Answer is B: Whitebox
White-Box Penetration Testing
The final category of testing is called white-box testing, which allows the security consultant to have complete open access to applications and systems. This allows consultants to view source code and be granted high-level privilege accounts to the network. The purpose of white-box testing is to identify potential weaknesses in various areas such as logical vulnerabilities, potential security exposures, security misconfigurations, poorly written development code, and lack-of-defensive measures. This type of assessment is more comprehensive, as both internal and external vulnerabilities are evaluated from a “behind the scenes” point of view that is not available to typical attackers.
https://www.packetlabs.net/types-of-penetration-testing/
137. C. A white box test is sometimes referred to as a full knowledge assessment because the
penetration testers have full knowledge of the client’s network, including administrative
access to all infrastructure devices and servers. This type of assessment usually provides the
most comprehensive results because the testers do not need to spend time in discovery mode.
They have all the information they need to immediately begin an extensive assessment.
I would go with B on this one
White box tests allow effective testing
of systems without requiring testers to spend time identifying targets and determining
which of them may allow a way in. This means that a white box test is often more complete, as testers can get to every system, service, or other target that is in scope and
will have credentials and other materials that will allow them to be tested.
Comprehensive can mean most complicated and detailed pentest. A black box is comprehensive as it takes more time to complete while a white box is less comprehensive as you are only testing the code/application/equipment.
This answer is confusing. I have gone through some of reading and feels like White-box testing may be answer.
https://resources.infosecinstitute.com/topic/what-are-black-box-grey-box-and-white-box-penetration-testing/
If anyone can confirm, it would be great.
It's deffinatly White Box
The tester can test a larger array of vulnerabilities on the network.
upvoted 1 times
...
...
This section is not available anymore. Please use the main Exam Page.PT0-001 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
h4rmsw4y
Highly Voted 3 years, 11 months agomiabe
Most Recent 2 years, 10 months agocontender
3 years, 5 months ago[Removed]
3 years, 9 months ago[Removed]
3 years, 9 months agocarlo479
3 years, 9 months agog4nt3ng
3 years, 9 months agodp12
3 years, 10 months agorose_y
3 years, 7 months agosmalltech
3 years, 10 months agojohnsmith123
3 years, 11 months agoeroms
3 years, 10 months agocarlo479
3 years, 11 months agojoaks
3 years, 11 months agosknath
3 years, 11 months agoCapCrunch
3 years, 10 months ago