[May 03, 2024] GSEC Exam Dumps - Try Best GSEC Exam Questions - FreeCram [Q26-Q48]

Share

[May 03, 2024] GSEC Exam Dumps - Try Best GSEC Exam Questions - FreeCram

Verified GSEC exam dumps Q&As with Correct 385 Questions and Answers

NEW QUESTION # 26
What does an attacker need to consider when attempting an IP spoofing attack that relies on guessing Initial Sequence Numbers (ISNs)?

  • A. These attacks can be easily traced back to the source.
  • B. These attacks only work against Linux/Unix hosts.
  • C. These attacks rely on a modified TCP/IP stack to function.
  • D. These attacks work against relatively idle servers.

Answer: D


NEW QUESTION # 27
How is a Distributed Denial of Service (DDOS) attack distinguished from a regular DOS attack?

  • A. DDOS affects the entire Internet.
  • B. Regular DOS focuses on a single router.
  • C. DDOS affects many distributed targets.
  • D. DDOS attacks are perpetrated by many distributed hosts.

Answer: D


NEW QUESTION # 28
Which of the following utilities can be used to manage the Windows Firewall (WF) from the command line?

  • A. netsh.exe
  • B. secedit.exe
  • C. sc.exe
  • D. net.exe

Answer: A


NEW QUESTION # 29
When Net Stumbler is initially launched, it sends wireless frames to which of the following addresses?

  • A. Default gateway address
  • B. Network address
  • C. Subnet address
  • D. Broadcast address

Answer: D


NEW QUESTION # 30
You are going to upgrade your hard disk's file system from FAT to NTFS. What are the major advantages of the NTFS file system over FAT16 and FAT32 file systems?
Each correct answer represents a complete solution. Choose all that apply.

  • A. NTFS gives better file security than FAT16 and FAT32.
  • B. NTFS file system supports for larger hard disks.
  • C. NTFS give improved disk compression than FAT16 and FAT32.
  • D. Automatic backup.

Answer: A,B,C


NEW QUESTION # 31
Use nmap to discover a host on the 10.10.10.0/24 network, scanning only port 8082 and using the SYN or Stealth scan approach. Which host has a service called -blackice-alerts"?

  • A. 10.10.10.37
  • B. 10.10.10.5
  • C. 10.10.10.80
  • D. 10.10.10
  • E. 10.10.10.20
  • F. 10.10.10.115
  • G. 10.10.10.164
  • H. 10.10.10.7
  • I. 10.10.10.30

Answer: G


NEW QUESTION # 32
Which of the following is an Implementation of PKI?

  • A. SSL
  • B. 3DES
  • C. Kerberos
  • D. SHA-1

Answer: A


NEW QUESTION # 33
Which attack stage mirrors the Information Gathering phase used in penetration testing methodology?

  • A. Scanning
  • B. Gaining access
  • C. Clearing tracks
  • D. Reconnaissance

Answer: D


NEW QUESTION # 34
Which of the following is a benefit of using John the Ripper for auditing passwords?

  • A. John's Blowfish cracking routine uses a complex central computing loop that increases the cost of each hash computation.
  • B. John's MD5 cracking routine uses a simplified central computing loop that decreases the cost of each hash computation.
  • C. John the Ripper is much slower for auditing passwords encrypted with MD5 and Blowfish.
  • D. John cannot use the DES bit-slicing technique, so it is much slower than other tools, especially when used against DES-encrypted passwords.

Answer: B


NEW QUESTION # 35
You work as a Network Administrator for McNeil Inc. The company has a Linux-based network. David, a Sales Manager, wants to know the name of the shell that he is currently using. Which of the following commands will he use to accomplish the task?

  • A. mv $shell
  • B. rm $shell
  • C. ls $shell
  • D. echo $shell

Answer: D


NEW QUESTION # 36
Which of the following is TRUE regarding Ethernet?

  • A. Stations are not required to monitor their transmission to check for collisions.
  • B. Several stations are allowed to be transmitting at any given time within a single collision domain.
  • C. Ethernet is shared media.
  • D. Stations are not required to listen before they transmit.

Answer: C


NEW QUESTION # 37
Which of the following statements best describes where a border router is normally placed?

  • A. Between your ISP and DNS server
  • B. Between your ISP and your external firewall
  • C. Between your firewall and your internal network
  • D. Between your firewall and DNS server

Answer: B


NEW QUESTION # 38
Which of the following protocols implements VPN using IPSec?

  • A. SLIP
  • B. PPTP
  • C. PPP
  • D. L2TP

Answer: D


NEW QUESTION # 39
What type of attack can be performed against a wireless network using the tool Kismet?

  • A. Denial of Service
  • B. IP spoofing
  • C. Masquerading
  • D. Eavesdropping

Answer: D


NEW QUESTION # 40
You work as a Network Administrator for Net Perfect Inc. The company has a Linux-based network. You are configuring an application server. An application named Report, which is owned by the root user, is placed on the server. This application requires superuser permission to write to other files. All sales managers of the company will be using the application. Which of the following steps will you take in order to enable the sales managers to run and use the Report application?

  • A. Change the Report application to a SUID command.
  • B. Make the user accounts of all the sales managers the members of the root group.
  • C. Provide password of root user to all the sales managers.
    Ask each sales manager to run the application as the root user.
  • D. As the application is owned by the root, no changes are required.

Answer: A


NEW QUESTION # 41
To be considered a strong algorithm, an encryption algorithm must be which of the following?

  • A. Well-known
  • B. Confidential
  • C. Secret
  • D. Proprietary

Answer: A


NEW QUESTION # 42
Which of the following enables an inventor to legally enforce his right to exclude others from using his invention?

  • A. Patent
  • B. Spam
  • C. Phishing
  • D. Artistic license

Answer: A


NEW QUESTION # 43
Which of the following can be done over telephone lines, e-mail, instant messaging, and any other method of communication considered private.

  • A. Packaging
  • B. Shielding
  • C. Eavesdropping
  • D. Spoofing

Answer: C


NEW QUESTION # 44
Which of the following books deals with confidentiality?

  • A. Purple Book
  • B. Red Book
  • C. Orange Book
  • D. Brown Book

Answer: C


NEW QUESTION # 45
Which of the following is NOT typically used to mitigate the war dialing threat?

  • A. Setting modems to auto-answer mode
  • B. Proactively scanning your own phone numbers
  • C. Monitoring call logs at the switch
  • D. Setting up monitored modems on special phone numbers

Answer: A


NEW QUESTION # 46
Which of the following is a valid password for a system with the default "Password must meet complexity requirements" setting enabled as part of the GPO Password policy requirements?

  • A. SaNS2006
  • B. disk ACCESS failed
  • C. The Cat Chased its Tail AII Night
  • D. SETI@HOME

Answer: A


NEW QUESTION # 47
In the AGULP model, who should be assigned permissions and privileges?

  • A. Local Groups
  • B. Universal Groups
  • C. Global Groups
  • D. Individual User Accounts

Answer: A


NEW QUESTION # 48
......

GIAC GSEC Test Engine PDF - All Free Dumps: https://www.freecram.com/GIAC-certification/GSEC-exam-dumps.html

Get New GSEC Certification – Valid Exam Dumps Questions: https://drive.google.com/open?id=1nlvKJ46dI6pfIfDQDD3FySU2TQAgEQhR

0
0
0
10