An authorized user is conducting a penetration scan of a system, for an organization. The tester has a set of network diagrams, source code, version numbers of applications, and other information about the system, including hostnames and network addresses. Which of the following BEST describes this type of penetration test?
A. Gray-box testing
B. Black-box testing
C. White-box testing
D. Blue team exercise
E. Red team exercise
Answer: C. White-box testing
White-box testing also known as clear-box, open-box, auxiliary
and logic-driven testing.
Penetration testers are given full access to source code,
architecture documentation, version numbers of applications and
etc.
An authorized user is conducting a penetration scan of a system, for an organization. The tester...