exam questions

Exam CCSK All Questions

View all questions & answers for the CCSK exam

Exam CCSK topic 1 question 105 discussion

Actual exam question from CSA's CCSK
Question #: 105
Topic #: 1
[All CCSK Questions]

Which type of application security testing tests running applications and includes tests such as web vulnerability testing and fuzzing?

  • A. Code Review
  • B. Static Application Security Testing (SAST)
  • C. Unit Testing
  • D. Functional Testing
  • E. Dynamic Application Security Testing (DAST)
Show Suggested Answer Hide Answer
Suggested Answer: E 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Brainiac
3 weeks, 2 days ago
E. Dynamic Application Security Testing (DAST) Dynamic Application Security Testing (DAST) is a type of application security testing that involves testing running applications to identify vulnerabilities and security weaknesses. It simulates real-world attacks on the application and examines how it responds to those attacks. DAST typically includes tests such as web vulnerability scanning, penetration testing, and fuzzing. DAST tools send various inputs and payloads to the application, analyze the responses, and identify potential vulnerabilities such as injection flaws, cross-site scripting (XSS), and insecure configurations. Unlike Static Application Security Testing (SAST), which analyzes the application's source code, DAST focuses on the application in its deployed state. Therefore, the correct answer is E. Dynamic Application Security Testing (DAST).
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago