Penetration Testing Quiz
Offensive security techniques. Recon, exploitation, and authorized pentest methodology.
This category currently has 81 questions in the SERVBG quiz bank. Below are a few sample questions: the full interactive quiz shuffles through the whole set with instant scoring.
Sample questions
What is the primary purpose of a penetration test?
- Building production firewalls
- Stealing data from a competitor
- Authorized assessment to identify and validate security weaknesses
- Replacing antivirus software
- Automatically patching all vulnerabilities
What does a "scope" document define in a pentest engagement?
- A list of customer complaints
- The marketing budget for the test
- The personal contact list of the tester
- The auditor's vacation schedule
- Authorized targets, methods, timing, and rules of engagement
Which tool is most commonly used as an intercepting web proxy for testing web applications?
- OSSEC
- Snort
- Burp Suite
- Nessus
- Wireshark
What is the role of nmap in a pentest?
- Hosting reverse shells
- Network discovery and port/service scanning
- Patching kernels
- Compiling exploit payloads
- Generating SSL certificates
What does a SYN scan in nmap (-sS) do?
- Sends SYN packets and infers port state without completing the TCP handshake
- Encrypts traffic between scanner and target
- Floods the target with UDP packets
- Performs a full TCP connect on every port
- Performs a DNS zone transfer
Related categories
Python (Coding)
Python syntax and standard-library usage, from quick scripts to full applications.
JavaScript (Coding)
Core JavaScript behavior and async patterns, including the quirks that trip up beginners and veterans alike.
Linux
Linux command-line usage, file permissions, process management. The daily admin tasks.
Security
General information security concepts: common threats and standard defenses.
Hardware
Hardware components, how they interact, and basic troubleshooting to keep systems running.