Question 1
During a penetration test, a tester inadvertently scans the wrong network, potentially leading to legal ramifications. What is the MOST appropriate course of action?
Correct Answer:
Immediately report the incident to the team leader to address any potential legal issues
Explanation:
Escalation and incident response are essential when a tester discovers they’ve scanned a network outside the agreed scope. Notifying the team leader promptly triggers the proper risk assessment, keeps actions aligned with the authorization, and ensures legal and contractual considerations are handled before any further steps. The team leader can decide whether to halt activity, inform the client per the engagement’s procedures, or involve legal/compliance, all while maintaining documentation and chain of custody. This minimizes additional risk and preserves accountability, avoiding uncoordinated actions that could worsen legal exposure. Continuing to scan or bypass internal protocols could deepen the problem, while escalating first ensures the right people respond and proper communications with the client are managed appropriately.
Question 2
Which tools are specifically used to scan container configurations in Docker and Kubernetes environments?
Correct Answer:
Docker Bench and Kube-hunter
Explanation:
Container security configuration is about auditing how Docker and Kubernetes are set up and run, ensuring they follow best practices and aren’t exposing risky surfaces. Docker Bench for Security evaluates a Docker host against the CIS Docker Benchmark, checking daemon flags, container capabilities, isolation mechanisms (like seccomp and AppArmor/SELinux), logging, and other host-level controls. Kube-hunter looks for misconfigurations and exposures within a Kubernetes cluster, such as open API endpoints, weak RBAC, leaked tokens, and insecure network or add-on settings. Together, they provide targeted checks for container environments rather than general vulnerability scanning. Other tools mentioned are broader in scope: general network scanners or host scanners won’t specifically verify container configurations, and exploitation frameworks aren’t designed to assess configuration hardening.
Question 3
In the context of cryptographic hash functions, what is a collision?
Correct Answer:
Two distinct inputs producing the same hash
Explanation:
A collision in cryptographic hash functions is when two different inputs end up producing the same hash value. This can happen because the hash output is fixed-length while the input can be any size, so multiple inputs can map to the same digest. Cryptographic hash functions strive to make finding such pairs computationally hard, which is known as collision resistance. The fact that two distinct pieces of data yield the same digest is precisely what defines a collision and what auditors and attackers watch for. Two other ideas don’t describe a collision. If a single input produced two different hashes, that would break the function’s determinism—the same input should always yield the same output. Hash outputs being too long isn’t about collisions; it concerns the size of the digest. A reversible hash would allow recovering the input from the output, which is a different property and undesirable, but it does not describe a collision.
Question 4
To minimize the risk of password compromises after a data breach, which action is recommended?
Correct Answer:
Use password-checking services like haveibeenpwned.com.
Explanation:
Verification and targeted action are key after a data breach. Using a password-checking service lets you see if your email or accounts have credentials that were exposed in breaches. If a match is found, you should immediately change those specific passwords on the affected sites and also avoid reusing the same password elsewhere. This approach minimizes risk by acting on concrete evidence rather than guessing, and it helps you identify where reuse is happening so you can switch to unique, strong passwords—ideally managed with a password manager and protected by two-factor authentication where available. Why the other options aren’t as good: ignoring the breach and reusing the same password leaves you vulnerable; changing a password without checking could miss which accounts were actually compromised; sharing passwords with others is insecure and expands the attack surface.
Question 5
An organization reviews a recommendations report after a successful PenTest exercise. The cost to mitigate the issue is costly. Which group is the report generated for?
Correct Answer:
Suite
Explanation:
Executive leadership is the primary audience for a recommendations report after a pentest when mitigation costs are significant. The report translates technical findings into business terms—highlighting the risk exposure, potential impact on the organization, and the financial implications of different remediation options. C-Suite leaders need this high-level view to decide whether to authorize funding, accept the risk, or pursue alternative risk treatment aligned with the organization’s risk appetite and strategic goals. While IT Operations, End Users, and Development teams will use detailed plans and technical steps, the decision to invest in costly mitigations rests with executive management who oversee budgets and governance.
Question 1
Exam overview

About this Exam

Prepare with the Penetration Testing and Vulnerability Analysis Practice Exam practice quiz. This question bank includes 10 questions covering action, network, configurations, report, and pentest. Use it to review important concepts, identify knowledge gaps, and build confidence for the related exam, course, or assessment.

More details

Additional Information

Penetration Testing and Vulnerability Analysis Practice Exam

This practice set contains 10 questions from the matching question bank and focuses on action, network, configurations, report, and pentest. Work through each question carefully, review the provided solutions, and revisit topics that need more study before your next attempt.

This is an independent study resource intended for practice and review; it is not an official examination or an endorsement by any organization named in the title.

Quiz information

Frequently Asked Questions

The complete question count is available after full access is unlocked.
No fixed duration is currently configured for this quiz.
Question explanations are included where they are available in the quiz content, helping you review the reasoning after answering.
Yes. You can retake the practice test again as you continue studying during your available access period.
After your access is confirmed, you can continue into the complete practice exam from this quiz flow.
Unless explicitly stated otherwise, this page provides independent practice material for study and exam preparation and is not the official examination itself.
Keep studying

Related Questions