Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 253 discussion

Actual exam question from ISC's CISSP
Question #: 253
Topic #: 1
[All CISSP Questions]

An organization is planning a penetration test that simulates the malicious actions of a former network administrator. What kind of penetration test is needed?

  • A. Functional test
  • B. Unit test
  • C. Grey box
  • D. White box
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Loveguitar
Highly Voted 2 years, 2 months ago
Grey box because it says " former". Some things might have changed in the environment so it's not the white box.
upvoted 11 times
jackdryan
1 year, 6 months ago
C is correct
upvoted 2 times
...
Coolwater
2 years, 1 month ago
question says " simulates the malicious actions of a former network administrator" . If they wanted to simulate the actions of this network administrator who has all the knoledge about the infrastrucure , then we have to perform White box testing .
upvoted 9 times
Coolwater
2 years, 1 month ago
may be i am wrong
upvoted 1 times
...
...
...
rdy4u
Highly Voted 2 years ago
Selected Answer: C
If a black-box tester is examining a system from an outsider’s perspective, a gray-box tester has the access and knowledge levels of a user, potentially with elevated privileges on a system. Gray-box pentesters typically have some knowledge of a network’s internals, potentially including design and architecture documentation and an account internal to the network. https://resources.infosecinstitute.com/topic/what-are-black-box-grey-box-and-white-box-penetration-testing/
upvoted 5 times
...
deeden
Most Recent 3 months, 2 weeks ago
Selected Answer: D
I guess the question is how long ago was he "former" because if it's just yesterday, then it's highly possible that the architecture hasn't changed much, has it? I hope that actual exam doesn't have too much of these type of vague context questions.
upvoted 1 times
...
Chris
4 months, 2 weeks ago
Selected Answer: D
White box: White box testing (also known as clear box, open box, or glass box testing) involves complete knowledge of the system, including internal structures, configurations, and source code. This type of testing is most suitable for simulating the actions of a former network administrator because it takes advantage of insider knowledge, which would include detailed information about the network, configurations, and potential vulnerabilities. Also Grey box: Grey box testing involves having partial knowledge of the internal workings of the system. The tester has limited knowledge of the environment and uses both external and some internal perspectives to conduct the test. While it can be useful, it does not fully simulate the insider knowledge that a former network administrator would have. #Shadtech
upvoted 1 times
...
CL8282
7 months, 1 week ago
Selected Answer: D
D. Whitebox: Former could mean former even as recently as of yesterday. This would mean this administrator has full knowledge of all internals.
upvoted 2 times
...
Soleandheel
11 months, 2 weeks ago
It makes more sense to go with D. White box as opposed to Grey box. The assumption should be that since he is a former employee, he should know everything within the network. Even if things have changed since the former employee left, it's still a best practice to assume that they know more.
upvoted 3 times
...
liebeskind
1 year, 6 months ago
Selected Answer: D
Assuming the system has changed, C. Grey box is "OK". However, if there are no changes since the administrator left, a white box test would provide more information to the tester, so that easier to find vulnerabilities, and the result will be more valid.
upvoted 4 times
...
RVoigt
1 year, 9 months ago
Selected Answer: D
From the CISSP Official Study Guide - "White-Box Penetration Test Provides the attackers with detailed information about the systems they target. This bypasses many of the reconnaissance steps that normally precede attacks, shortening the time of the attack and increasing the likelihood that it will find security flaws. These tests are sometimes called "known environment" tests."
upvoted 4 times
...
Dee83
1 year, 10 months ago
D. White box A white box penetration test simulates the actions of an internal user or administrator who has knowledge of the internal network and systems, similar to a former network administrator.
upvoted 3 times
...
oban
1 year, 10 months ago
Selected Answer: D
D. White box A White box penetration test simulates the actions of an attacker who has knowledge of the internal structure and operation of the system or network. This type of test is also known as an "internal" test. It is appropriate in this scenario of simulating the malicious actions of a former network administrator, as this person would have knowledge of the internal structure and operation of the network and may have access to privileged information, like credentials, and the knowledge of weak points in the network. It allows the organization to identify vulnerabilities that an attacker could potentially exploit, and to evaluate the overall security of their network and systems. -source: openai
upvoted 5 times
...
rajkamal0
1 year, 11 months ago
Selected Answer: C
The best answer is C - Grey Box.
upvoted 2 times
...
Mann0302
2 years ago
Selected Answer: C
Is definitely C, don't tell me a former admin is still maintaining his creds and privileges even after employment or even welcomed into the building to even hook anything into any sort of port. But he might still have knowledge of the entire topology to network which is to his advantage while outside.
upvoted 3 times
...
MrInfoSys
2 years, 1 month ago
"simulates the malicious actions of a former network administrator" <<At the time of the malicious activity, was that not white box? If you are simulating what he did while the NA was employed, they would have had full knowledge of the network.
upvoted 3 times
...
Rollizo
2 years, 1 month ago
Selected Answer: C
"former" or "old" administrator. Changes has changed since then
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...