The programmers on your team are analyzing the free, open source software being used to
run FTP services on a server in your organization. They notice that there is excessive number of functions in the source code that might lead to buffer overflow. These C++ functions do not check bounds. Identify the line in the source code that might lead to buffer overflow?

A. 3535
B. 99
C. 1717
D. 2020
E. 3232
正解:C
質問 2:
Bubba has just accessed he preferred ecommerce web site and has spotted an item that he would like to buy. Bubba considers the price a bit too steep. He looks at the source code of the webpage and decides to save the page locally, so that he can modify the page variables. In the context of web application security, what do you think Bubba has changes?
A. An integer variable.
B. A hidden price value.
C. A page cannot be changed locally, as it is served by a web server.
D. A hidden form field value.
正解:D
質問 3:
An Attacker creates a zuckerjournals.com website by copying and mirroring HACKERJOURNALS.COM site to spread the news that Hollywood actor Jason Jenkins died in a car accident. The attacker then submits his fake site for indexing in major search engines. When users search for "Jason Jenkins", attacker's fake site shows up and dupes victims by the fake news.

This is another great example that some people do not know what URL's are. Real website:
Fake website: http://www.zuckerjournals.com

The website is clearly not WWW.HACKERJOURNALS.COM. It is obvious for many, but unfortunately some people still do not know what an URL is. It's the address that you enter into the address bar at the top your browser and this is clearly not legit site, its www.zuckerjournals.com
How would you verify if a website is authentic or not?
A. Navigate to the site by visiting various blogs and forums for authentic links
B. Visit the site by clicking on a link from Google search engine
C. Visit the site using secure HTTPS protocol and check the SSL certificate for authenticity
D. Enable Cache on your browser and lookout for error message warning on the screen
正解:B
質問 4:
A certified ethical hacker (CEH) is approached by a friend who believes her husband is
cheating. She offers to pay to break into her husband's email account in order to find proof so she can take him to court. What is the ethical response?
A. Say yes; the friend needs help to gather evidence.
B. Say no; the friend is not the owner of the account.
C. Say no; make sure that the friend knows the risk she's asking the CEH to take.
D. Say yes; do the job for free.
正解:B
質問 5:
Which of the following programs is usually targeted at Microsoft Office products?
A. Multipart virus
B. Stealth virus
C. Polymorphic virus
D. Macro virus
正解:D
質問 6:
Which tool/utility can help you extract the application layer data from each TCP connection from a log file into separate files?
A. Tcpdump
B. argus
C. Snort
D. TCPflow
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
Basically, there are two approaches to network intrusion detection: signature detection, and anomaly detection. The signature detection approach utilizes well-known signatures for network traffic to identify potentially malicious traffic. The anomaly detection approach utilizes a previous history of network traffic to search for patterns that are abnormal, which would indicate an intrusion. How can an attacker disguise his buffer overflow attack signature such that there is a greater probability of his attack going undetected by the IDS?
A. He can use a dynamic return address to overwrite the correct value in the target machine computer memory
B. He can use a shellcode that will perform a reverse telnet back to his machine
C. He can use polymorphic shell code-with a tool such as ADMmutate - to change the signature of his exploit as seen by a network IDS
D. He can chain NOOP instructions into a NOOP "sled" that advances the processor's instruction pointer to a random place of choice
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
714 お客様のコメント





Masumoto -
全くの素人でしたが、無事一発合格することができました。
Pass4Testのおかげです。ありがとうございました。