CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 25: PT0-003: CompTIA PenTest+

During a penetration test of a web application, the tester gains full access to the application's source code. The application repository includes thousands of code files. Given that the assessment timeline is very short, which of the following approaches would allow the tester to identify hard-coded credentials most…

Nội dung câu hỏi

During a penetration test of a web application, the tester gains full access to the application's source code. The application repository includes thousands of code files. Given that the assessment timeline is very short, which of the following approaches would allow the tester to identify hard-coded credentials most effectively?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Run TruffleHog against a local clone of the application. — đáp án hiện tại
  2. B. Scan the live web application using Nikto.
  3. C. Perform a manual code review of the Git repository.
  4. D. Use SCA software to scan the application source code.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề