C. Product-based Assessment Solutions D. Tree-based Assessment
Answer: A
Question #12 (Topic: )
Logs are the record of the system and network activities. Syslog protocol is used for
delivering log information across an IP network. Syslog messages can be sent via which
one of thefollowing?
A. UDP and TCP B. TCP and SMTP C. SMTP D. UDP and SMTP
Answer: A
Question #13 (Topic: )
Which one of the following components of standard Solaris Syslog isa UNIX command that
is used to add single-line entries to the system log?
A. “Logger” B. ”/etc/syslog.conf” C. “Syslogd” D. “Syslogd.conf”
Answer: A
Question #14 (Topic: )
Information gathering is performed to:
i) Collect basic information about the target company and its network
ii) Determine the operating system used, platforms running, web server versions, etc.
iii) Find vulnerabilities and exploits
[ECCouncil-412-79v8-10.3/ECCouncil-412-79v8-10_2.png]
Which of the following pen testing tests yields information about a companys technology
infrastructure?
A. Searching for web page posting patterns B. Analyzing the link popularity of the company’s website C. Searching for trade association directories D. Searching for a company’s job postings
Answer: D
Question #15 (Topic: )
The Web parameter tampering attack is based on the manipulation of parameters
exchanged between client and server in order to modify application data, such as user
credentials and permissions, price and quantity of products, etc. Usually, this information is
stored in cookies, hidden form fields, or URL Query Strings, and is used to increase
application functionality and control.
This attack takes advantage of the fact that many programmers rely on hidden or fixed
fields (such as a hidden tag in a form or a parameter in a URL) as the only security
measure for certain operations. Attackers can easily modify these parameters to bypass
the security mechanisms that rely on them.
[ECCouncil-412-79v8-10.3/ECCouncil-412-79v8-11_2.png]
What is the best way to protect web applications from parameter tampering attacks?
A. Validating some parameters of the web application B. Minimizing the allowable length of parameters C. Using an easily guessable hashing algorithm D. Applying effective input field filtering parameters
Answer: D
Download Exam
Page: 3 / 40
Total 196 questions