A security analyst is conducting a penetration test for an online store with a database server. Which of the following tools would best assist the tester in detecting vulnerabilities on that server?
If the question was asking about the webserver and not the database server, then it's a toss up between Burp Suite, Nessus and Nikto, all of these will help in detecting webserver vulnerabilities. That leaves only SQLMap for if its a database server they are referring to. Because of how hard it is to choose between the 3 webserver options, I'll go with SQLMap, surely they dont expect you to pick between Nessus and Nikto??
At first I thought it was D.SQLmap but now im going with B.Nessus. Seems like they are trying to throw you off by saying database server. It asks what would be used to detect vulnerabilities on the server not just SQL injections.
This was a tough one for me
On one hand, Nessus would be performed by an analyst which means that it most likely would be a credentialed scan being conducted, which could reveal very comprehensive vulnerability information. However, the way the question is worded, it seems like it's asking specifically about the database server rather than the online store application. SQLmap specializes in SQL injection vulnerabilities and provides very in-depth information on what it finds.
For this, I would have to give the edge to D. SQLmap
Guys the answer is in the question.
We are not referring to online store server (nikto should be the best, burpsuite as well .. and SQLmap) but CompTIA is asking for "that" server: the database server.
Nessus is a comprehensive vulnerability scanner that can assess a wide range of systems, including database servers, for vulnerabilities. It provides detailed reports on discovered vulnerabilities, their severity, and recommended remediation steps
Agree.
The question is asking "vulnerabilities on that server".
SQLmap is focused specifically on SQL injection vulnerabilities.
upvoted 3 times
...
...
This section is not available anymore. Please use the main Exam Page.PT0-002 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
kinny4000
2 months, 2 weeks agoLearner213
3 months, 2 weeks agoWillz01
4 months, 3 weeks agoBlackSkullz
5 months, 1 week agoIamBlackFire
6 months, 1 week agosparseyyy
7 months ago6f49db7
7 months, 3 weeks agowdmssk
7 months, 2 weeks ago