Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.
After a security breach, a security consultant is hired to perform a vulnerability assessment for a company’s web application. Which of the following tools would the consultant use?
Nikto: is an open-source web server scanner that performs comprehensive tests against web servers for multiple items, including dangerous files, outdated server software, and potential vulnerabilities. It is specifically designed for web application security testing and vulnerability assessment, making it a suitable tool for the consultant's task.
Kismet: is primarily used for detecting and analyzing wireless networks and is not designed for web application vulnerability assessment.
tcpdump: is used to inspect network traffic, it is not specifically designed for web application vulnerability assessment.
Hydra: is a password-cracking tool that can perform brute-force attacks against various network services, such as FTP, SSH, Telnet, and HTTP. It is not designed for web application vulnerability assessment.
The answer is A, Nikto.
Nikto is a free and open-source web vulnerability scanner. It can be used to scan web applications for known vulnerabilities. Nikto can scan for a wide variety of vulnerabilities, including cross-site scripting (XSS), SQL injection, and file upload vulnerabilities.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
surfuganda
2 months, 2 weeks agoWutan
10 months ago